Beware of China’s state-sponsored cyber actor

0
[ad_1]

US businesses: watch out for Volt Typhoon, a threat actor sponsored by the People’s Republic of China (PRC).

The US Cybersecurity and Infrastructure Security Agency (CISA) has an urgent message for US businesses: watch out for Volt Typhoon, a threat actor sponsored by the People’s Republic of China (PRC).

The agency’s joint Cybersecurity Advisory (CSA) published last week highlights a cluster of tactics, techniques, and procedures (TTPs) associated with the cyber actor—including their use of living off the land (LOTL) techniques.

In this blog, we’ll review Volt Typhoon, dig into how they evade detection, discuss CISA’s protective recommendations, and see how Malwarebytes EDR can help eliminate such threats.

Who is Volt Typhoon?

Given their ties to the Chinese government, it’s fair to label Volt Typhoon as an Advanced Persistent Threat (APT) group.

Well-funded and made up of an elite squadron of hackers, APT groups target high-value entities like governments, large corporations, or critical infrastructure. They often deploy multi-stage, multi-vector approaches with a high degree of obfuscation and persistence.

Volt Typhoon is no exception.

Since their arrival on the scene in mid-2021, Volt Typhoon has targeted several critical infrastructure organizations in Guam and elsewhere in the United States. Their victims come from a wide-range of industries, including communications, government, information technology (IT), education, and more.

Observed behavior suggests that the aim of Volt Typhoon is, like most APT groups, not a quick hit but a long-term presence within a system, allowing them to gather as much information as possible while remaining undetected.

Now that we know the basics of who Volt Typhoon is and what they’re after, let’s dive into the specifics of their tools, techniques, and procedures (TTPs).

How Volt Typhoon evades detection

At the heart of Volt Typhoon’s espionage campaigns are their use of living off the land (LOTL) attacks, which are instances when attackers leverage legitimate tools to evade detection.

The fact that so much of the CISA advisory revolves around Volt Typhoon’s use of LOTL techniques emphasizes that these types of threats are a serious concern. By mimicking normal system behavior, LOTL attacks make it extremely difficult for IT teams and security solutions to detect any signs of malicious activities.

Script Block Logging records all blocks of code as they’re executed by PowerShell, which could you point to suspicious activity. Source.

Some of the built-in tools Volt Typhoon uses are wmic, ntdsutil, netsh, and PowerShell.

Let’s look at two examples of how Volt Typhoon uses LOTL attacks at different stages in the attack chain.

LOTL Example #1: Reconnaissance

Volt Typhoon gathers information about local drives using the wmic command, which is a part of the legitimate Windows Management Instrumentation (WMI) toolset.

This command line tool lets them gather details like drive letter, filesystem type, free space, and volume name without needing administrative privileges.

Understanding the storage layout and capacity of the host machine in this way can, for example, help them tailor their tools and techniques to the specific system.

cmd.exe /C "wmic path win32_logicaldisk get caption,filesystem,freespace,size,volumename"

LOTL Example #2: Credential Access

Volt Typhoon attempts to capture two vital assets from Windows Domain Controllers (DCs): the ntds.dit file and the SYSTEM registry hive. Both of these contain a wealth of data, including user details, group affiliations, and encrypted passwords—all of which can be goldmines for unauthorized actors.

To access this information, they utilize the built-in Windows service called Volume Shadow Copy Service. This service helps them create clones of the ntds.dit file and the SYSTEM registry hive, both typically locked due to their importance.

These cloned copies allow Volt Typhoon to avoid modifying the original files, thereby maintaining stealth. By acquiring these files, the attackers can work towards decrypting passwords offline without raising alarms.

cmd /c vssadmin create shadow /for=C: > C:\Windows\Temp\<filename>.tmp

cmd /c copy \\?\GLOBALROOT\Device\HarddiskVolumeShadowCopy3\Windows\NTDS\ntds.ditC:\Windows\Temp > C:\Windows\Temp\<filename>.tmp

CISA best practices

Uncovering LOTL attacks such as the type that Volt Typhoon uses requires picking up on subtle anomalies or patterns in system behaviors.

Likewise, CISAs advice to businesses emphasizes the importance of enhancing detection of potential LOTL attacks through robust logging mechanisms, inspecting abnormal account activities, and more:

CISA Advice Description
Enhance monitoring and logging Use advanced monitoring systems to track unusual IP addresses, abnormal account activity, and suspicious process creations. Enable “audit process creation,” “include command line in process creation events,” WMI Tracing, and deep PowerShell logging in Windows security logs.
Harden systems and networks Improve domain controller security and limit port proxy usage. Regularly check firewall configurations and keep a hardened centralized logging server, preferably on a separate network.
Maintain regular checks Regularly validate the use of administrator privileges and scrutinize all log clearances (Event ID 1102 entries) for intrusion signs. Enable consistent logging on edge devices and network-level logging to identify potential exploitation and lateral movement.

Malwarebytes EDR

Suspicious Activity monitoring with Malwarebytes can detect possible LOTL techniques like the type Volt Typhoon uses. Let’s take the the LOTL Example #2—Credential Access—we explained earlier.

