Galaxy Z Fold 5 brings huge weight and thickness improvements

0
[ad_1]

Samsung is hard at work on making its Fold series foldable smartphones thinner and lighter. The company has developed a new type of hinge that allows the device to shut without a gap when folded. It also helps reduce the weight of the fold and eliminated the display crease. We now have some numbers that tell you how the upcoming Galaxy Z Fold 5 stacks up against last year’s Galaxy Z Fold 4 in terms of weight and thickness.

According to a new report coming out of Samsung’s homeland South Korea, the Galaxy Z Fold 5 will weigh about 250 grams. The company hasn’t quite achieved it just yet, with the current prototype unit weighing in at 254 grams.

But, work is underway to cut some more weight before the product enters the final production stage. Even if Samsung fails to reduce the weight any further, the new foldable will be nine grams lighter than the 2022 model (263 grams).

It may not be a massive weight reduction, but it’s pretty big in the grand scheme of things. The Galaxy Z Fold 5 is a huge smartphone with two screens, big batteries, and several moving components inside.

There’s little scope to bring the weight below 250 grams. However, Samsung has still found a way to make the device significantly thinner without compromising on waterproofing or anything else.

The Galaxy Z Fold 5 will reportedly be just 13.4 mm thick when folded. In comparison, the Galaxy Z Fold 4 is unevenly thick and measures 14.2-15.8 mm when folded, with the hinge area being thicker.

That’s a 2.4 mm reduction in thickness in the hinge area this year. When unfolded, last year’s foldable measured 6.3 mm thick. We expect that to remain unchanged with the upcoming model.

The Galaxy Z Fold 5 will address another complaint with Samsung foldables

Weight and thickness weren’t the only complaints of Samsung’s foldable users. They have also been demanding the company work on removing or at least reducing the display crease. And the firm is addressing all of these complaints this year. The new “waterdrop” hinge in the Galaxy Z Fold 5 will allow the display to fold in the shape of a water droplet, eliminating the crease.

Overall, the Galaxy Z Fold 5 will bring several subtle improvements to Samsung’s Fold lineup this year. The company’s push for a thin and light foldable means there will not be a built-in slot for the S Pen.

It is said to be working on a new S Pen that fits inside the thin foldable while also giving you a feeling of a real pen when writing. Next year’s Galaxy Z Fold 6 may bring it. Samsung’s fifth-gen foldables will debut in the second half of 2023.


[ad_2]
Source link

Google Flights launches Price Guarantee to help you save money

0
[ad_1]

If you’re someone who frequently books flights, you know how frustrating it can be to book a flight only to find out later that the price has dropped significantly. But what if you could get a refund for those flights that you booked through Google Flights? Google is currently testing out its new price guarantee program, which aims to do just that.

Now, when searching for flights on Google, you would notice a small shield icon with a dollar sign next to certain flights. Therefore, if you book one of these flights, Google will monitor the price every day until the departure date, and if the price drops, Google will refund you the difference via Google Pay. While other travel sites like Orbitz also offer partial refunds under certain circumstances, Google’s program is unique because it continuously monitors flights and provides automatic refunds.

However, the program is currently only available for flights departing from the US, and users must have a US billing address and phone number to be eligible. Additionally, the maximum refund amount is $500 per year, and Google will not reimburse differences that are less than $5.

“Now, we’re going a step further with a new pilot program for price guarantees in the U.S. If you see a flight with the price guarantee badge, it means we’re confident that the price you see today won’t get any lower before takeoff,” says Google.

Exploring hotels on Google

In addition to the price guarantee program, Google has also launched a new feature that allows users to explore hotels in an area through a “swipeable story format.” With this format, users can swipe through full-screen images of hotels, similar to how they would view stories on Instagram and quickly access reviews and other information. When users are ready to book, they can easily do so by tapping a link that takes them directly to the hotel’s website. Furthermore, Google Maps will now allow users to search for attractions and view pricing information, as well as purchase tickets for these attractions directly from the listing.


[ad_2]
Source link

WhatsApp may soon allow you to lock specific chats

0
[ad_1]
It seems like it was ages ago when WhatsApp was facing intense criticism about its lack of security features. That, however, isn’t something that can really be said in today’s reality, where WhatsApp is one of the most feature-rich messaging apps on the market.

