How To Watch The 2023 NFL Draft

0
[ad_1]

The 2023 NFL Draft is finally here. And it’s going to change the lives of many young men, coming out of the world of College Football.

The Draft will be taking place live from Kansas City’s Union Station starting on April 27 through April 29. This year, the Carolina Panthers hold the number one pick, and will have 10 minutes to make their selection. However, since Carolina has known for months that they’d have the number one pick, it shouldn’t take the full 10 minutes.

Who will be the #1 pick?

This year, there’s no real consensus on the number one overall pick, but many believe it’ll be the former Heisman winner, Bryce Young. Who played as Quarterback for Alabama. And he’ll likely go to Carolina, unless the Panthers decide to trade that pick, but it’s very unlikely for a #1 overall pick to get traded.

So who’s going next? Many believe that Ohio State’s CJ Stroud will be next, followed by Will Anderson from Alabama, Will Levis from Kentucky and Jalen Carter from Georgia. And that will round out the top 5 picks, with three quarterbacks, and two defensive positions.

How the 2023 NFL Draft will work

In the first round, teams will get about 10 minutes per selection. So they can quickly decide who they want to draft. Let’s not forget that teams have been looking for months, at who they want to draft, and have their selections made. For the most part. The only real variables here are any trades being made, and if a team took someone early that was unexpected.

In the second round, teams will get seven minutes to make their picks. In rounds three through six, that drops to five minutes. And in the final round it’s four minutes. The decrease in time to pick your draft picks happens because the first round is when most of the bigger names are going to go. Typically once you get to the seventh round, there’s not many people that can make or break your team. With the exception being Tom Brady, who was the 199th pick in 2000, and now has seven Super Bowl rings. So don’t count anyone out.

The NFL Draft can be pretty exciting for fans, as they get an early peak at what their team may look like in the next season.

This year, the announcers will be different for each network – NFL Network, ESPN, and ABC. With ESPN and ABC simulcasting on the final day. Here’s how it’ll shake out in that regard.

NFL Draft Day 1 Announcers:

  • NFL Network: Rich Eisen, Daniel Jeremiah, Charles Davis, Joel Klatt, Kurt Warner, Ian Rapoport, and Melissa Stark — note: Sherree Burruss will be on location in Allen Park for specific Lions coverage
  • ESPN: Mike Greenberg, Mel Kiper Jr., Louis Riddick, Booger McFarland, Chris Mortensen, Adam Schefter, and Suzy Kolber
  • ABC: Rece Davis, Todd McShay, Kirk Herbstreit, Desmond Howard, Pete Thamel, Sam Ponder, Robert Griffin III, and Laura Rutledge

NFL Draft Day 2 Announcers:

  • NFL Network: Rich Eisen, Daniel Jeremiah, Charles Davis, Joel Klatt, Ian Rapoport, Melissa Stark, and Peter Schrager — note: Sherree Burruss will be on location in Allen Park for specific Lions coverage
  • ESPN: Mike Greenberg, Mel Kiper Jr., Louis Riddick, Booger McFarland, Chris Mortensen, Adam Schefter, Suzy Kolber
  • ABC: Rece Davis, Todd McShay, Kirk Herbstreit, Desmond Howard, Pete Thamel, Sam Ponder, Robert Griffin III, Laura Rutledge, David Pollack (joins on Friday)

NFL Draft Day 3 Announcers:

  • NFL Network: Rich Eisen, Daniel Jeremiah, Charles Davis, Peter Schrager, and Ian Rapoport
  • ESPN: Rece Davis, Mel Kiper Jr., Todd McShay, Louis Riddick, and Matt Miller (debut)
  • ABC: (Simulcasting ESPN’s broadcast)

How to watch the 2023 NFL Draft

You can watch the 2023 NFL Draft virtually anywhere. And that’s good news for cord cutters that still want to catch the big night. The NFL Draft will be broadcast on ABC, ESPN, ESPN Deportes and the NFL Network. So as long as you have a package that has one of those channels, you’ll be able to watch the big night. Here are some of our picks for the best way to watch the NFL Draft this year.

OTA Antenna

Since the draft is going to be airing on ABC, you don’t actually need to subscribe to anything. And if you have an OTA antenna, you can watch the draft for free. If not, you can purchase one from Amazon, and get all of your locals for free.