As we described, the actor is trying to exfiltrate the ntds.dit file and the SYSTEM registry hive out of the network to perform password cracking, which is an example of OS Credential Access defined as T1003 by MITRE.

Using Malwarebytes EDR, we can find suspicious activity like this and quickly isolate the endpoint with which it’s associated.

The “dumping” occurs when the `ntds.dit file` and the SYSTEM registry hive are copied from the original (and typically inaccessible due to being locked) location to the `C:\Windows\Temp directory`. This process is effectively extracting or “dumping” the data into a new, more accessible location.

Luckily, Malwarebytes EDR alerted us to this suspicious process and, after investigation, we were able to remediate the endpoint with which the suspicious activity was associated with. 

Responding to nation-state sponsored attacks quickly and effectively

The recent information on Volt Typhoon’s activities has catapulted them to the top of cybersecurity concerns for businesses and organizations across the United States.

Sponsored by the Chinese state, Volt Typhoon employs a gamut of stealthy techniques that make their activities challenging to detect. Chief among these tactics is the use of Living Off the Land (LOTL) techniques and leveraging built-in tools—like wmic, ntdsutil, netsh, and PowerShell—for infiltration and persistence within target networks.

To combat these advanced persistent threats, businesses should pair CISA’s recommendations with tools like Malwarebytes EDR to identify and isolate the suspicious activities typical of LOTL attacks.

For organizations without the expertise to manage EDR solutions, Managed Detection and Response (MDR) services are also an attractive option.

MDR services offer access to experienced security analysts who can monitor and respond to threats 24/7, detect and respond to APT threats like Volt Typhoon quickly and effectively, and provide ongoing tuning and optimization of EDR solutions to ensure maximum protection.

Stop APT attacks today


[ad_2]
Source link

Best Gaming Accessories – June 2023

0
[ad_1]

Whatever your gaming setup is like, having a good few gaming accessories can really elevate the experience and we’ve picked out ten of the best gaming accessories you can get your hands on.

From headsets to keyboards, to mice and beyond, these are some of the best gaming accessories that money can buy. That doesn’t necessarily mean that they’re expensive, just that they’re more worth what you spend than lots of other options.

Most of these accessories we’ve tested ourselves, while a few others were highly recommended by colleagues and friends. Whatever accessories you might need or want for your own gaming setup, these should do the trick. Also worth noting is that the accessories listed here are not for any one platform.

We’ll also be updating this list on a monthly basis, so there may be changes from time to time.

Best Gaming Accessories – Summary

Below is a summary table of the best gaming accessories that we’ve picked out.

If you’re short on time and just want to see what we’ve selected, the table below has all names, prices, and buy links for every accessory.

Accessory Cost Where To Buy
Beyerdynamic MMX 100 & MMX 150 From $99 Amazon
Razer Naga Pro From $99.99 Amazon, Best Buy
Logitech G915 TKL From $175.99 Amazon, B&H, Best Buy
SteelSeries QcK Prism XL From $59.99 Amazon, Best Buy, Walmart
Sony DualSense Controller for PS5 From $69 Amazon & Various Other Retailers
EPOS | Sennheiser GSP 300 From $47.51 Amazon, B&H, Walmart
Definitive Technology Studio 3D Mini From $302.23 Amazon, B&H, Best Buy, ABT Electronics
SCUF Instinct Pro From $219.99 SCUF Gaming
SteelSeries Arctis Nova 1 From $51.76 Amazon, Walmart, Best Buy, SteelSeries
SteelSeries Aerox 9 Wireless $109.68 Amazon, Adorama

Best Gaming Accessories – List

If you want a little more information on each accessory we picked, you can find that below.

We’ll list each of the best gaming accessories on our list with short descriptions, prices, and buy links.

Beyerdynamic MMX 100 & MMX 150

  • Price: From $99
  • Where To Buy: Amazon

These two closed-back headsets from Beyerdynamic are some of the best you can get for around their price point. Which is $150 for the MMX 150 and $99.99 for the MMX 100. Fitting, we know.

Both come with detachable META Voice cardioid condenser microphones for vocal clarity, as well as an impedance of 32 ohms, dedicated volume dials for precise audio adjustment and more. And if you go with the MMX 150 you get the benefit of the augmented mode. Turning this on enables sounds from outside the headset to filter in some. So you can hear both the game audio and what’s around you.

Both headsets are wired so you’ll not have the freedom of a wireless headset here. But the comfort and sound quality are awesome and they’re both relatively affordable.

Beyerdynamic MMX 150

Razer Naga Pro

The Razer Naga Pro is one of our selections for best gaming accessories because of its versatility in gaming. There are a lot of different genres of games.

And really not every single game lends itself well to a particular gaming mouse. While any gaming mouse will work with any game type, certain mice are more well suited to certain types of games.

The Naga Pro however, is versatile enough to work with multiple game genres. Building off of the success of past Naga mice, the Naga Pro features the same tried and true 12-button side panel. This particular panel is great for MMO games. Quite simply because it lets you bind many of your abilities to buttons that are right under your thumb. And let’s be honest that’s way easier than hitting the number keys on the keyboard.

It also features two other side panels. One with 6 buttons that’s designed more for MOBA games and battle royale games. And one with a couple of buttons on the side that’s designed more for first-person shooters. The Naga Pro is also wireless, but can be used in wired mode when the battery needs a recharge.