While end-to-end encryption and sweet features such as spam prevention are awesome, there are always ways to step up the game further. So how about the ability to lock specific chats? Options like this are highly coveted, especially to those of us who use their phones for work.

Well, WABetaInfo — the blog dedicated to uncovering the hidden features of the WhatsApp beta program — has managed to unearth exactly this type of feature. It seems to be still in development, but traces of it are found in the WhatsApp beta release for Android, version 2.23.8.2.

The feature is seemingly designed to enhance user privacy, as it will allow users to lock individual and specific chats with a passcode or on-device biometrics. When locked, chats won’t display previews and any media on them won’t be automatically downloaded.

After a locked chat has been set up, only persons, who are able to verify through the chosen security measure, can gain access to their contents. Chats of this type will be kept in a separate category too, for an extra bit of clarity.

Naturally, this doesn’t mean that all WhatsApp conversations will be impacted by such a choice. Users can enable the feature on a by-chat basis, ensuring that only those chats, which contain sensitive information, are to remain behind an extra security layer.

As of now, we have no word on when this feature will be rolled out officially by WhatsApp, but it appears to be in development at the moment. If you are interested in being among the first users to try it out, then make sure to sign up for the WhatsApp beta program.


[ad_2]
Source link

Octa Browser – An Anti-Detection Browser With High Anonymity  – GBHackers – Latest Cyber Security News

0
[ad_1]

In today’s digital age, having a physical identity is not enough. It is equally important to have a digital identity. In fact, having a digital persona is not only important, but inevitable. It represents a business’s behavior, goals, values, and characteristics that are displayed online. If you don’t construct it according to a strategy, it will establish itself, potentially revealing flaws and controversies that you would like to keep hidden.

Digital Persona and Digital Identity

The digital persona is shaped by online activities, social media presence, and digital fingerprint. The specific “digital” aspect of the persona is called Digital identity. Although the terms are similar, it is important to distinguish between them from the beginning.

Definition: Digital persona is the digital representation of someone’s personal information that is intentionally created by the user or collected without the user’s knowledge.

Digital identity is something that is in the virtual dimension and does not directly interact with people, but interacts only with machines. Digital persona, on the other hand, is what people use to make sense of interactions in virtual space. In other words, digital identity is the technical aspect of a person’s online presence, while digital persona is the behavioral and social aspect of their online presence.

  • People interact with digital persona
  • Computers interact with digital identity.
  • One digital persona can have multiple digital identities.
  • One digital identity can be operated by multiple people.

Although it may sound like a topic more suited for philosophy, such constructs can easily be applied in business settings. This is because most computer security systems operate under the principle: 

One digital persona should be associated with a single digital identity.

Here is an example: An online merchant is working with two landing pages and promoting them with Facebook Ads. One of the pages violated one of the Meta Platform rules, while the other was clean. However, the entire Meta Platform account was suspended. The merchant’s next step was to create a new account to continue working with the clean page. Unfortunately, the security system recognized that the same digital identity was being used: the merchant was accessing the account from the same computer and IP address. Therefore, the system did not allow the merchant to proceed because the digital persona was connected with the compromised digital identity.

Building a Positive Digital Representation

As you see, digital persona and digital identity are closely connected. Computer systems make decisions on behalf of real people or businesses represented online based on their digital characteristics. Online security systems or recommendation algorithms can set limitations on one’s actions based on their digital fingerprint, and that’s why it is important to know what your online representation consists of.

In today’s world, many activities are carried out online, such as online shopping, banking, and socializing. A digital persona helps individuals and organizations to establish their online presence and credibility. It is essential for businesses to have an online presence and a positive digital persona to attract customers and investors.

Building a positive digital persona requires individuals and organizations to be mindful of their online activities. It is important to create a consistent and positive image across all platforms. Individuals should be cautious of what they post online, as it can have a significant impact on their digital persona. It is also important to engage in positive online activities and maintain a positive relationship with online communities.