You could also use the OTA Antenna to watch on Plex Live TV which is currently free. Plex Live TV does still require that your TV have an antenna, but you’ll be able to DVR shows on your local channels, as well as watch on other devices that use your Plex account. Which can really be a lot more useful than just a regular antenna.

DIRECTV Stream

DIRECTV Stream is actually one of the cheaper options on this list now, but it does offer up some premium networks in addition to ABC and ESPN. That includes HBO and even Cinemax. AT&T TV Now allows you to watch over 45 live TV channels, and can also DVR up to 20 hours content, that you can watch anytime and anywhere. AT&T TV Now does allow you to watch on many different devices including Android, Android TV, Chromecast, Apple TV, iOS, Fire TV and much more.

Pricing for DIRECTV Stream starts at $65 per month. And offers a seven-day free trial.

fubo

fubo is the most expensive on this list, but still worth signing up for. It is a must-have for sports fans – even though there really aren’t any sports happening right now. There are over 90 live TV channels available on fubo. While you won’t get any locals like ABC and ESPN is also not available, you can still watch the draft on the NFL Network. fubo also offers up to 30 hours of DVR space for recording shows and movies.

fubo starts at $74.99. And it also offers a free seven-day trial.

Hulu with Live TV

When it comes to streaming TV services, Hulu with Live TV is actually one of the better options out there. In addition to over 85 channels, you also get the on-demand library that Hulu offers, as well as originals. Hulu does give you access to ABC and ESPN, but no access to the NFL Network, unfortunately.

Hulu with Live TV is going to cost you $70 per month. And there is also a free seven-day trial available.

Sling TV

Sling TV is going to be the cheapest option here, besides grabbing an OTA Antenna. Sling TV starts at just $40 per month and offers access to ESPN on the Sling Orange plan. And NFL Network on the Sling Blue plan. Now you can combine these two plans for $55 per month to get even more channels. You can also watch this on three screens simultaneously, and there is also the ability to record with cloud DVR.

However, if you sign up for Sling TV, you’ll get half off of your first month.

When does it start?

The 2023 NFL Draft will be held in the city of Cleveland, Ohio and it all starts on April 27, 2021 at 8PM ET/5PM PT.

Round 1 is on Thursday at 8PM ET/5PM PT, with rounds 2 and 3 on Friday starting at 7PM ET/4PM PT. And rounds four through seven will take place Saturday starting at 12PM ET/9AM PT.

As usual, the draft will be broadcast on ABC, ESPN, ESPN Deportes and the NFL Network in the US. In Canada, you can watch it on Sky Sports, and on Sky Sports in the UK. If you’re in Australia, you can watch it on ESPN via Foxtel.


[ad_2]
Source link

TP-Link WAN-Side Vulnerability Exploited to Install Mirai

0
[ad_1]
TP-Link WAN-Side Vulnerability

Mirai botnet exploits CVE-2023-1389 to add TP-Link Archer A21 (AX1800) routers to DDoS attacks. During the Pwn2Own Toronto event in December 2022, two hacking teams exploited the vulnerability in different ways via:-

  • LAN interfaces
  • WAN interfaces

In January 2023, the flaw was unveiled to TP-Link, and just after the report, TP-Link released a new firmware update with the fix last month.

Mirai botnet has updated its toolkit to include CVE-2023-1389, as observed by the ZDI threat-hunting team detecting new exploit attempts in Eastern Europe via their telemetry system.

Flaw Profile

  • CVE ID: CVE-2023-1389 (ZDI-CAN-19557/ZDI-23-451)
  • Falw Description: This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link Archer AX21 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the merge_country_config function. The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute arbitrary code in the root context.
  • CVSS Score: 8.8
  • Affected Vendor: TP-Link
  • Affected Product: Archer AX21
  • Disclosure Timeline:-
  • 2023-01-25 – Vulnerability reported to the vendor
  • 2023-04-24 – Coordinated public release of advisory

This vulnerability is an unauthenticated command injection vulnerability, and it has been identified in the web management interface’s locale API.

Successful exploitation of this flaw enables users to specify the form they want to call via the query string form and an operation, which is typical:-

or

Cyber attackers can exploit the flaw by incorporating a command payload as part of the country parameter and subsequently initiating a second request to activate the command. 

Mirai Malware installation

On April 11, 2023, the initial indications of in-the-wild exploitation surfaced, and since then, malicious activity has been identified globally.