Hands down, this is one of the best gaming mice in existence. Because it fits really any game genre.

Razer Naga Pro

Logitech G915 TKL

Logitech G915 TKL

I’ve been using this keyboard for the past few months and aside from its lack of compatibility with the PS5, this is one of the best mechanical gaming keyboards you can buy right now. The lightspeed wireless technology makes for a fast connection to your PC, and helps to reduce the amount of latency between your key presses and the game response.

It also has the ability to effortlessly switch between the lightspeed-connected device and a Bluetooth-connected device at the push of a button. Other things like the volume scroll wheel, and dedicated media playback controls are even more reasons to love this keyboard. But most of all, the battery life and build-quality are what make this the keyboard to beat.

While it’s not the only great gaming keyboard out there, it currently stands at the top. If there was one or two things that could be improved though, it would be support for the PS5 via Bluetooth, and the use of USB-C instead of micro USB for the cable connection when charging.

Logitech G915 TKL

SteelSeries QcK Prism XL

A mouse mat is just a mouse mat. Right? Wrong. Not all mouse mats are created equal. And while the size of the mat you prefer may differ from what others prefer, you want a decent one.

One of the best gaming accessories and the best RGB mouse mat, is the QcK Prism XL from SteelSeries. Since it’s an extended mouse mat, it stretches across your desk and you can fit both your keyboard and mouse on it.

This mat in particular also comes with the RGB lighting strip around the edge in a dual section split. Though you don’t have to use the 2-zone coloring and can set it to something else. It uses a microweave cloth material for the top so you’ve got that nice smooth glide for your mouse, and a fairly grippy bottom to make sure the mat doesn’t move around.

SteelSeries QcK Prism XL

Sony DualSense Controller for PS5

This controller is a magnificent display of some evolutionary controller features. And I could say that over and over until I turn blue in the face and it still wouldn’t accurately portray just how good of a gaming accessory this is.

Between the adaptive triggers and the haptic feedback, the DualSense controller is the only controller you should be considering for your PS5 gaming experience.

The adaptive triggers especially are what really make the DualSense controller something magical. You have to experience it firsthand to get the full impact. But trust us when we say it’s a feature that has huge potential for the immersion and interactivity in games for this generation.

New features aside, the controller just feels good in the hand. It has a good weight to it and the design matches the console. While there aren’t any third-party controllers out there for the PS5 right now, there will be eventually. And once they arrive, the DualSense controller is still the one that you’re going to want to stick with.

Sony DualSense Controller for PS5

EPOS GSP 300

EPOS Sennheiser GSP 300 Wired Gaming Headset

This is the perfect headset to pair with the GSX 300 Gaming DAC if you aren’t looking to spend a boatload of money on the headphone setup.

There’s a lot on board here that makes this a fantastic option with an affordable price. For one, it’s Sennheiser so the audio quality is going to be amazing. It also has large cushy ear pads and a comfortable yet breathable headband.

The noise cancelling mic also flips up, which also mutes the mic during chat. So it’s a very convenient design that makes it easy to pop in and pop out of chat at a moment’s notice.

There’s an on-ear dial for volume adjustment on the right side, and it comes with an adapter that lets you use the headset with more than just PC. Including PS4, Xbox One, Nintendo Switch, Mac, Mobile, and any device with a 3.5mm audio port.

EPOS GSP 300

Definitive Technology Studio 3D Mini

Definitive Technology Studio 3D Mini

 

When it comes to sound systems for gaming, sometimes it’s best to go big or go home. Of course, that all depends on how much you value a high-quality premium sound system. If you want goo clarity with excellent bass and a wide array of features, check out the Studio 3D Mini from Definitive Technology.

While spendy, this is a soundbar and subwoofer combination that will set your audio senses ablaze. It pumps out some serious sound and is an awesome pairing with consoles like the PS5 and Xbox Series X|S. You could use it as your sound system for PC gaming as well.

It has connection ports for HDMI in and out so it supports HDMI ARC. It also supports optical, Bluetooth, Dolby Atmos, DTS:X, and more. Best of all, is that this soundbar is considerably compact for the power and quality that you get out of it. While the subwoofer is certainly sizeable, the soundbar itself measures 26.5-inches wide, 2-inches tall, and 4.5-inches deep.

On top of all that, it supports Google Assistant, Alexa, and Siri, while also connecting with multiple streaming music sources such as Spotify, Deezer, Apple Music, Pandora and many more.

Keep in mind that at this price, you may want to consider it for more than just gaming. It does make for an excellent gaming sound system though.

Definitive Technology Studio 3D Mini

SCUF Instinct Pro

SCUF Instinct Instinct Pro 4

Speaking of customization, the new Instinct Pro from SCUF Gaming is one heck of a controller for the Xbox Series X|S, and also one of the best. Like the Elite Series 2, you can swap out some of the buttons, while also adjusting things like the tension of the triggers to require less travel between the button press and the action completion.

On the back you’ll find high-performance grip, as well as four additional buttons. Plus, you can map the buttons to various controls, and save up to three different profiles designed for specific types of games. Which you can swap between on the fly.

If that wasn’t enough, SCUF also allows you to customize the looks. Complete with multiple color options and combinations and more.

