Palo Alto Patches 0-Day (CVE-2024-3400) Exploited by Python Backdoor

0
[ad_1]

Palo Alto Networks issues critical patches for a zero-day vulnerability (CVE-2024-3400) in their PAN-OS firewalls. Exploited by attackers to deploy Python backdoors, this flaw grants root access. Update immediately!

In a race against time, Palo Alto Networks has released patches for a critical 0-day (or zero-day) vulnerability (CVE-2024-3400) that threatened to leave firewalls exposed to cyberattacks.

According to Palo Alto Networks’ security advisory, the vulnerability was found in its PAN-OS operating system’s GlobalProtect functionality, related to the way it handled device telemetry data. 

An attacker could exploit this flaw by crafting a malicious payload disguised as telemetry data.  Once processed by the firewall, the payload could execute arbitrary code with root privileges, essentially giving the attacker complete control over the device. 

Which Devices Are Vulnerable?

Appliances with GlobalProtect and device telemetry enabled are declared vulnerable. The Shodan search engine for exposed Internet of Things (IoT) devices reveals approximately 41,336 potentially impacted internet-exposed appliances of Palo Alto Networks.

SecurityWeek reports that several organizations have already fallen victim to targeting, with certain attackers endeavouring to deploy Upstyle, a fresh Python backdoor.

Possible Dangers

Like any other security vulnerability, this one also lets hackers exploit and establish backdoors, launch lateral attacks, steal sensitive data, and disrupt network operations. Threat actors can also create persistent access points, use the compromised firewall as a springboard, and gain access to confidential information.

Additionally, it may allow hackers to take full control of the firewall’s functionality, potentially leading to network outages or traffic manipulation.

Detection and Patching:

The good news is that the vulnerability was identified and patched relatively quickly. Security firm Volexity first detected the exploit in use in late March 2024, observing a threat actor UTA0218 remotely exploiting a firewall device.

The researchers also observed how the threat actor created a reverse shell, downloading additional tools, and exporting configuration data to use it as an entry point for lateral movement. Volexity swiftly alerted Palo Alto Networks, which issued security alerts and hotfixes to address the vulnerability for PAN-OS versions 10.2, 11.0, and 11.1.

Palo Alto Networks suggests that if customers can’t implement the Threat Prevention-based mitigation immediately, you can still reduce the impact of the vulnerability by temporarily turning off device telemetry until the device is updated to a PAN-OS version that addresses the issue.

“If you are unable to apply the Threat Prevention based mitigation at this time, you can still mitigate the impact of this vulnerability by temporarily disabling device telemetry until the device is upgraded to a fixed PAN-OS version. Once upgraded, device telemetry should be re-enabled on the device. If the firewalls are managed by Panorama, ensure that device telemetry is disabled in relevant templates (Panorama > Templates).”

Palo Alto Networks

Who Was Behind the Attacks?

As per Volexity’s blog post, the zero-day exploit was highly sophisticated and targeted specific configurations, suggesting a well-resourced state-sponsored attacker with a clear target in mind could be involved.

Initial attribution attempts point towards Lazarus Group, a notorious hacking group believed to be affiliated with North Korea and BianLian, which targets critical infrastructure organizations. Nevertheless, Palo Alto Networks has urged all users to update their PAN-OS software immediately.

  1. Hackers dump login data of Fortinet VPN users in plain-text
  2. Private details of Palo Alto Networks employees leaked online
  3. Cisco Fixes High-Severity Code Execution, VPN Hijacking Flaws

[ad_2]
Source link

Samsung confirms One UI 6.1 AI features for Galaxy S22 & more

0
[ad_1]

Samsung has officially announced the One UI 6.1 update for the Galaxy S22 series, Galaxy Z Fold 4, Galaxy Z Flip 4, and Galaxy Tab S8 series. No, the rollout hasn’t begun—the update arrives in early May. However, the company has confirmed the AI features these devices will get.

Galaxy S22 and others will get AI features with One UI 6.1

One UI 6.1 is the latest iteration of Samsung’s custom Android skin. Debuted with the Galaxy S24 series, it is built on top of Android 14 and brings AI features, camera improvements, and a few other changes to Galaxy devices. The Korean firm rolled out the update to the Galaxy S23 series, Galaxy S23 FE, Galaxy Z Fold 5, Galaxy Z Flip 5, and Galaxy Tab S9 series at the end of March.

It was an open secret that One UI 6.1 will be available for 2022 and 2021 Samsung flagships, including foldables—some budget and mid-range devices will also get the update. A moderator on the company’s official community forum recently confirmed it for the flagships. They also gave us an idea of the new features these devices will be getting with the update.

Samsung has now provided the details via a Newsroom post. According to the company, its 2022 flagships, which include the Galaxy S22 series, fourth-gen foldables, and Galaxy Tab S9 series, will get Circle to Search, Chat Assist, Interpreter, Live Translate, Note Assist, Transcript Assist, Browsing Assist, Generative Edit, Edit Suggestion, and AI-Generated Wallpaper.