Digital Persona level

To build a positive digital persona, businesses should prioritize their online presence and engage with their online audience.

  1. Professional website. It should showcase the products or services, and provide useful information to potential customers. The website should be visually appealing and easy to navigate. Creating high-quality, relevant, and engaging content is also very important to attracting and retaining visitors to your website.
  2. Active presence on social media platforms. Businesses can establish themselves as credible and trustworthy by regularly posting updates, sharing relevant content, and responding to customer inquiries. This can help build a loyal following and attract new customers.
  3. Feedback management. By acknowledging feedback, addressing concerns, and implementing changes based on customer suggestions, businesses can show their customers that they are listening and committed to providing the best possible experience. This can help enhance their reputation and build trust with their customers.
  4. Public Relations. Being represented in online publications can be an effective tool for businesses to build a positive digital persona. Businesses can establish themselves as credible and trustworthy by managing their reputation and communicating effectively with their audience. Public relations can help businesses promote their products or services positively and informally, build relationships with customers and other stakeholders and establish themselves as thought leaders in their industry.

Overall, businesses should be proactive in their online presence and engage with their online audience to build a positive digital persona. By creating a professional website, maintaining an active presence on social media, and responding to customer feedback, businesses can establish themselves as credible and trustworthy, and attract loyal customers.

Digital identity level

It’s pretty obvious that being generally nice online can help build a positive online image. However, it’s more complicated to understand what lies beneath the surface. On the digital identity level, it’s important to present oneself favorably not only for the people you communicate with, but also for computer systems such as search engines, security systems, and recommendation algorithms. Your digital identity is a reflection of your digital persona, so everything you do to gain the trust of real people should also be done to gain credibility from computer systems.

  1. SEO Optimization. Search engine optimization can help businesses improve their online visibility and attract more traffic to their website. Before creating content for the website, it’s important to research relevant keywords for your target audience. Once you have identified your target keywords, incorporate them into your website’s meta tags, headlines, and content. Use descriptive, keyword-rich titles and descriptions to help search engines understand your page content. With the increasing number of users accessing the internet on their mobile devices, it’s important to ensure that your website is optimized for mobile devices.
  2. Optimizing Social Media Recommendations. Being featured on the “For You” page of social media platforms like TikTok and Instagram can be a great way to gain visibility and attract new followers. To achieve this, besides creating high-quality content that resonates with your audience, you can use popular hashtags, respond to comments and messages promptly and authentically, post consistently (at least once a day or a few times a week), collaborate with other creators, and leverage paid advertising.
  3. Reputation management. It is a “black hat” technique, but it also can be helpful in case you will not abuse it too much. And you can be sure that everybody does it even if it is not ethical. Reviews and ratings are very important for some businesses, so you must get the first ones. Otherwise you will be listed below your competitors and will not get the customers, who can leave a review. So it is kind of a vicious circle for a starter. The solution is to create some new digital identities and use them to kickstart the reviewing process. Of course it is better to engage digital personas in the process, but sometimes you have to be a little bit naughty.
  4. Link building. Building links from reputable, high-quality websites can help improve your website’s authority and increase its visibility in search results. Consider guest posting on other websites or reaching out to industry influencers for backlink opportunities.
  5. Geotargeting. Working with new markets in a global world can be challenging. You need to be on the same page as people living in different parts of the world. This can become a real problem when it comes to social media management or advertising. You not only need to translate advertising and make it relatable to the local audience, but also publish it properly so that people will see it. In this case, IP-spoofing services and anti-detection browsers can be useful.
  6. Marketing Research. When advertising platforms select ads to show to a specific audience, they consider many criteria, including device type, computer operating system, etc. To better understand what ads your potential customers see, viewing them through their eyes can be useful. You can create a unique digital identity for each category of your customers, simulate their online behavior using a cookie robot, and observe the ads they view. A cookie robot is a tool that guides your digital identity through websites, collecting cookies along the way to make advertising platforms believe that your digital persona is interested in specific content.