SCUF Instinct Pro

SteelSeries Arctis Nova 1

The reason we love this headset is because it’s affordable for one, and because it comes with a lot of the design updates that started with the Arctis Nova Pro. Like the redesigned headband system and the extendable ears so it can more easily fit people with all different head sizes. It also features a retractable noise cancelling mic, comes in two colors (Black and White), and it supports the Sonar software when being used on PC for enhanced audio features.

But you don’t have to use it on PC. It will work with any platform that’s compatible with a 3.5mm audio jack. Lastly it only weighs 236g and uses a breathable AirWeave memory foam for comfort during long gaming sessions.

SteelSeries Arctis Nova 1

SteelSeries Aerox 9 Wireless

SteelSeries Aerox 9 Wireless

 

SteelSeries’ new Aerox 9 Wireless mouse is the company’s new MMO mouse, featuring 12 side buttons for all of your abilities as well as a couple extra buttons up top in addition to the multi-function scroll wheel and your left and right clicks.

It’s similar in functionality to the Razer Naga Pro. Another excellent gaming accessory. Where this might have a bit of an advantage is the weight. The Aerox 9 Wireless is 89 grams. Compare that to the 117 grams of the Naga Pro. And while love the Naga Pro, some people prefer a lighter mouse. But may not want to give up the 12 programmable side buttons.

Now you don’t have to settle and you still get a great gaming mouse from a leading brand like SteelSeries. You do have to give up the swappable side plates of the Naga Pro, which means no specialized button layouts for different genres of games. But, if you mostly play MMOs, then that shouldn’t have too big of an impact.

SteelSeries Aerox 9 Wireless


[ad_2]
Source link

Huawei MateBook X Pro (2023) is here, Huawei’s new premium laptop

0
[ad_1]

Huawei has announced a new version of its flagship laptop, the MateBook X Pro (2023). It is very similar to last year’s model, but it comes with upgraded internals, of course. The star of the show is the 13th Gen Intel Core i7 SoC.

The Huawei MateBook X Pro (2023) is here as the company’s flagship laptop

Let’s get that out of the way first. The 13th Gen Intel Core i7 SoC fuels this laptop, while Huawei also included 16GB of RAM here. You’re getting 1TB of storage on the inside too, and the Intel Iris Xe graphics.

This is basically an ultrabook, more than a laptop. It’s not only quite thin, but it weighs only 1.26 grams. It’s made out of magnesium, which is widely used in the aviation industry. It’s a very portable laptop.

Despite its lightweight design, and thin profile, this thing still packs a 14.2-inch 3120 x 2080 display with a 90Hz refrsh rate. Huawei included a Real Color FullView display here, and the MateBook X Pro offers a 92.5% screen-to-body ratio. It offers a color accuracy of ΔE < 1 in both the P3 and sRGB color gamuts.

The Huawei MateBook X Pro is also TÜV Rheinland certified. It has the Eye Comfort 3.0 certification. This laptop also introduces the magnetically controlled nano optical AR layer, it’s here to reduce reflections by up to 60%.

Huawei MateBook X Pro (2023) image 10

Both its RAM and storage are expandable

Now, despite the fact the laptop comes with 16GB of RAM, you can expand that to up to 32GB. Something similar can be said for its storage too. The device comes with 1TB, but it’s expandable up to 2TB.

The MateBook X Pro also comes with the so-called Metaline Antenna, which should improve connectivity on the device. It is capable of long range connections with a range of up to 270 meters. It’s also worth noting that Windows 11 OS comes pre-installed on the device.

The device has six speakers, a fingerprint scanner, and supports Bluetooth 5.2. It comes with two Thunderbolt 4 ports, two USB-C ports, and an audio jack. A 60Wh battery is also included.

This laptop will become available in Europe starting tomorrow, June 1. It’ll be priced at €2,199, and available via Huawei ecommerce and select retail partners. You’ll be able to get it in Ink Blue or White color options.


[ad_2]
Source link

Financial services company OneMain fined $4.25 million for security lapses

0
[ad_1]

We take a look at a fine totalling millions aimed at financial services company OneMain.

A series of security errors and mishaps has cost personal loan provider OneMain $4.25m in penalties, issued by the New York State department of financial services. The fines, coming at the end of a detailed investigation into how security practices at the company were determined to be below-par, serve as a timely warning to other organisations.

OneMain experienced “at least” three security incidents over three years, from 2018 to 2020. The business is a licensed lender and mortgage servicer and as SC Magazine notes, financial entities should adhere to a framework of security requirements. These requirements include that best practices are evident at all times to ensure both consumer data and internal systems are safe from harm. From the DFS release:

…OneMain Financial Group LLC (“OneMain”) will pay a $4.25 million penalty to New York State for violations of DFS’s Cybersecurity Regulation (23 NYCRR Part 500). OneMain failed to effectively manage third-party service provider risk, manage access privileges, and maintain a formal application security development methodology, significantly increasing the company’s vulnerability to cybersecurity events.  

Unfortunately for OneMain, the New York State investigation highlighted several major issues which resulted in the eventual settlement. Going back to the release for some examples:

…OneMain permitted local administrative users to share accounts, compromising the ability to identify malicious actors, and also permitted those accounts to use the default password provided by OneMain at the time of user onboarding, increasing the risk of unauthorized access.