Mirai malware botnet now uses the vulnerability to compromise the devices, and then subsequently, it procures the device into its botnet by downloading the suitable binary payload for the router’s architecture.

The current version of Mirai concentrates on DDoS attacks, particularly on game servers. It can target Valve Source Engine (VSE) and possesses features that reflect this focus.

Malware Connection

This new malware version can replicate authentic network traffic, making it challenging for DDoS mitigation solutions to detect malicious traffic.

For identification or detection, here below, we have mentioned the common signs of an infected TP-Link router:-

  • Overheating
  • Internet disconnections
  • On the device’s network settings, uncertain changes
  • Unwanted resetting of admin user passwords

Patch

On February 24, 2023, TP-Link took steps to address the issue at hand. Unfortunately, the company’s solution was inadequate and failed to prevent further exploitation.

But, on March 14, 2023, the company released a firmware update with the patch to fix CVE-2023-1389, and here below, we have mentioned the updated version:-

If you are a user of the Archer AX21 AX1800 dual-band WiFi 6 router, then can download the latest firmware update from their official update page.

Building Your Malware Defense Strategy – Download Free E-Book


[ad_2]
Source link

Google ads are being used to spread malware

0
[ad_1]

Malicious actors are using Google advertisements and SEO tactics to entice victims into clicking on links poisoned with malware.

According to cyber security company Secureworks, malicious actors have been using poisoned ad installers as trojans, specifically to spread Bumblebee malware. These ad installers are associated with a number of well-known companies including Zoom, Citrix Workspace, Cisco AnyConnect and OpenAI’s ChatGPT. For example, Secureworks researchers found that a malicious actor had not only created a poisoned ad installer for Cisco AnyConnect, but a fake download page for the malware as well. They were able to do this by exploiting a compromised WordPress site.

Once Bumblebee malware is downloaded, malicious actors most often use it to launch ransomware within the infected device. In one case, Secureworks researchers found that the malicious actor moved laterally across the device, downloading and launching a number of applications and software programs including legitimate remote access tools AnyDesk and Dameware as well as penetration testing malware Colbalt Strike.

By using paid Google ads as well as SEO tactics in their fake download pages, malicious actors are able to ensure that their Trojanized and poisoned uploads are at the top of the Google search results page, meaning victims are more likely to click on them.

An example of this was seen on January 15, 2023, when a cryptocurrency and NFT influencer known as NFT God said that their “entire digital livelihood was violated” after hackers gained access to and stole “a life changing amount of [their] net worth” in funds and NFTs from their digital wallet. The hackers were able to gain access to their funds through a poisoned ad installer masquerading as a legitimate video streaming software, OBS. 

After downloading and attempting to run the software, NFT God noticed that it had not properly installed, but dismissed this as a technical difficulty. In actuality, they had introduced malware to their device which allowed malicious users access to their social media accounts and digital wallet.

According to NFT God, the hackers stole “at least 19 ETH, worth almost US?$27,000 at the time, a Mutant Ape Yacht Club (MAYC) NFT with a current floor price of 16 ETH ($25,000), and several other NFTs”.

To prevent falling prey to poisoned ads, only download software and updates from trusted sites and go to the sites directly to avoid clicking on a Trojanized link. 


[ad_2]
Source link

Motorola won’t use ‘ Razr Lite’ moniker for its upcoming foldable

0
[ad_1]

The alleged Motorola Razr Lite appeared in images not long ago. The Razr Lite name seemed like a sure thing, especially after a tipster mentioned it alongside the Motorola Razr Pro when he revealed their global launch date. Well, it seems like Motorola won’t use the ‘Razr Lite’ moniker, though.

Motorola will use the ‘Razr 40’ name instead of the ‘Razr Lite’ moniker

According to Evan Blass, one of the most prolific tipsters out there, Motorola will opt for the ‘Razr 40’ name instead. It will pair that with the ‘Razr 40 Ultra’ name, which is what the higher-end clamshell foldable will be called.

Some of you may wonder what’s up with the Motorola Razr Pro name then? Well, considering that the Razr Lite name won’t be used, chances are the Razr Pro won’t be either. The two devices will be called the Motorola Razr 40 Ultra and Razr 40 globally, it would seem.

It’s possible they will feature different names in China, though. The Razr+ 2023 name was mentioned earlier, so that could be the option for the higher-end model. We’ll have to wait and see.

