Samsung suffered massive losses from semiconductors in Q1 2023

0
[ad_1]

After sharing estimated figures earlier this month, Samsung has published its detailed earnings report for Q1 2023. The company suffered a steep decline in profit due to weak demand for semiconductors. The smartphone division saved its day riding on the success of the Galaxy S23 series.

Samsung suffered its first quarterly loss from semiconductors since 2008

Samsung posted a consolidated sales revenue of KRW 63.75 trillion (roughly $47.5 billion) in the first quarter of 2023. That’s down about 18% from KRW 77.78 trillion the company generated in the same period last year, which was its highest-ever revenue in the first three months of any year. While the latest figure isn’t too bad considering the current global economic condition, the Korean behemoth hardly took home any money in Q1 2023.

According to Samsung, its operating profit for the January-March 2023 period was just KRW 640 billion (roughly $477 million). The figure is down a staggering 96% from Q1 2022 when it made a profit of KRW 14.12 trillion. The massive decline in profit this year is due to poor financial performance from the semiconductor division.

The Korean behemoth has always made a large chunk of its profit from memory chips, a market it leads globally. But, the unit suffered a loss this time around amid an economic slowdown.

Overall, Samsung’s semiconductor division posted KRW 13.73 trillion in consolidated revenue in Q1 2023. That’s about half of the KRW 26.87 trillion it posted in the same period a year earlier.

However, while the company made a profit of KRW 8.45 trillion from the business last year (almost 60% of the total Q1 2022 profit), it ended up losing KRW 4.58 trillion this year. This is Samsung’s first-ever quarterly loss from the semiconductor business and the lowest quarterly profit since 2008 when the entire world suffered from an economic crisis.

The Galaxy S23 series helped Samsung stay on the positive side in Q1 2023

If not for the Galaxy S23 series, Samsung may have found it difficult to break even in Q1 2023. The company’s smartphone division posted an operating profit of KRW 3.94 trillion this past quarter, almost offsetting the losses of the semiconductor division. The display and digital appliances business brought home a few hundred million Won each to ensure the Korean behemoth stayed on the positive half of the earnings graph.

Going forward, Samsung doesn’t see the semiconductor business to make a sharp turnaround anytime soon. Reports are that the company is expecting its semiconductor profits to be halved this year. Since memory chips have been its cash cow in recent years, the Korean firm’s financial performance for the whole of 2023 could be pretty unsightly too.

It would be hoping the next-gen foldables to do well in the market. The Galaxy Z Fold 5 and Galaxy Z Flip 5 could debut in late July or early August. The Galaxy Watch 6 series should accompany the foldable duo.


[ad_2]
Source link

YouTube Music introduces feature to share your listening habits with your friends

0
[ad_1]

YouTube Music is set to add a new feature where profile statistics can be now made public. Enabling this will allow users to view their own and other users’ music listening habits and preferences on the platform.

With this new feature, users will be able to view their own public profile, which will include information such as their top artists, top tracks, and recently played songs. Additionally, they will be able to view other users’ public profiles, which will display their listening habits and preferences, as well as any playlists they have created and shared for up to two years.

The public profile statistics will also include information about the user’s activity on the platform, such as the number of playlists they have created, the songs and artists most listened to, the music videos most viewed and playlists most listened to on repeat. This information will be displayed on a public profile page, which will be accessible to anyone who searches for the user on the platform.

While this new feature may seem like a simple addition, it has the potential to transform the way users engage with each other on the platform. By allowing users to view each other’s music preferences and habits, it will create a sense of community among users and may even lead to the discovery of new music and artists.It is important to note that this feature will only be available to users who have opted in to making their profile public. Users who prefer to keep their listening habits private can choose to keep their profile hidden from public view.
According to 9to5Google‘s reporting, the feature is not yet live for everyone and the link to the help article is not yet live. However, the feature seems to be rolling out to a limited amount of users at this time. If you wish to access your own public stats, open your YouTube Music app and navigate to “Settings”, then navigate to “Privacy and Location”, then “Channel Settings”. If the setting is available to you, you should then see the “Enable public stats” toggle.