Use of default passwords is bad enough, but SC Magazine also notes that a file containing passwords was stored in a folder named “PASSWORDS”. Add to this that access restrictions were not good enough, and you have a recipe for disaster.

The release continues:

The Department’s investigation further found that OneMain’s application security policy lacked a formalized methodology addressing all phases of the company’s software development life cycle. Instead, OneMain used a non-formalized project administration framework it had developed in-house that failed to address certain key software development life cycle phases, a consequence of which was increased vulnerability to cybersecurity events. 

Failing to have any sort of coherent strategy for software life cycles is never going to end well. Whether a business ignores Windows updates, or even maintaining security for bespoke setups and software, the possibility of falling victim to an attack can only ever go up as time passes.

So far we’ve seen issues with default passwords, data storage, and software life cycle management. This alone would be bad enough. However, the next issue pulled up as evidence of the fine-worthy practices may well be the worst of the bunch. We go once more to the release:

OneMain did not conduct timely due diligence for certain high- and medium-risk vendors, despite the existence of a third-party vendor management policy requiring that each vendor undergo an assessment to determine the vendor’s risk rating and the appropriate level of due diligence OneMain should perform on the vendor. OneMain further failed to appropriately adjust several vendors’ risk scores even after the occurrence of multiple cybersecurity events precipitated by the vendors’ improper handling of non-public information and poor cybersecurity controls.

What this means is that OneMain worked with various third-party vendors without doing their due diligence in terms of potential security threats. This is despite many of the vendors being flagged as medium to high risk.

With all of this in mind, it’s perhaps easy to see why the New York State DFS started down the road to such a fine. Even so, The Record notes that OneMain reported $1.09 billion in revenue for the first quarter of 2023. While we can ponder if a few million in fines makes much of a difference overall, OneMain has agreed to “engage in further significant remediation measures”. It remains to be seen what the consequences will be should they not stick to the plan.


Malwarebytes EDR and MDR removes all remnants of ransomware and prevents you from getting reinfected. Want to learn more about how we can help protect your business? Get a free trial below.

TRY NOW


[ad_2]
Source link

Carl Pei revealed how many updates the Nothing Phone (2) will get

0
[ad_1]

It’s hard to believe that it’s almost been a year. The Nothing Phone (1) launched in July last year, and we’re expecting a July launch this year as well. Ahead of the launch, Carl Pei revealed how many updates the Nothing Phone (2) we’ll receive.

The number of software updates a phone will receive is very important. As phones get more powerful, people are more likely to hold onto their phones for longer. However, it’s rather frustrating when a fully capable phone loses its software support early in the game. So, we’re all wondering what Carl Pei has planned for his phones.

We now know how many software updates the Nothing Phone (2) will receive

We’re currently following leaks and rumors regarding the Nothing Phone (2), and we have been for some time. The Nothing Phone (1) proved to be a popular phone, and we’re all excited about the next iteration.

We don’t know everything there is to know about this phone, but we do know the update schedule for it. Carl Pei announced that the Nothing Phone (2) will receive three years of major Android updates. The phone will receive updates up to Android 16 W. The support for this phone won’t stop there, as it will receive an additional year of security updates.

This puts Nothing one year behind Samsung. The Korean Brand’s phones launching this year will lose software support with Android 17.

As for the other information about the Nothing Phone (2), details are trickling in. We do know that this phone will be launching globally in July, and we expect it to also land in the US market.

As for the processor, Nothing seems to have selected a flagship processor rather than the upper-tier mid-range processor from its predecessor. Rumors point to this phone using the flagship-grade Snapdragon 8+ Gen 1. It’s not the latest and greatest, but it will still give the phone some very powerful performance. We’re all excited about what else this phone will have to offer. Stay tuned for more news.


[ad_2]
Source link

Block Party exits Twitter in light of the media company’s API change

0
[ad_1]

Making a recent headline in the tech world is Block Party’s exit from Twitter after a major change to the media company. The reason behind this exit revolves around the recent Twitter API change. Block Party took to their Twitter account to announce their exit from the social media platform, a tough move for the company.

For its operations, Block Party relied on Twitter’s API and over the past four years this has been free. But now the social media company is restricting the use of its API to only users that pay a set amount monthly. This change is forcing a ton of third-party Twitter apps to leave the platform due to the high cost of monthly payments.

Twitter is now charging up to $42,000 monthly for access to using their API service. Well, that outrageous price is for enterprises, as the basic tier pricing starts at $100 per month. Due to the high price, Twitter is demanding the usage of its API, and services like Block Party are exiting the platform.

What is next for users after Block Party exits Twitter due to the API change

Block Party is an anti-harassment service that helps Twitter users stay clear of other users they don’t like. This service makes things easier for users when it comes to blocking accounts that might share ideas they don’t conform with. With this service, Twitter users can block certain users that post, like or even retweet troubling tweets.

Ever since this feature rolled out to the public, it has been able to help Twitter users block out harmful content. Offering various tiers for users, each with features that make it stand out and help users regardless of their needs. But now, all the things Twitter users love about this service will no longer be accessible.