Both phones are tipped to launch globally on June 1

Motorola did start teasing both smartphones already, so chances are they’ll launch in China soon. The global launch is tipped for June 1. That launch will allegedly take place in Madrid, Spain.

The Motorola Razr 40 Ultra surfaced yesterday in several images, showing off its large outer display. That cover panel will measure 3.5 inches, and it will be the largest cover display on any clamshell foldable. That includes the upcoming Galaxy Z Flip 5 too.

The Motorola Razr 40, on the other hand, will feature a much smaller outer display. It’ll have a ticker display, basically, next to its dual camera setup. That handset will, of course, be more affordable too.

Not much is known about the Razr 40 specs, but the Razr 40 Ultra specs did surface earlier. The Snapdragon 8+ Gen 1 or Snapdragon 8 Gen 2 will fuel the phone. It’ll include a large fullHD+ main AMOLED display with a 120Hz or 144Hz refresh rate. LPDDR5X RAM and UFS 4.0 flash storage are also expected.


[ad_2]
Source link

Xiaomi announces zero-carbon philosophy & goals to reach by 2040

0
[ad_1]

Xiaomi has announced its zero-carbon philosophy, and laid out its goals to reach by 2040. The company detailed its plans in a blog post, which got reshared by the company’s CEO on Twitter.

The company says that it wanted to emphasize its commitment to reducing Greenhouse Gas (GHG) emissions and move to a low-carbon society. So, what is Xiaomi planning?

Xiaomi unveils its zero-carbon philosophy and goals it plans to reach by 2040

Well, by 2030, the company wants to reduce GHG emissions from its main operating segments by at least 70% from the base year level. By no later than 2040, Xiaomi plans to reduce GHG emission from its main operating segments by at least 98%, with pre-conditions in place to achieve net zero emissions.

The company will prioritize the use of low-carbon technologies, long-term green power purchase agreements, and on-site renewable energy generation to reduce GHG emissions. On top of that, Xiaomi will encourage key suppliers to establish renewable energy usage and push them towards GHG emission reduction.

Xiaomi goes into way more detail in its blog post, if you’d like to get into the specifics. These are the company’s goals, basically, and Xiaomi does explain how it plans to reach those goals on its website.

Apple & Samsung also shared some plans earlier this year

Many companies are pushing towards recycling, reducing greenhouse gas, and more. That is always commendable, and the more of them do it, the better. We have only one planet to live on, and we should take good care of it… which we’re not doing at the moment.

As a reminder, Apple recently promised to use 100% recycled cobalt in batteries by 2025. The company laid out some other plans too, which you can read more about by clicking here. On the flip side, back in February, Samsung said that its goal is to use 100% recycled plastic parts in all of its smartphones by 2050.


[ad_2]
Source link

Fake Flipper Zero sellers are after your money

0
[ad_1]

Flipper Zero units are being sold on sites not recognized by developers. Stay away!

Thanks to Malwarebytes’ Stefan Dasic who provided the research and screenshots for this article.

Flipper Zero, a “multi-tool device for hackers“, is frequently out of stock due to its popularity in hardware circles. Flipper Zero combines research and penetration hardware tools into a single unit. It can be used straight out of the box, but it’s also open-source and customizable, so users can extend its functionality however they like.

A steady stream of influencers promoting the product only makes the device ever more desirable, and the lack of availability makes it a big draw for fraudsters looking to turn a quick profit. 

(Source: Flipper Zero Kickstarter page)

Sites claiming to sell Flipper Zero have previously been spotted on both Instagram and Twitter. Our researchers have recently found several bogus sites that claim to sell Flipper Zero. We’re going to walk you through one. 

The makings of a fake Flipper Zero site

Most bogus Flipper Zero sites mimic the clean design of the real thing located at the genuine site, flipperzero.one. The sites also tend to make use of HTTPs, and come complete with a padlock in the URL bar. Note that HTTPs on a site does not mean it’s legitimate by its presence alone, it only means that the connection between your device and the site is encrypted. 

zerotools[dot]net targets European consumers (Source: Stefan Dasic | Malwarebytes)

A genuine Flipper Zero costs $169. Some fake sites will overcharge if they want you to panic at the lack of supply. Others will undercharge if they want you to think you’ve found the last stock in town. In our example, the standard price on zerotools[dot]net is €199.99 ($220.24), excluding any additional fees like shipping.