The addition of public profile statistics to YouTube Music is a significant development for the platform as it has been steadily and adding new features to compete with the likes of Spotify and Apple Music. It has the potential to create a more interactive and engaging user experience, while also giving users greater control over how they share their music preferences with others.


[ad_2]
Source link

Let Remote Attackers Launch XSS

0
[ad_1]
Cisco Zero-Day XSS Flaw

A zero-day flaw in Cisco’s Prime Collaboration Deployment (PCD) software that can be used to launch cross-site scripting attacks has been identified.

“A vulnerability in the web-based management interface of Cisco Prime Collaboration Deployment could allow an unauthenticated, remote attacker to conduct a cross-site scripting attack against a user of the interface,” Cisco reports.

Pierre Vivegnis of the NATO Cyber Security Centre (NCSC) discovered the flaw, CVE-2023-20060, in the web-based management interface of Cisco PCD 14 and earlier.

Cisco said, “At the time of publication, this vulnerability affected Cisco Prime Collaboration Deployment.”

This server administration software allows administrators to migrate or upgrade their organization’s inventory servers.

Reports say the web-based management interface is vulnerable because user input needs to be adequately validated.

An attacker might take advantage of this vulnerability by convincing a user of the interface to click a specially created link.

If the exploit is successful, the attacker may be able to access private browser-based data or run arbitrary script code in the context of the compromised interface.

“A successful exploit could allow the attacker to execute arbitrary script code in the context of the affected interface or access sensitive, browser-based information.”

Fixed Release

Cisco intends to publish software patches that fix this flaw. There aren’t any workarounds for this weakness.

Fixed Release

Notably, the Cisco Product Security Incident Response Team (PSIRT) has not yet discovered any proof of malicious use in the wild. It is unaware of any publicly available exploit code aimed at the flaw.

Also, another high-severity IP phone zero-day, CVE-2022-20968, which was made public in early December 2023, requires patching by Cisco.

When the vulnerability was first discovered, Cisco’s PSIRT issued a warning, noting that it is “aware that proof-of-concept exploit code is available” and that the “vulnerability has been publicly discussed.”

Although the business stated that security fixes would be available in January 2023, the flaw still needs to be fixed months after it was first discovered.

Building Your Malware Defense Strategy – Download Free E-Book


[ad_2]
Source link

The affordable Samsung Galaxy A24 will get four Android updates

0
[ad_1]

Samsung has added a surprisingly affordable device to its unbeatable Android update policy. The company promises an industry-leading four years of major Android updates for the newly-launched Galaxy A24. The handset recently debuted in Vietnam with a sub-$300 price tag.

Samsung arguably offers the best update support in the Android space today, even better than Google. During the Galaxy S22 launch in February last year, the company announced that its recent flagships and select mid-range models will get four major Android OS updates and five years of security updates, something no other Android OEM offered at that time. A few brands have gone on to match the world’s biggest smartphone vendor in recent months, though they don’t extend this generosity beyond flagships.

The Korean behemoth, on the other hand, keeps adding affordable models to this generous software support policy. Initially, it promised four major Android updates for the Galaxy A5x and Galaxy A7x lineups in the mid-range segment. It then added the Galaxy A3x lineup too. The Galaxy A54 5G and Galaxy A34 5G, both of which debuted in March running Android 13 out of the box, will get updates until Android 17. They are also eligible for security updates until at least March 2028.

Now, Samsung has extended this policy to the Galaxy A2x lineup as well. The newly-launched Galaxy A24 will also get the same level of Android OS and security updates as the aforementioned duo or the Galaxy S23 series flagships. Pricier handsets get security updates more frequently, but four major Android OS updates and five years of security updates for the Galaxy A24 are pretty big. The device costs VND 6,490,000 (roughly $277) for the base model with 6GB of RAM and 128GB of storage. For an 8GB+128GB configuration, it costs VND 6,990,000 (roughly $298).