Websites and online platforms often use various methods such as IP address tracking, device fingerprinting, and user behavior analysis to recognize digital identities. Additionally, they may employ anti-fraud algorithms and machine-learning models to detect unusual patterns and flag suspicious behavior. Here are some tools you can use to check, change and even create a new digital identity:

  1. VPN and Proxy

A proxy server acts as an intermediary between a user and a website, forwarding requests and responses between them. On the other hand, a VPN encrypts a user’s internet traffic and routes it through a secure remote server. Both methods mask the user’s IP address and provide anonymity and privacy.

In case you need to create a trustworthy digital identity, you need a proper proxy. Residential proxy is the most appropriate. It is a type of proxy server that uses IP addresses provided by Internet Service Providers (ISPs) rather than data centers. This makes them less likely to be detected and blocked by websites that are trying to prevent access from proxy servers. Residential proxies can be used for a variety of purposes, such as web scraping, data mining, and online automation. They are often more expensive than data center proxies.

  1. Antidetect Browser

Antidetect browser is a web browser designed to protect the user’s online privacy and anonymity. It uses various techniques to prevent websites from tracking the user’s browsing activity, such as changing the browser’s fingerprint, blocking cookies, and using a proxy server to hide the user’s IP address. It is often used by individuals who want to browse the internet without being tracked by advertisers, governments, or other organizations.

If you need to create a new digital identity for online advertising, you will typically need an antidetect browser. The quality of this software is crucial, as an artificial-looking digital fingerprint provided by the browser can result in account banning. Antidetect browsers, such as Octo Browser, use real computer fingerprints and allow for the management of multiple digital identities from a single machine. It is also convenient that you can use all the created identities with the team, giving everyone involved safe access to work with them.

  1. Digital Fingerprint Checkers

There are plenty of sites that can help you to check what your digital fingerprint looks like: for example, amiunique or browserleaks Here, you can check all the data that your browser shares with the sites you visit. If you need to create a new digital identity, you can use these sites to check if your methods worked well.

Conclusion

A digital persona is a crucial aspect of an organization’s online presence. Building a positive digital persona requires businesses to be mindful of their online activities and take measures to protect their online identity. While challenges come with a digital persona, the benefits outweigh the risks. As technology continues to advance, it is important for organizations to be aware of the potential risks and take measures to protect their digital persona. By doing so, they can establish their online presence, build credibility, and protect their reputation.


[ad_2]
Source link

What the channel needs to know to stay ahead of threats

0
[ad_1]

There are 5 cyberthreats for channel partners to focus on in 2023.

The channel, comprising managed service providers (MSPs), Systems Integrators (SIs), value-added resellers (VARs), and more, plays a vital role in providing cybersecurity for companies around the globe today. But as malware evolves and cyberattacks become more common, keeping up with the top threats to the channel can be difficult.

With a plethora of cyberthreats out there, which ones should channel partners focus on in 2023?

Malwarebytes addresses this question in the 2023 State of Malware Report, identifying the five most potentially damaging malware threats that MSPs, SIs, VARs, including their clients, should prioritize.

Key channel threats in the 2023 State of Malware Report

One example of threats the channel should prepare for is the email-borne Emotet Trojan, a notorious threat that continues to plague businesses. The report also highlights the growing issue of ransomware attacks, 39% of which target service providers according to Kaseya’s 2022 MSP Benchmark Survey.

A particular focus is on the ransomware group LockBit, which was responsible for the majority of ransomware attacks in 2022. In February 2023 alone, the group published 126 victims on its leak page. LockBit affects companies of all sizes, from hospitals to small and large businesses.

Our report serves as a valuable resource for channel partners, helping them optimize defense strategies and take both proactive and reactive measures in the fight against the most damaging malware threats of the year. By using the insights from the report, the channel can better protect their own organizations as well as their customers’.

The role of channel partners in cybersecurity

The channel is pivotal to helping their clients adapt to the ever-changing threat landscape and avoid falling victim to devastating cyberattacks. As channel partners make their way into 2023, they can stay ahead of the curve by keeping these tips in mind:

  • Prioritize the top five malware threats identified in the Malwarebytes report and implement targeted defense strategies to protect clients against these risks.
  • Read our Threat Intelligence blog to keep informed about the latest cyberthreats, such as the activities of ransomware groups like LockBit, to ensure your clients are prepared for emerging risks.
  • Educate your clients about the evolving threat landscape and help them develop a culture of security awareness within their organizations.
  • Continuously evaluate and optimize your security offerings to ensure they meet the needs of your clients and protect against the latest threats.