Ever since Twitter changed its API service early this year, Block Party has managed to stay on the platform. But according to them, their blocking service for Twitter is going into an indefinite hiatus starting today. This means that the service will be on break from Twitter for an unknown period, possibly till the API issue is sorted out.

However, this is not the end of Block Party as a company as they will still serve users but not using Twitter’s API any more. They are now rolling out a browser extension known as Privacy Party, which can be put to use by Twitter users. This browser extension will protect Twitter users from harassers and scammers that are lurking on the social media platform.

So previous users of the Block Party service on Twitter can sign in to Privacy Party with their email accounts. This new service is currently rolling out to more browsers for wider access regardless of the browser in use. In the coming months, this service will be more readily available to users around the world.


[ad_2]
Source link

Microsoft gives Apple a migraine

0
[ad_1]

Microsoft has released details about a vulnerability that can bypass macOS’s System Integrity Protection

On May 18, 2023, Apple published security content for macOS Ventura 13.4macOS Monterey 12.6.6, and macOS Big Sur 11.7.7 that addressed a logic issue in libxpc.

The Common Vulnerabilities and Exposures (CVE) database lists publicly disclosed computer security flaws. The CVE we are going to discuss is listed as CVE-2023-32369, which allows an app to modify protected parts of the macOS file system.

At the time there were no other details provided. This is usual and done to give users ample time to implement the necessary patches. But now Microsoft has published a blogpost that provides details about the vulnerability and how it was discovered during a routine malware hunt.

The updates may already have reached you in your regular update routines, but it doesn’t hurt to check if your device is at the latest update level. If not, you can follow the instructions on how to update macOS on Mac.

libxpc is a closed source project that is part of XPC, which is the enhanced inter-process communication (IPC) framework used in macOS/iOS. In computer science, IPC refers specifically to the mechanisms an operating system provides to allow processes to manage shared data.

One of the security related functions of libxpc is System Integrity Protection (SIP). SIP is a security technology designed to help prevent potentially malicious software from modifying protected files and folders on your Mac. System Integrity Protection restricts the root user account and limits the actions that the root user can perform on protected parts of the Mac operating system. SIP is enabled by default on all modern macOS software releases.

This means that only certain processes—signed by Apple—have special entitlements to write to protected parts of macOS. This includes things like Apple software updates and Apple installers.

The Microsoft security engineers that are credited in the Apple security content however, found a flaw that allowed attackers with root permissions to add a malicious payload to SIP’s exclusions list and launch it. Because they managed to pull this off by abusing the macOS Migration Assistant utility, they named the vulnerability Migraine.

Successfully exploiting this vulnerability would allow an attacker that had somehow managed to obtain root privileges to install a rootkit which would be protected by SIP. SIP can only be disabled by following this procedure:

  1. Restart your system in Recovery mode.
  2. Launch Terminal from the Utilities menu.
  3. Run the command csrutil disable.
  4. Restart your system.

Because SIP is controlled through the Mac’s NVRAM, enabling or disabling SIP affects all versions of the Mac operating system that are installed on the system. NVRAM (nonvolatile random-access memory) is a small amount of memory that your Mac uses to store certain settings and access them quickly.


We don’t just report on vulnerabilities—we identify them, and prioritize action.

Cybersecurity risks should never spread beyond a headline. Keep vulnerabilities in tow by using Malwarebytes Vulnerability and Patch Management.


[ad_2]
Source link

Google Pixel 7a vs Apple iPhone SE (2022)

0
[ad_1]

If you’re on a budget, and you also don’t like large phones, well, we have just the comparison for you. This time around, we’ll compare the Google Pixel 7a vs Apple iPhone SE (2022). Granted, these two phones are immensely different. That goes for their size, design, internals, and more. They do have one thing in common, however, they’re quite affordable. The iPhone Se (2022) is a small phone, while the Pixel 7a is considered to be compact. The size difference between them is huge, though.

This comparison is a bit odd, but it does make sense, to a degree. We’ll first list the specs of both phones, and will then move to compare their designs, displays, performance, battery life, cameras, and audio performance. This should be an interesting one, that’s for sure. Let’s get to it, shall we?

Specs

Google Pixel 7a Apple iPhone SE (2022)
Screen size 6.1-inch fullHD+ flat OLED display (90Hz refresh rate) 4.7-inch HD+ Retina IPS LCD display (60Hz)
Screen resolution 2400 x 1080 1334 x 750
SoC Google Tensor G2 Apple A15 Bionic
RAM 8GB (LPDDR5) 4GB
Storage 128GB (UFS 3.1), non-expandable 64GB, 128GB, 256GB, non-expandable
Rear cameras 64MP (f/1.9 aperture, 26mm lens, 0.8um pixel size, OIS, Dual Pixel PDAF)
13MP (f/2.2 aperture, 120-degree FoV, 1.12um pixel size)
12MP (f/1.8 aperture, wide-angle, OIS, PDAF)
Front cameras 13MP (f/2.2 aperture, 20mm lens, 1.12um pixel size) 7MP (f/2.2 aperture)
Battery 4,385mAh, non-removable, 20W wired charging, 18W wireless charging
Charger not included
1,821mAh (speculated), 18W wired charging, Qi wireless charging
Charger not included
Dimensions 152 x 72.9 x 9mm 138.4 x 67.3 x 7.3mm
Weight 193.5 grams 144 grams
Connectivity 5G, LTE, NFC, Bluetooth 5.3, Wi-Fi, USB Type-C 5G, LTE, NFC, Bluetooth 5.0, Wi-Fi, Lightning
Security In-display fingerprint scanner (optical)
Face Unlock
Touch ID
OS Android 13 iOS 15.3 (upgradable to iOS 16)
Price $499 $429
Buy Amazon Apple