Samsung devices are usually the first to monthly security updates as well

Samsung doesn’t just promise long after-sales update support for its Galaxy devices. It releases updates fast as well. Despite launching more phones than competing vendors every year, the Korean firm pushes major Android updates to most of its eligible devices within a few months of the stable release from Google.

On top of it, Samsung is usually the first to push the latest monthly security updates as well. Case in point, it has already released the May 2023 security patch long before Google. We are still a few days away from May. It would be some time before other vendors catch up to the Korean biggie. Meanwhile, we expect it to seed the new security patch to more eligible models in the coming days. We will keep you posted.


[ad_2]
Source link

How To Watch The 2023 NFL Draft

0
[ad_1]

The 2023 NFL Draft is finally here. And it’s going to change the lives of many young men, coming out of the world of College Football.

The Draft will be taking place live from Kansas City’s Union Station starting on April 27 through April 29. This year, the Carolina Panthers hold the number one pick, and will have 10 minutes to make their selection. However, since Carolina has known for months that they’d have the number one pick, it shouldn’t take the full 10 minutes.

Who will be the #1 pick?

This year, there’s no real consensus on the number one overall pick, but many believe it’ll be the former Heisman winner, Bryce Young. Who played as Quarterback for Alabama. And he’ll likely go to Carolina, unless the Panthers decide to trade that pick, but it’s very unlikely for a #1 overall pick to get traded.

So who’s going next? Many believe that Ohio State’s CJ Stroud will be next, followed by Will Anderson from Alabama, Will Levis from Kentucky and Jalen Carter from Georgia. And that will round out the top 5 picks, with three quarterbacks, and two defensive positions.

How the 2023 NFL Draft will work

In the first round, teams will get about 10 minutes per selection. So they can quickly decide who they want to draft. Let’s not forget that teams have been looking for months, at who they want to draft, and have their selections made. For the most part. The only real variables here are any trades being made, and if a team took someone early that was unexpected.

In the second round, teams will get seven minutes to make their picks. In rounds three through six, that drops to five minutes. And in the final round it’s four minutes. The decrease in time to pick your draft picks happens because the first round is when most of the bigger names are going to go. Typically once you get to the seventh round, there’s not many people that can make or break your team. With the exception being Tom Brady, who was the 199th pick in 2000, and now has seven Super Bowl rings. So don’t count anyone out.

The NFL Draft can be pretty exciting for fans, as they get an early peak at what their team may look like in the next season.

This year, the announcers will be different for each network – NFL Network, ESPN, and ABC. With ESPN and ABC simulcasting on the final day. Here’s how it’ll shake out in that regard.

NFL Draft Day 1 Announcers:

  • NFL Network: Rich Eisen, Daniel Jeremiah, Charles Davis, Joel Klatt, Kurt Warner, Ian Rapoport, and Melissa Stark — noteSherree Burruss will be on location in Allen Park for specific Lions coverage
  • ESPN: Mike Greenberg, Mel Kiper Jr., Louis Riddick, Booger McFarland, Chris Mortensen, Adam Schefter, and Suzy Kolber
  • ABC: Rece Davis, Todd McShay, Kirk Herbstreit, Desmond Howard, Pete Thamel, Sam Ponder, Robert Griffin III, and Laura Rutledge

NFL Draft Day 2 Announcers:

  • NFL Network: Rich Eisen, Daniel Jeremiah, Charles Davis, Joel Klatt, Ian Rapoport, Melissa Stark, and Peter Schrager — noteSherree Burruss will be on location in Allen Park for specific Lions coverage
  • ESPN: Mike Greenberg, Mel Kiper Jr., Louis Riddick, Booger McFarland, Chris Mortensen, Adam Schefter, Suzy Kolber
  • ABC: Rece Davis, Todd McShay, Kirk Herbstreit, Desmond Howard, Pete Thamel, Sam Ponder, Robert Griffin III, Laura Rutledge, David Pollack (joins on Friday)