The site asks for the sort of personal details you are typically asked for when ordering something online, such as full name and address. If you’re on the genuine Flipper Zero site, payment methods will include card, PayPal, and Google Pay. Our fake site, zerotools[dot]net, leans heavily toward cryptocurrency payments. Scammers prefer this mode because cryptocurrency transactions are much more difficult to trace than traditional payment methods such as those on the genuine site.

Specifics about the Bitcoin wallet used for the site above are not available. However, a wallet used on another fake Flipper Zero site currently contains some coins, which may indicate people have fallen for the scam.

How to avoid fake Flipper Zero sites

  • Buy straight from the developers. You can purchase units from the official website, flipperzero.one, or from the Kickstarter page. You may be waiting a while before they become available again, but at least when they do you know you’ll be getting your hands on the real thing.
  • Buy from legitimate retailers. There are a handful of shops online that Flipper Zero developers recognize as genuine sellers of Flipper units. We’ve replicated the list from the official Discord server.
  • Familiarize yourself with the official site. Take note of the real URL, the payment methods available, and be wary of sites pushing a price that’s too high or too good to be true.

Malwarebytes products block these sites to protect users from getting scammed.


Malwarebytes removes all remnants of ransomware and prevents you from getting reinfected. Want to learn more about how we can help protect your business? Get a free trial below.

TRY NOW


[ad_2]
Source link

Best Open Source Android apps – updated April 2023

0
[ad_1]

There are quite a few quality open source apps available in the Google Play Store, and in this article, you’ll see some of the best ones. In the list below, we’ve placed 10 of our favorite open source applications that are available via the Play Store. Do note that some amazing open source apps are available via third-party app stores, such as F-Droid, but we’ve decided to focus on the ones that can be downloaded officially.

Open source apps have a lot of advantages. Everyone can see the code of such apps, which keeps things transparent. The community can have a great impact on such applications as well. Some of Android’s best and most popular apps are open source ones, as you’ll see in the list below. There are some very, very popular apps listed here, that you probably didn’t even know are classified as ‘open source’.

Best Open Source Android apps 2023

Below is a quick overview of the best open source Android apps for 2023, including any download and in-app purchase costs.

Download CostIn-app cost (per item)
Lawnchair Launcher✕✕
VLC✕✕
Brave Browser✕$9.99-$99.99
Firefox✕✕
Good Weather✕✕
Phonograph✕✕
LibreOffice & OpenOffice✕$0.99-$5.49
ProtonMail✕✕
Open Camera✕✕
OsmAnd✕$1.63-$29.99

Best Open Source Android apps 2023 downloads

Below is a little more information on each app, and a direct link for easy downloading.

All download links go to the app’s Google Play Store listing. Users are always recommended to download apps from Google Play or an authorized app store.

Lawnchair Launcher

Lawnchair app grid image 2022

  • Price: Free to download
  • In-app purchases: No
  • Size: Varies with device
  • Google Play rating: 4.2 out of 5 stars

Lawnchair Launcher, or as it’s officially called in the Play Store, ‘Lawnchair 2’, is one of the best launchers for Android. This app is much younger than the likes of Nova Launcher, for example, but it offers extremely buttery performance and a ton of customization options. It includes Google Now integration, it allows you to set custom icons, set your desktop grid size, and various other customizations.

Think of Lawnchair 2 as a souped-up version of Google’s very own launcher. If you feel limited by the launcher on Pixel phones, this may be a solution for you. The sheer level of customization options is crazy. Very few launchers can compete, with the exception of a few, like the aforementioned Nova Launcher. Lawnchair 2 is free to use, and it’s one of the best, if not the best, open source Android launcher app.

Download Lawnchair Launcher

VLC

VLC app grid image 2022

  • Price: Free to download
  • In-app purchases: No
  • Size: Varies with device
  • Google Play rating: 4.3 out of 5 stars

VLC is a well-known media player for Android, and other OS’, such as Windows OS. VLC has been around for a long time, and it managed to evolve quite a bit. This player can play basically any media that comes to mind, including a ton of unusual formats, such as DVD ISOs, for example. It has a ton of video and audio codecs, which enable all that. VLC is usually my go-to media player when a codec is missing on some other media player.

It comes with a range of useful features, while the company also cleaned up the design a while back. It has support for multi-track audio and subtitles, while it does support auto-rotation, aspect-ratio adjustments, and gestures to control the volume, brightness, and seeking. There are a ton of other, smaller tweaks, that you can make to this media player.