Channel partners are uniquely positioned to guide companies through the complex cybersecurity landscape. As trusted advisors, they play a crucial role in educating businesses about the latest threats, providing tailored security solutions, and ensuring that their clients—and themselves—can continue to operate securely and efficiently. Read the full report below to learn more.

Get the full 2023 State of Malware report for the channel


[ad_2]
Source link

Sketch rumor points to an Exynos-powered Galaxy S24

0
[ad_1]

Despite all the backlash and criticism over the years, Samsung could still be mulling over launching an Exynos version of the Galaxy S24 series next year. According to a sketchy rumor coming out of South Korea, the in-development Exynos 2400 will power the 2024 Galaxy flagships in some markets. The company reportedly wants to increase the market share of its Exynos chips.

An Exynos-powered Galaxy S24 could still be in the pipeline

Samsung’s new Galaxy S23 flagships are powered by an overclocked “for Galaxy” version of Qualcomm’s Snapdragon 8 Gen 2 processor globally. This is the first time since 2015 that the Galaxy S series has come in just one processor variant. Between 2016 (Galaxy S7) and 2022 (Galaxy S22), the Korean firm sold its flagships with Exynos processors in some markets and Snapdragon in others.

However, Exynos chipsets continuously underperformed competing Snapdragon solutions. This led to widespread criticism of Samsung as the same Galaxy flagship was offering better performance in some markets than others. The company eventually gave in this year and decided to go all-in with Snapdragon for the Galaxy S23 series. It used a special version of the latest Qualcomm chipset. The new Galaxies already offer much-improved power and thermal performance over an Exynos-powered Galaxy S22.

Samsung is expected to continue this partnership with Qualcomm next year as well. A “for Galaxy” version of the Snapdragon 8 Gen 3 should power the Galaxy S24 series globally. The company is developing custom processors for its smartphones but those solutions will not be ready before 2025. Rumors so far have suggested the same too. However, the Korean media is now reporting that Samsung will use the Exynos 2400 inside the Galaxy S24 phones in some markets. The plan is to increase the share of Exynos processors in the market.

We have doubts about the accuracy of this information, though. That’s because Qualcomm CEO Cristiano Amon referred to the company’s partnership with Samsung as a “multi-year” deal. That should mean Snapdragon exclusivity should remain for at least one more year. As such, we advise you to take this report with caution until we have some conclusive evidence supporting the claim.

The Galaxy S23 FE could use a two-year-old Exynos processor

Samsung’s plan to increase the market share of Exynos chipsets could result in another Exynos-powered flagship. We are talking about the Galaxy S23 FE, which sits as an affordable flagship in the company’s smartphone portfolio. The Korean media recently reported that the new FE phone will be powered by the Exynos 2200, the same processors found inside the Galaxy S22 series in some markets (possibly with some optimizations). Samsung is going with a two-year-old chipset because it didn’t launch an Exynos 2300, while the Exynos 2400 won’t be ready in time for the Galaxy S23 FE.

While Samsung may have business incentives to stick with its in-house processors, the decision may not go down well with its fans. It has won over a few hearts by going all-in with Snapdragon for the Galaxy S23 series this year. The company may hurt its fans’ sentiments if it launches an Exynos 2400-powered Galaxy S24 next year. It could eventually end up losing business in the smartphone market while prioritizing the semiconductor business. Time will tell what Samsung decides.


[ad_2]
Source link

Apple laying off employees to overcome economic hurdles

0
[ad_1]

The recent months haven’t been kind to big tech firm workers. Tech giants resorting to laying off workers to tackle economic difficulties has emerged as a significant trend. However, Apple managed to distinguish itself by avoiding layoffs. Until now! It appears the Cupertino-based company has initiated staff reduction within its retail teams.