NFL Draft Day 3 Announcers:

  • NFL Network: Rich Eisen, Daniel Jeremiah, Charles Davis, Peter Schrager, and Ian Rapoport
  • ESPN: Rece Davis, Mel Kiper Jr., Todd McShay, Louis Riddick, and Matt Miller (debut)
  • ABC: (Simulcasting ESPN’s broadcast)

How to watch the 2023 NFL Draft

You can watch the 2023 NFL Draft virtually anywhere. And that’s good news for cord cutters that still want to catch the big night. The NFL Draft will be broadcast on ABC, ESPN, ESPN Deportes and the NFL Network. So as long as you have a package that has one of those channels, you’ll be able to watch the big night. Here are some of our picks for the best way to watch the NFL Draft this year.

OTA Antenna

Since the draft is going to be airing on ABC, you don’t actually need to subscribe to anything. And if you have an OTA antenna, you can watch the draft for free. If not, you can purchase one from Amazon, and get all of your locals for free.

You could also use the OTA Antenna to watch on Plex Live TV which is currently free. Plex Live TV does still require that your TV have an antenna, but you’ll be able to DVR shows on your local channels, as well as watch on other devices that use your Plex account. Which can really be a lot more useful than just a regular antenna.

DIRECTV Stream

DIRECTV Stream is actually one of the cheaper options on this list now, but it does offer up some premium networks in addition to ABC and ESPN. That includes HBO and even Cinemax. AT&T TV Now allows you to watch over 45 live TV channels, and can also DVR up to 20 hours content, that you can watch anytime and anywhere. AT&T TV Now does allow you to watch on many different devices including Android, Android TV, Chromecast, Apple TV, iOS, Fire TV and much more.

Pricing for DIRECTV Stream starts at $65 per month. And offers a seven-day free trial.

fubo

fubo is the most expensive on this list, but still worth signing up for. It is a must-have for sports fans – even though there really aren’t any sports happening right now. There are over 90 live TV channels available on fubo. While you won’t get any locals like ABC and ESPN is also not available, you can still watch the draft on the NFL Network. fubo also offers up to 30 hours of DVR space for recording shows and movies.

fubo starts at $74.99. And it also offers a free seven-day trial.

Hulu with Live TV

When it comes to streaming TV services, Hulu with Live TV is actually one of the better options out there. In addition to over 85 channels, you also get the on-demand library that Hulu offers, as well as originals. Hulu does give you access to ABC and ESPN, but no access to the NFL Network, unfortunately.

Hulu with Live TV is going to cost you $70 per month. And there is also a free seven-day trial available.

Sling TV

Sling TV is going to be the cheapest option here, besides grabbing an OTA Antenna. Sling TV starts at just $40 per month and offers access to ESPN on the Sling Orange plan. And NFL Network on the Sling Blue plan. Now you can combine these two plans for $55 per month to get even more channels. You can also watch this on three screens simultaneously, and there is also the ability to record with cloud DVR.

However, if you sign up for Sling TV, you’ll get half off of your first month.

When does it start?

The 2023 NFL Draft will be held in the city of Cleveland, Ohio and it all starts on April 27, 2021 at 8PM ET/5PM PT.

Round 1 is on Thursday at 8PM ET/5PM PT, with rounds 2 and 3 on Friday starting at 7PM ET/4PM PT. And rounds four through seven will take place Saturday starting at 12PM ET/9AM PT.

As usual, the draft will be broadcast on ABC, ESPN, ESPN Deportes and the NFL Network in the US. In Canada, you can watch it on Sky Sports, and on Sky Sports in the UK. If you’re in Australia, you can watch it on ESPN via Foxtel.