Download VLC

Brave Browser

Brave Browser app grid image 2022

  • Price: Free to download
  • In-app purchases: $9.99-$99.99
  • Size: Varies with device
  • Google Play rating: 4.8 out of 5 stars

Brave Browser is a privacy-focused browser. This Internet browser comes with a built-in ad blocker, and a pop-up blocker. The app also offers anonymous browsing history, personalized private search, and so on. It also features script blocking, and 3rd party cookie blocking. The app does look quite nice, and it may not have as many features as some other browsers, but it has many privacy features that other browsers simply do not offer.

This browser will likely consume less battery than most other Internet browsers, mainly due to its privacy features. The company also claims that your personal data will remain private, so that you can use the app without worrying about it. Brave browser is free to use, and it has really good reviews in the Play Store, for a good reason.

Download Brave Browser

Firefox

  • Price: Free to download
  • In-app purchases: No
  • Size: Varies with device
  • Google Play rating: 4.6 out of 5 stars

Following Brave Browser comes yet another Internet browser, Firefox. Firefox is, without a doubt. more popular than Brave, and many of you are probably surprised it’s on the list. Yes, this is also an open source app. It’s also really well-rated on Android, as it’s simply one of the best Internet browsers on the platform. The app allows you to see all your open tabs displayed along with your recent searches, bookmarks, and favorite sites.

The app allows you to place the search bar where you prefer it, whether be it at the top, or at the bottom of the screen. It does come with some useful widgets, and you can even get add-ons for this browser, which creates a lot more utility for people. The design is modern, and the app looks really nice overall. It’s also very functional thanks to the new home screen layout.

Download Firefox

Good Weather

Good Weather app grid image 2022

  • Price: Free to download
  • In-app purchases: No
  • Size: Varies with device
  • Google Play rating: 3.6 out of 5 stars

If you’ve been working for a good open source weather app, well, Good Weather is one of the best ones out there. This app looks really clean, and even though some people seem to be having issues with the app, based on the comments, it worked fine for us. The design is modern, and the app offers everything you may want from a weather app. It provides detailed weather for more than 200,000 cities and geo locations.

There are a number of different languages that you can choose from, while the app is free to download and use. You can check out the current weather, as well as a 7-day forecast, and 7-day forecast graphs. The app does support push notifications, while you can choose your preferred measuring unit. You won’t even find ads here, despite the fact the app is completely free to use.

Download Good Weather

Phonograph

Phonograph app grid image 2022

  • Price: Free to download
  • In-app purchases: No
  • Size: Varies with device
  • Google Play rating: 4 out of 5 stars

Phonograph is one of the more popular music players for Android, and yes, this is also an open source app. Phonograph offers a really clean UI, and it performs great. It tries to stay as simple as possible without hurting its utility. This app comes with Last.fm integration, and the UI colors change dynamically to match the main contents’ base color. Phonograph also has a built-in theme engine, which allows you to choose between a number of different colors.

It also comes with a tag editor, which allows you to edit the tags of your music files. You can edit the title, artists, album name, and so on. Phonograph can also automatically download missing album covers (via Last.fm), or you can choose some from your phone’s internal storage. The app also comes with a rather useful widget, and more. It is free to use, though in-app purchases are available.

Download Phonograph

LibreOffice & OpenOffice document reader

LibreOffice OpenOffice app grid image 2022

  • Price: Free to download
  • In-app purchases: $0.99-$5.49
  • Size: Varies with device
  • Google Play rating: 4.5 out of 5 stars

Most of you have heard of LibreOffice and/or OpenOffice by now. Both of those apps are fairly popular documents editors. This app, even though it has both of those apps in the title, is not affiliated with them. It is really good, though. It allows you to open and modify Open Document Format (ODF) without a problem. It also offers great integration support for Gmail, Dropbox, and more applications.

The design of the app is simple, even after you open a specific document. It allows you to open password-protected documents as well, and it supports the full screen, no distractions view. You can easily format your articles, and this app will also work fine if you’re not connected to the Internet. It supports a wide range of formats, and it’s definitely worth trying out.