Google Pixel 7a vs Apple iPhone SE (2022): Design

As you can see, these two phones look immensely different in comparison. The iPhone SE (2022) has that old iPhone 8 design, its top and bottom bezels are very thick, while the phone also has a solid-state home button on the front. The Pixel 7a has much thinner top and bottom bezels, and no buttons on the front. It does, however, have a display camera hole at the top of its displays.

The Pixel 7a has a more rectangular shape, while the iPhone SE (2022) corners are rounded quite a bit. Both phones come with an aluminum frame. The Pixel 7a has plastic on the back, while there’s glass on the back of the iPhone SE (2022). Their back sides also look quite different. The Pixel 7a has a camera visor covered by metal, which hosts two cameras. There’s a single camera on the back of the iPhone SE (2022).

The iPhone SE has a much smaller display, and it’s a lot smaller overall. It’s a lot shorter, narrower, and even noticeably thinner than the Pixel 7a. On top of all that, it’s also a lot lighter at 144 grams, compared to 193.5 grams of the Pixel 7a. Both smartphones do offer water and dust resistance. They even have the same IP rating, we’re looking at IP67 rating here. They are both well built, but the Pixel 7a looks way more modern.

Google Pixel 7a vs Apple iPhone SE (2022): Display

There is a 6.1-inch fullHD+ (2400 x 1080) display on the Google Pixel 7a. That display is flat, and it supports HDR content. It’s a 90Hz display, as this phone does offer a high refresh rate. The panel has a 20:9 aspect ratio, and it’s protected by the Gorilla Glass 3. Granted, that’s not the best protection out there.

Google Pixel 7a Review AM AH 01

The iPhone SE (2022) features a 4.7-inch 1334 x 750 Retina IPS LCD display. This panel has an aspect ratio of 16:9, and it comes with Ion-strengthened glass protection. Much like the Pixel 7a’s display, this one is also flat. It does offer lower ppi than the Pixel 7a, though, 326 vs 429 on Google’s mid-ranger.

The Pixel 7a’s display is better in almost every way. It’s not only sharper, but it’s an OLED panel with more vivid colors, and deeper blacks. Do note that the iPhone SE (2022)’s display is not bad, per se. Its sharpness is enough for that size, and for an IPS LCD panel, it’s not bad. Still, it cannot measure up to the Pixel 7a. The Pixel 7a also has a high refresh rate, not to mention that it does get a bit brighter when you need it to. Touch response is good on both phones. Neither device has the best display protection, so you may want to use a screen protector.

Google Pixel 7a vs Apple iPhone SE (2022): Performance

The Pixel 7a is fueled by the Google Tensor G2. That is the same chip that fuels Google’s current-gen flagships. The company also included 8GB of LPDDR5 RAM here, and 128GB of UFS 3.1 flash storage. The Apple A15 Bionic SoC fuels the iPhone SE (2022), while the phone has 4GB of RAM and NVMe flash storage.

Having said that, both of these phones are quite powerful. They both perform admirably on a day-to-day basis. We did not notice any noticeable lag or anything of the sort. What we did notice, however, is that the iPhone SE (2022) does better when it comes to truly demanding games. The Tensor G2 is not really made for gaming, even though it does a great job in that department too. All in all, chances are you’ll be happy with the performance regardless of which phone you get.

Google Pixel 7a vs Apple iPhone SE (2022): Battery

The Pixel 7a includes a 4,385mAh battery, while the iPhone SE (2022) sports a 2,018mAh battery. Apple’s iPhones usually have smaller battery packs than Android phones. That usually doesn’t have to mean anything, but in this case, it does. Despite the fact the iPhone SE (2022) is very small, and has a rather limited display, this battery pack is simply not enough to offer good battery life. Well, not even close to it.

We’ve been able to get 7+ hours of screen-on-time from the Pixel 7a, on a regular basis, with juice left in the tank. The iPhone SE (2022) can’t really come near that. The battery life is actually really poor, around 3-4 hours of screen-on-time. That can go higher if you’re really careful, but with proper usage, the battery life is really poor. That is a limitation of the tiny battery Apple used.

The Pixel 7a supports 18W wired, and 7.5W wireless charging. The iPhone SE (2022) offers 20W wired, and 7.5W wireless charging. In other words, neither phone offers proper fast charging, but considering the battery size in the iPhone SE (2022), 20W wired charging is more than enough. Neither of these two phones includes a charger in the box, by the way. You’ll need to get your own, if you don’t have one already.