[ad_2]
Source link

TP-Link WAN-Side Vulnerability Exploited to Install Mirai

0
[ad_1]
TP-Link WAN-Side Vulnerability

Mirai botnet exploits CVE-2023-1389 to add TP-Link Archer A21 (AX1800) routers to DDoS attacks. During the Pwn2Own Toronto event in December 2022, two hacking teams exploited the vulnerability in different ways via:-

  • LAN interfaces
  • WAN interfaces

In January 2023, the flaw was unveiled to TP-Link, and just after the report, TP-Link released a new firmware update with the fix last month.

Mirai botnet has updated its toolkit to include CVE-2023-1389, as observed by the ZDI threat-hunting team detecting new exploit attempts in Eastern Europe via their telemetry system.

Flaw Profile

  • CVE ID: CVE-2023-1389 (ZDI-CAN-19557/ZDI-23-451)
  • Falw Description: This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link Archer AX21 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the merge_country_config function. The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute arbitrary code in the root context.
  • CVSS Score: 8.8
  • Affected Vendor: TP-Link
  • Affected Product: Archer AX21
  • Disclosure Timeline:-
  • 2023-01-25 – Vulnerability reported to the vendor
  • 2023-04-24 – Coordinated public release of advisory

This vulnerability is an unauthenticated command injection vulnerability, and it has been identified in the web management interface’s locale API.

Successful exploitation of this flaw enables users to specify the form they want to call via the query string form and an operation, which is typical:-

or

Cyber attackers can exploit the flaw by incorporating a command payload as part of the country parameter and subsequently initiating a second request to activate the command. 

Mirai Malware installation

On April 11, 2023, the initial indications of in-the-wild exploitation surfaced, and since then, malicious activity has been identified globally.

Mirai malware botnet now uses the vulnerability to compromise the devices, and then subsequently, it procures the device into its botnet by downloading the suitable binary payload for the router’s architecture.

The current version of Mirai concentrates on DDoS attacks, particularly on game servers. It can target Valve Source Engine (VSE) and possesses features that reflect this focus.

Malware Connection

This new malware version can replicate authentic network traffic, making it challenging for DDoS mitigation solutions to detect malicious traffic.

For identification or detection, here below, we have mentioned the common signs of an infected TP-Link router:-

  • Overheating
  • Internet disconnections
  • On the device’s network settings, uncertain changes
  • Unwanted resetting of admin user passwords

Patch

On February 24, 2023, TP-Link took steps to address the issue at hand. Unfortunately, the company’s solution was inadequate and failed to prevent further exploitation.

But, on March 14, 2023, the company released a firmware update with the patch to fix CVE-2023-1389, and here below, we have mentioned the updated version:-

If you are a user of the Archer AX21 AX1800 dual-band WiFi 6 router, then can download the latest firmware update from their official update page.

Building Your Malware Defense Strategy – Download Free E-Book


[ad_2]
Source link

Google ads are being used to spread malware

0
[ad_1]

Malicious actors are using Google advertisements and SEO tactics to entice victims into clicking on links poisoned with malware.

According to cyber security company Secureworks, malicious actors have been using poisoned ad installers as trojans, specifically to spread Bumblebee malware. These ad installers are associated with a number of well-known companies including Zoom, Citrix Workspace, Cisco AnyConnect and OpenAI’s ChatGPT. For example, Secureworks researchers found that a malicious actor had not only created a poisoned ad installer for Cisco AnyConnect, but a fake download page for the malware as well. They were able to do this by exploiting a compromised WordPress site.

Once Bumblebee malware is downloaded, malicious actors most often use it to launch ransomware within the infected device. In one case, Secureworks researchers found that the malicious actor moved laterally across the device, downloading and launching a number of applications and software programs including legitimate remote access tools AnyDesk and Dameware as well as penetration testing malware Colbalt Strike.

By using paid Google ads as well as SEO tactics in their fake download pages, malicious actors are able to ensure that their Trojanized and poisoned uploads are at the top of the Google search results page, meaning victims are more likely to click on them.