Download LibreOffice & OpenOffice document reader

ProtonMail

Proton Mail app grid image 2023

  • Price: Free to download
  • In-app purchases: No
  • Size: Varies with device
  • Google Play rating: 3.8 out of 5 stars

If you’re looking for an open source alternative to Gmail, ProtonMail is a great option. This open source app is focused on privacy and security. It does come from the same team that created the ProtonVPN app, after all. The app looks fairly simple, and it’s highly functional, and performs well. With this app, you can get a new protonmail.com email address, and send and receive encrypted emails and attachments.

The app is free, though you can upgrade to a paid plan if you want. Thanks to the fact this app is open source, security experts around the world can expect its code, and thus help the app be even more secure. This app uses secure implementations of AES, RSA, along with OpenPGP. If you’re at all worried about your privacy and security while sending emails, this app is worth trying out.

Download ProtonMail

Open Camera

Open Camera app grid image 1

  • Price: Free to download
  • In-app purchases: No
  • Size: Varies with device
  • Google Play rating: 4.2 out of 5 stars

Open Camera has been around for a long, long time. This is a third-party camera application that has a lot of features. Truth be said, its UI design is not the most modern, but it definitely does the trick. The auto-level feature is included, and the same goes for scene modes, color effects, white balance, ISO, exposure compensation/lock, selfie with ‘screen flash’, and so much more.

The app also has support for Camera2 API. Manual controls are at your disposal, and so is burst mode. You can shoot in RAW format, while you can also utilize slow motion video if you want. Focus bracketing mode is a part of the package, while Open Camera has the noise reduction feature. Do note that it’s packed with features, though some of them may not be available on all devices.

Download Open Camera

OsmAnd

  • Price: Free to download
  • In-app purchases: $1.63-$29.99
  • Size: Varies with device
  • Google Play rating: 4.6 out of 5 stars

To complete your collection of open source apps, here’s one navigation app you should check out. OsmAnd is an excellent mapping app that which uses OpenStreetMap for its maps. The app is free to use, and it supports turn-by-turn navigation, along with automatic route resets, if you stray away from the original path. This app does support offline use, which is what many people want from a mapping service.

A ton of data you’ll find in this app is provided by various individuals, and you will also get a customizable widget with this application. You can favorite specific places all around the world, while the night theme is also a part of the package. On top of all that, Android Auto support is here as well, and so much more. You can even grab OsmAnd Pro if you need more features.

Download OsmAnd


[ad_2]
Source link

Amazon celebrates Star Wars Day with special Echo Dot stands

0
[ad_1]

May the 4th is a special day for Star Wars fans, and Amazon is celebrating this year by releasing limited edition Echo Dot stands based on three iconic characters. Those who have a desire to add a little Force power to their Echo Dot setup can pick up a stand based on Darth Vader, The Mandalorian, or a Storm Trooper.

All three stands are currently up for pre-order on Amazon and the company says they will ship out on May 4th. So they won’t show up in time for Star Wars Day. But that won’t make them any less awesome if you’re a fan of the franchise. Each stand will be available for $39.99. Or you can pick them in a bundle with the Echo Dot for $89.98. The bundles will include an Echo Dot 5th Gen, but the stands will be compatible with both the 4th Gen and 5th Gen models.

 All three Star Wars Echo Dot stands have light up eyes

Star Wars Echo Dot stand 2

To make these stands even more fun, Amazon has designed them to have light up eyes. This function serves as a new visual for the Echo Dot indicator light. So when you say “Alexa” and then ask a question or give a command, the eyes light up on the helmets.

It’s a pretty neat little detail that Star Wars fans will surely love. In addition to the new stands, Amazon is implementing some new Star Wars themed phrases you can test out. These will also work with any Alexa device and not just the Echo Dot.

You can say things like ” Alexa, teach me a Jedi mind trick, or “Alexa, use the force,” and you’ll get appropriate responses. On top of the new Echo Dot stands, Amazon is also selling two remote covers for the Fire TV. One for Grogu in green and one for Din Djarin in blue. Each one retails for $19.99.

Star Wars Echo Dot Limited Edition Stand

Star Wars Echo Dot Bundle


[ad_2]
Source link

New Phishing Attacks Using ChatGPT

0
[ad_1]
New Phishing Attacks

Phishing has been one of the greatest threats to organizations, growing year after year. Phishing attacks have contributed to 90% of data breaches in the past few years, which makes cybercriminals adapt to them, making their attacks much more successful.

Zscaler has published a report indicating an increase of 47.2% in global phishing attacks. These include smishing (SMS), Vishing (VoIP), emails, Adversary-in-the-middle (AiTM, used to bypass Multi-factor authentication), and Phishing-as-a-Service (PaaS)-based attacks.