Apple might resort to downsizing to overcome economic hurdles

Big tech firms, counted among the largest in the world, have laid off tens of thousands of their workforce, intending to cut costs. According to a report from Bloomberg (via SamMobile), Apple will also be downsizing its retail teams. While the report does not reveal the exact number of employees affected by the move, it is likely to be minimal.

The report also suggests that Apple is framing the layoff as a means of streamlining operations instead of calling them cost-cutting measures. Most of the job cuts affect the building maintenance and upkeep division that service the company’s retail outlets.

Compared to other tech giants, Apple layoffs are presumably less substantial. Speaking of other firms, Amazon let go of 27,000 employees, while Meta (formerly Facebook) has laid off 21,000 people. Similarly, Microsoft and Google cut 10,000 and 12,000 jobs, respectively.

Although Apple might not have laid off a huge chunk of its workforce, it is unclear whether the company will continue with periodic layoffs in smaller numbers in the coming months. Even if that’s the case, Apple is no longer among the few big tech players capable of navigating the current economic crisis without cutting jobs.

Samsung cuts 3% of jobs from chip division in the US

Samsung has also been forced to make some hard choices. The company recently let go of 3% of its staff from its US-based chip division. Considering the economic challenges for this business unit, it’s likely that the company might cut more jobs in the future. This could particularly happen in the semiconductor department.

According to sources close to the matter, Samsung DSA informed all affected workers about the job cuts, attributing them to “uncertain economic conditions.” Out of the total 1,200 workers in the division, the company laid off 30 individuals.

Samsung isn’t the only semiconductor firm that has let go of its employees. Intel, for instance, posted sales of $14 billion and an operating loss of $700 million in the last quarter of 2022. The numbers marked the worst business performance in almost five decades. In order to mitigate this decline, the company started laying off thousands of employees in the first quarter of 2023.


[ad_2]
Source link

Facebook launches new shared experience in Messenger

0
[ad_1]

Facebook is betting a lot on gaming, but for the time being it’s not even close to YouTube and Twitch when it comes to this kind of entertainment. To entice Messenger users to engage in gaming more, Facebook launched a new shared experience that allows them to play games during video calls.

The new feature doesn’t serve any other purpose than cultivating connections with friends and family by engaging in conversations and gameplay at the same time. Implementing this shared experience is not an easy feat though, so there are only 14 free-to-play games available in Messenger video calls for the moment.

On the bright side, you don’t have to install anything. Just tap on the game you want to play with your friend and the game should boot up in a jiffy. Games include a mix of new titles like Card Wars and Exploding Kittens, as well as older popular games like Mini Golf FRVR and Words With Friends.

The large majority of the games can be played with just two people, but some support a different number of players, so you’ll want to check that out before jumping into any of these. Playing games during Messenger video calls is possible on both Android and iOS, as well as web.

Messenger users can now access the games by starting a video call on the app and tapping the group mode button in the center. Then, simply tap on the “Play” icon and browse through the games library until you find something that fancies you.

Keep in mind that you might need to accept some permissions from the game you chose before you can actually play it. Accept everything if you want to play, or decline and don’t play it. Finally, if you plan to use the new feature on the web, Facebook says that you’ll get the best experience on a Chrome browser.


[ad_2]
Source link

Severe Elementor Pro WP Plugin Vulnerability Actively Exploited

0
[ad_1]

A serious vulnerability existed in the popular WordPress plugin Elementor Pro that could allow website takeovers. Even worse, the vulnerability went under attack soon after gaining traction, requiring WP admins to install the bug fixes quickly.

Elementor Pro Plugin Vulnerability Risked Site Admins

According to the details shared by the discoverer of this vulnerability, Jerome Bruandet, in a post, a high-severity site takeover vulnerability affected the Elementor Pro plugin.

Bruandet observed the vulnerability affecting the premium version only, hence websites using the Elementor (free) version remained safe from the flaw.

Specifically, the researcher observed a lack of validation in the update_option, a function when called by the pro_woocommerce_update_page_option. While this function allows the site admin to update the required WooCommerce options, the lack of user validation allowed unrestricted access to unprivileged authenticated users. Hence, an authenticated adversary could create admin accounts and take over the target website.