An example of this was seen on January 15, 2023, when a cryptocurrency and NFT influencer known as NFT God said that their “entire digital livelihood was violated” after hackers gained access to and stole “a life changing amount of [their] net worth” in funds and NFTs from their digital wallet. The hackers were able to gain access to their funds through a poisoned ad installer masquerading as a legitimate video streaming software, OBS. 

After downloading and attempting to run the software, NFT God noticed that it had not properly installed, but dismissed this as a technical difficulty. In actuality, they had introduced malware to their device which allowed malicious users access to their social media accounts and digital wallet.

According to NFT God, the hackers stole “at least 19 ETH, worth almost US?$27,000 at the time, a Mutant Ape Yacht Club (MAYC) NFT with a current floor price of 16 ETH ($25,000), and several other NFTs”.

To prevent falling prey to poisoned ads, only download software and updates from trusted sites and go to the sites directly to avoid clicking on a Trojanized link. 


[ad_2]
Source link

Motorola won’t use ‘ Razr Lite’ moniker for its upcoming foldable

0
[ad_1]

The alleged Motorola Razr Lite appeared in images not long ago. The Razr Lite name seemed like a sure thing, especially after a tipster mentioned it alongside the Motorola Razr Pro when he revealed their global launch date. Well, it seems like Motorola won’t use the ‘Razr Lite’ moniker, though.

Motorola will use the ‘Razr 40’ name instead of the ‘Razr Lite’ moniker

According to Evan Blass, one of the most prolific tipsters out there, Motorola will opt for the ‘Razr 40’ name instead. It will pair that with the ‘Razr 40 Ultra’ name, which is what the higher-end clamshell foldable will be called.

Some of you may wonder what’s up with the Motorola Razr Pro name then? Well, considering that the Razr Lite name won’t be used, chances are the Razr Pro won’t be either. The two devices will be called the Motorola Razr 40 Ultra and Razr 40 globally, it would seem.

It’s possible they will feature different names in China, though. The Razr+ 2023 name was mentioned earlier, so that could be the option for the higher-end model. We’ll have to wait and see.

Both phones are tipped to launch globally on June 1

Motorola did start teasing both smartphones already, so chances are they’ll launch in China soon. The global launch is tipped for June 1. That launch will allegedly take place in Madrid, Spain.

The Motorola Razr 40 Ultra surfaced yesterday in several images, showing off its large outer display. That cover panel will measure 3.5 inches, and it will be the largest cover display on any clamshell foldable. That includes the upcoming Galaxy Z Flip 5 too.

The Motorola Razr 40, on the other hand, will feature a much smaller outer display. It’ll have a ticker display, basically, next to its dual camera setup. That handset will, of course, be more affordable too.

Not much is known about the Razr 40 specs, but the Razr 40 Ultra specs did surface earlier. The Snapdragon 8+ Gen 1 or Snapdragon 8 Gen 2 will fuel the phone. It’ll include a large fullHD+ main AMOLED display with a 120Hz or 144Hz refresh rate. LPDDR5X RAM and UFS 4.0 flash storage are also expected.


[ad_2]
Source link

Xiaomi announces zero-carbon philosophy & goals to reach by 2040

0
[ad_1]

Xiaomi has announced its zero-carbon philosophy, and laid out its goals to reach by 2040. The company detailed its plans in a blog post, which got reshared by the company’s CEO on Twitter.

The company says that it wanted to emphasize its commitment to reducing Greenhouse Gas (GHG) emissions and move to a low-carbon society. So, what is Xiaomi planning?

Xiaomi unveils its zero-carbon philosophy and goals it plans to reach by 2040

Well, by 2030, the company wants to reduce GHG emissions from its main operating segments by at least 70% from the base year level. By no later than 2040, Xiaomi plans to reduce GHG emission from its main operating segments by at least 98%, with pre-conditions in place to achieve net zero emissions.