Since the COVID-19 pandemic, businesses have adapted to remote working, giving threat actors a much larger attack surface to conduct their criminal activities.

Due to business purposes, organizations have been using several communication methods like email, SMS, voice communications, etc., 

However, cybercriminals target and exploit every communication method, resulting in ransomware attacks or data breaches. As per reports, the most targeted industries are 

  1. Education (25.1%)
  2. Finance and insurance (16.6%)
  3. Government (13.8%)
  4. Other (10.5%)
  5. Health Care (8.9%)
  6. Manufacturing (8.8%)
  7. Retail Wholesale (6.4%)
  8. Services (5.7%)
  9. Technology communication (4.1%)

Compared to 2022, attacks on the education industry have increased by a massive amount of 576%, whereas retail and wholesale have dropped by 67% compared to 2021.

Zscaler stated that these attacks are based on analyzing 280 billion everyday transactions and 8 billion blocked attacks.

Other targets include Microsoft (41.4%), OneDrive (23.4%), Sharepoint (5.1%), Binance (crypto exchange, 23.4%), and other illegal streaming services (6.7%).

Imitated brands

The report also stated that these threat actors had used phishing kits and chatbot AI tools like ChatGPT. AI tools are being manipulated into creating sophisticated phishing campaigns cybercriminals use to bypass several security measures.

Zscaler reports suggesting organizations implement a Zero-Trust policy to verify every network, user, application, and device before they are authorized to access sensitive data.

Building Your Malware Defense Strategy – Download Free E-Book


[ad_2]
Source link

Decoy dog toolkit plays the long game with Pupy RAT

0
[ad_1]

We take a look at the discovery of a long running malware toolkit campaign evading detection through its use of DNS.

Researchers at Infoblox have discovered a new toolkit being used in the wild called Decoy Dog. It targets enterprises, and has a fondness for deploying a remote access trojan called Pupy RAT.

Activity from the RAT was first noticed earlier this month. Subsequent research revealed that it has been in operation since at least April last year. An initial two domains were being used as Command & Control centers (C2), with almost all of the C2 communications originating from Russia.

From there, further research identified a DNS signature not related to Pupy components. This signature was so unique that its presence indicated not just the open source Pupy RAT, but the Decoy Dog toolkit being used for deployment. Infoblox claims that this unique DNS signature for Decoy Dog “matches less than 0.0000027% of the 370 million active domains on the internet”.

Pupy itself has been seen in numerous nation state attacks and other serious compromises. Back in 2020, it was at the heart of a European electricity association breach. Elsewhere, it was seen as part of a campaign called Magic Hound in 2017, which targeted Government and technology sectors in Saudi Arabia.

Pupy RAT is very good at hiding in networks for long periods of time and can infect several platforms including Windows, Linux, and mobile. It communicates with its C2 via DNS. This makes it harder to spot than more common forms of malicious activity due to its tiny footprint. Its open source nature means all manner of changes—such as detecting sandboxes, installing keyloggers, or dumping hashes from a target system—can be made to keep security teams on their toes.

It’s not easy to set up or make use of, as a result of the skill required to use the tool alongside effective DNS server configurations. This is not your average DIY bedroom coded malware operation, and anyone using this knows what they’re doing.

There is currently no evidence to suggest any consumer targets have been hit by the Decoy Dog/Pupy RAT combination. So far, everything Infoblox and other security vendors it’s consulted with has all been enterprise based. This makes sense; it would be rather peculiar to see something of this nature striking out at people in their homes. If you’re not an enterprise or running “large organisational, non-consumer devices” then this isn’t something you’re likely to run into.

Additionally, there’s no data shared on which sector is targeted by the above, so it’s currently impossible to say if it’s one specific realm of business at risk here or if the group behind these installations is picking targets at random. One would suspect the former. While the energy sector shows up in many historical Pupy attacks, that doesn’t mean this is the case here. Investigations into Decoy Dog and Pupy RAT are ongoing, so for now we have to hope that this particular spate of network compromise is still something of a rarity.

Users of Malwarebytes are protected against this threat.


Malwarebytes removes all remnants of ransomware and prevents you from getting reinfected. Want to learn more about how we can help protect your business? Get a free trial below.

TRY NOW


[ad_2]
Source link