Elementor Pro is the premium version of the popular WordPress plugin Elementor, facilitating site admins in building attractive websites effortlessly. The plugin currently boasts over 5 million active installations. That means any vulnerabilities in this plugin may risk millions of websites globally upon exploitation.

That’s what Patchstack highlighted in its advisory, notifying users of active exploitation of the Elementor Pro vulnerability. They observed numerous exploitation attempts from different IP addresses (mostly involving these three IPs: 193.169.194.63, 193.169.195.64, and 194.135.30.6). Also, they noticed the attackers redirecting the users to malicious URLs, which could not only damage the infected website’s credibility but could also threaten the security of site visitors.

The said vulnerability affected Elementor Pro versions version 3.11.6 and below. When notified about the flaw, the plugin developers patched the issue and released the fix with version 3.11.7.

Patchstack urges all site admins using Elementor Pro to update their sites with the latest plugin release (3.11.7 or higher) to receive the fix. The plugin’s official WordPress page lists the current release as 3.12.0.

Let us know your thoughts in the comments.


[ad_2]
Source link

Rilide Malware – New Crypto Stealer Hits Chromium-Based Browsers

0
[ad_1]

Riligy malware is disguised as a legitimate Google Drive extension and allows attackers to capture screenshots, monitor users’ browsing history, and inject malicious scripts to steal funds from cryptocurrency wallets.

The cybersecurity researchers at Trustwave SpiderLabs have disclosed alarming details on a new strain of Rilide malware that targets Chromium-based browsers to steal cryptocurrency funds and monitor users browsing activities.

In the newly discovered campaign, SpiderLabs researchers noticed that threat actors have created legitimate-looking Google Drive extension that hides Rilide malware.

SpiderLabs researchers believe Rilide malware is unique because of its capability of generating dialogues to trick users into giving away their 2FA keys. This is a rare feature that helps the attacker withdraw cryptocurrencies discreetly.

In addition to this, the malware also allows attackers to carry out an extensive range of activities, including capturing screenshots, monitoring users’ browsing history, and injecting malicious scripts to steal funds from cryptocurrency wallets.

The researchers have confirmed that Rilide malware targets Chromium-based browsers, including Microsoft Edge, Google Chrome, and Opera to achieve its malicious objectives.

The fact that Google Drive is being used maliciously is not surprising. A study conducted last year found that 50% of all malicious Office document downloads were from Google Drive. Another study revealed that Apple Safari was the safest browser while Google Chrome was the riskiest browser in 2022.

As for Rilide malware, during their investigation, SpiderLabs researchers detected multiple such extensions for sale in March 2022. They also noted that a portion of Rilie malware source code was recently leaked by someone on an underground hacking forum over payment issues.

This leaked code can swap cryptocurrency wallet addresses from the clipboard with the attacker’s address. Moreover, the C2 address embedded in the Rilide code can identify GitHub repositories belonging to a user named gulantin, which contains the extension’s loader.

Attack Chain

Researchers have detected two attack methods to install the malicious extension, Ekipa RAT and Aurora Stealer. Ekipa RAT is distributed through booby-trapped Microsoft Publisher documents, whereas fake Google Ads serve as Aurora Stealer’s distributor.

Their attack chains encourage the execution of a Rust-based loader, which can modify the browsers’ LNK shortcut file and launch the add-on using the “–load-extension” command line switch.

Malicious Google Drive Extension Delivering Rilide Malware to Steal Cryptocurrencies
Infection Chains (Trustwave)

Ekipa RAT can carry out targeted attacks. Conversely, Aurora, first spotted in April 2022 on Russian-speaking underground forums, is a Go-based stealer offered as a Malware-as-a-Service (Maas) tool. It can take data from different web browsers, local systems, and cryptocurrency wallets.

“The Rilide stealer is a prime example of the increasing sophistication of malicious browser extensions and the dangers they pose,” the report read.

  1. Malicious Firefox extension phish Gmail credentials
  2. Ad-blocker Chrome extension injected ads in Google
  3. Fake ChatGPT Extension Hijacks Facebook Accounts
  4. Phishing attack uses Google Drive against researchers
  5. Chrome extensions harboring Dormant Colors malware

[ad_2]
Source link