Google Pixel 7a vs Apple iPhone SE (2022): Cameras

The Google Pixel 7a has a 64-megapixel main camera, and a 13-megapixel ultrawide camera (120-degree FoV). The iPhone SE (2022), on the other hand, includes a single 12-megapixel camera on the back. During the day, both cameras do a good job. The colors are better on the Pixel 7a, though, while it also does a better job with tricky HDR photos. Other than that, both do a good job. It’s worth noting that the Pixel 7a provides more contrasty photos, though.

Google Pixel 7a Review AM AH 19

In low light, it’s an easy win for the Pixel 7a. It manages to balance out photos just right. The photos end up looking a bit brighter than in real life, but with more than enough details, and usually well-balanced. The iPhone SE (2022) doesn’t even include a night mode, and truth be said, its low light images are not great. They tend to lack detail, brightness, and are usually more grainy than they should be.

The iPhone SE (2022) doesn’t have an ultrawide camera, so that’s not something we can compare here. The one on the Pixel 7a is quite useful, though, and it does a good job of keeping up with the main camera’s color profile. The video recording is not great on either phone, to be quite honest. The Pixel 7a does include a more capable selfie camera, though.

Audio

The Pixel 7a includes a set of stereo speakers, as does the iPhone SE (2022). The thing is, the Pixel 7a’s speakers are better. The sound output is clearer, and the speakers are also louder. The difference is noticeable.

You will not find an audio jack on either of these two phones. You’ll have to resort to their charging ports (Type-C USB and Lightning port, respectively), or go for a wireless connection. The Pixel 7a supports Bluetooth 5.3, while the iPhone SE (2022) is limited to Bluetooth 5.0.


[ad_2]
Source link

Slack is facing a protest to introduce end-to-end encryption

0
[ad_1]

Though Slack is known as a popular tool for office communication, the company faces backlash over the app’s lack of privacy measures. Now, a consortium of organizations is calling for Slack to introduce encrypted messaging to the platform. 

The call for Slack to introduce end-to-end encryption (E2EE)

More than 90 organizations have signed a petition asking for end-to-end encryption. As TechRadar reports, privacy lobbyists are descending on Slack headquarters today to raise awareness of the lack of privacy on the platform.

Backed by Mozilla and Tor, the request details the breadth of users calling for greater privacy measures on the app.

“We are businesses, organizations, communities, and individuals who depend on tools like Slack to connect online. We are activists organizing for change; journalists who communicate with sources and about sensitive stories; nonprofits providing care and support for our communities; companies that need to streamline our processes and share ideas; students, creators, gamers, alumni, artists, athletes, and other communities that use the Internet to connect with people all over the world.”

In the petition, the group cites requests as far back as 2015 for Slack to introduce end-to-end encryption. Additionally, they argue that the company is known to favor profits over privacy. 

Encrypted messaging and privacy

The group is raising concerns about the lack of encrypted messaging on the platform. The group cites that this may lead to hackers and law enforcement getting unauthorized access to users’ DMs. 

The consortium is also calling attention to the lack of blocking and reporting tools on the app, which are necessary security measures against abuse.

With encrypted messaging and security being priorities for users, TechRadar notes that many users opt to use platforms such as WhatsApp or Signal. Both apps are known to prioritize privacy, with Facebook Messenger committing to encryption as well.

Overall, as the petition notes, “safety should be a built-in feature of all technology.”


[ad_2]
Source link

Some Gboard users can now customize the toolbar on the virtual QWERTY

0
[ad_1]

As a long-time Android user, the Gboard virtual QWERTY has always been my keyboard choice especially since everything I need is just a tap away. Earlier this year Google slowly started to rollout a revised customizable toolbar for Gboard and now the dissemination of the update has picked up speed. If you’re a member of the Gboard Beta program and have version 13 running, you should have the revised Gboard toolbar on your Android phone right now.

Fortunately, I am a Beta member (I’ll explain how you can find out if you are and how to join) and my Pixel 6 Pro is running Gboard version 13 so I so have the new toolbar on the app. Instead of the ellipses that used to take you to different features, with the update you’ll find a round circle icon with four squares inside on the left side of the toolbar above the top row of keys on the QWERTY. Tap on that and you’ll be able to customize the toolbar to include six icons that you are a tap away.

Let’s say that your Gboard toolboard currently includes Stickers, GIFs, Google Translate, Settings, Floating (to have the QWERTY float on your display), and Theme. But you want to replace the Theme icon with the Voice icon. So after you tap the round circle icon with four squares inside, long-press on the Theme icon and drag it down to under the heading that says “Hold and drag to customize.” You then long-press on the Voice icon and drag it to where the Theme icon previously was. Release your finger, and that is all there is to it.

Now, to check which version of Gboard that you’re running, go to Settings and in the Search settings bar at the top of the screen, type in Gboard. Go to the bottom of the screen and tap on Gboard App info. At the very bottom of the display you will see the version of the app you’re running. Again, you want it to be version 13 or higher with the Beta designation at the end.
If you want to see if more Gboard Beta testers are being accepted by Google, open up the listing on the Play Store and scroll down. If Google is still accepting Beta testers for the app, you’ll see a place on the Play Store listing asking if you want to be a Beta tester for the app.

The update does allow you to customize the Gboard toolbar to have the features you use the most right at your fingertips. And eventually, the new Gboard toolbar will be available for all Android users of the app.


[ad_2]
Source link