The company will prioritize the use of low-carbon technologies, long-term green power purchase agreements, and on-site renewable energy generation to reduce GHG emissions. On top of that, Xiaomi will encourage key suppliers to establish renewable energy usage and push them towards GHG emission reduction.

Xiaomi goes into way more detail in its blog post, if you’d like to get into the specifics. These are the company’s goals, basically, and Xiaomi does explain how it plans to reach those goals on its website.

Apple & Samsung also shared some plans earlier this year

Many companies are pushing towards recycling, reducing greenhouse gas, and more. That is always commendable, and the more of them do it, the better. We have only one planet to live on, and we should take good care of it… which we’re not doing at the moment.

As a reminder, Apple recently promised to use 100% recycled cobalt in batteries by 2025. The company laid out some other plans too, which you can read more about by clicking here. On the flip side, back in February, Samsung said that its goal is to use 100% recycled plastic parts in all of its smartphones by 2050.


[ad_2]
Source link

Fake Flipper Zero sellers are after your money

0
[ad_1]

Flipper Zero units are being sold on sites not recognized by developers. Stay away!

Thanks to Malwarebytes’ Stefan Dasic who provided the research and screenshots for this article.

Flipper Zero, a “multi-tool device for hackers“, is frequently out of stock due to its popularity in hardware circles. Flipper Zero combines research and penetration hardware tools into a single unit. It can be used straight out of the box, but it’s also open-source and customizable, so users can extend its functionality however they like.

A steady stream of influencers promoting the product only makes the device ever more desirable, and the lack of availability makes it a big draw for fraudsters looking to turn a quick profit. 

(Source: Flipper Zero Kickstarter page)

Sites claiming to sell Flipper Zero have previously been spotted on both Instagram and Twitter. Our researchers have recently found several bogus sites that claim to sell Flipper Zero. We’re going to walk you through one. 

The makings of a fake Flipper Zero site

Most bogus Flipper Zero sites mimic the clean design of the real thing located at the genuine site, flipperzero.one. The sites also tend to make use of HTTPs, and come complete with a padlock in the URL bar. Note that HTTPs on a site does not mean it’s legitimate by its presence alone, it only means that the connection between your device and the site is encrypted. 

zerotools[dot]net targets European consumers (Source: Stefan Dasic | Malwarebytes)

A genuine Flipper Zero costs $169. Some fake sites will overcharge if they want you to panic at the lack of supply. Others will undercharge if they want you to think you’ve found the last stock in town. In our example, the standard price on zerotools[dot]net is 199.99 ($220.24), excluding any additional fees like shipping.

The site asks for the sort of personal details you are typically asked for when ordering something online, such as full name and address. If you’re on the genuine Flipper Zero site, payment methods will include card, PayPal, and Google Pay. Our fake site, zerotools[dot]net, leans heavily toward cryptocurrency payments. Scammers prefer this mode because cryptocurrency transactions are much more difficult to trace than traditional payment methods such as those on the genuine site.

Specifics about the Bitcoin wallet used for the site above are not available. However, a wallet used on another fake Flipper Zero site currently contains some coins, which may indicate people have fallen for the scam.

How to avoid fake Flipper Zero sites

  • Buy straight from the developers. You can purchase units from the official website, flipperzero.one, or from the Kickstarter page. You may be waiting a while before they become available again, but at least when they do you know you’ll be getting your hands on the real thing.
  • Buy from legitimate retailers. There are a handful of shops online that Flipper Zero developers recognize as genuine sellers of Flipper units. We’ve replicated the list from the official Discord server.
  • Familiarize yourself with the official site. Take note of the real URL, the payment methods available, and be wary of sites pushing a price that’s too high or too good to be true.

Malwarebytes products block these sites to protect users from getting scammed.


Malwarebytes removes all remnants of ransomware and prevents you from getting reinfected. Want to learn more about how we can help protect your business? Get a free trial below.

TRY NOW


[ad_2]
Source link