The features these devices are missing include Instant Slo-mo, Lockscreen Wallpaper Weather Effects, and Super HDR. The latter two are exclusive to the Galaxy S24 series but Instant Slo-mo made it into the Galaxy S23 series, fifth-gen foldables, and Galaxy Tab S9 series. It lets you instantly watch any video in slow motion by pressing and holding the screen.

2021 models will get fewer AI features

While One UI 6.1 will be available for the Galaxy S21 series, Galaxy Z Fold 3, and Galaxy Z Flip 3, these devices will get fewer AI features. The aforementioned forum moderator said they will only receive Circle to Search and Chat Assits. The former is a Google feature to quickly search for anything on the screen. The latter helps rephrase your messages to customize the tone and style.

Samsung’s budget and mid-range Galaxy devices will also miss out on the new AI features. The processors used in those devices aren’t powerful enough to run AI features. They should get other changes and improvements that are part and parcel of One UI 6.1. Samsung says the rollout will begin in May. It may take until June for the update to reach some devices.


[ad_2]
Source link

Black Shark Ring is coming soon

0
[ad_1]

Gaming-centric smartphone and accessory maker Black Shark is all set to foray into the smart ring market. The Xiaomi-backed company has started teasing the Black Shark RIng on its social media handles on Weibo in China. While the brand hasn’t yet announced complete details, it did reveal some information regarding the battery life of the smart ring.

The smart ring is teased to offer 180 days of usage with the case

According to several official posts on Weibo, the Black Shark Ring will offer a massive 180 days of battery life. The company hasn’t revealed the battery life on a single charge of the ring. The carry case will provide an overall 180 days of battery life. This is an impressive feat as most smart rings in the market offer around seven days of usage after a full charge.

With such a massive battery life, the Black Shark Ring will be going against the likes of the Samsung Galaxy Ring. Introduced at MWC 2024, the upcoming Galaxy Ring is claimed to provide between five to nine days of usage.

Black Shark’s first smart ring will have a slim design and comprehensive health monitoring

Black Shark has teased that its smart ring will have a slim profile. The wearable will be just 2.2mm thick and will have a slim black line that goes through the center. It will be available in two color accents at the launch – Silver and Black & Red. The smart ring will offer “Smart Touch” functionality. However, not many details about this feature are available at the moment.

The company promises that the Black Shark Ring will offer “comprehensive health monitoring”. The wearable is touted to put “health at your fingertips” by the company. It will provide heart rate, blood oxygen, HRV tracking, and body temperature monitoring features. Notably, the charging case of the device looks sleek with the ring sitting in the center. There’s an LED light on the charging case to show the charging status.

We can also expect the wearable to be water and dust-proof. The company will continue to tease other features of the Black Shark Ring in the coming days. As of now, there’s no word regarding the pricing and availability details. However, we’ll keep you posted once we have more details.


[ad_2]
Source link

Google’s Pixel Fold will Reportedly get a new Name

0
[ad_1]

As we approach Google I/O next month, we’re starting to hear more and more rumors about Google’s upcoming Pixel devices, including a new name for its foldable. Instead of the Pixel Fold 2, it’s going to be called the Pixel 9 Pro Fold, at least according to Android Authority’s latest report.

This new name actually makes a whole lot of sense. As of late, we’ve been hearing that Google is aiming to release the Fold in the fall this time around, instead of the Summer. This is because Google will release a new chipset in the Fall with the Pixel 9, as they do every year. And after many paid $1,700 for a Pixel Fold last year, only for it to get upstaged with the new Tensor G3 a few months later, it left a bad taste in a lot of mouths. Releasing it in the fall is a good idea.

So, with that being said, moving the Fold into the Pixel 9 family also makes a lot of sense. Keeping it all under the same nomenclature is going to make things easier for consumers. And that should also mean the Fold will be treated like a proper flagship phone, something that the original Pixel Fold wasn’t afforded. Pixel Fold was sort of a red-headed step-child in the Pixel lineup last year. It was high-end, but in some areas, not relatively as high-end as the Pixel 7 or Pixel 8 series. That looks to be changing this time around, however.

This is the fourth Pixel 9 model launching this fall

Android Authority is also claiming that this is the fourth Pixel 9 model that will launch this fall. Pixel 9 is codenamed “tokay”, Pixel 9 Pro is codenamed “caiman”, Pixel 9 Pro XL is codenamed “komodo” and the Pixel 9 Pro Fold is “comet”.

The report also notes that Google had been referring to “comet” as the “Pixel Fold 2” until very recently. It’s likely that the marketing team got together and thought this name would fit better with the new release schedule. But it is also worth noting that this might not be the final name either.


[ad_2]
Source link

Adobe previews new AI video tools for Premier Pro

0
[ad_1]

As per the industry trends, Adobe is unveiling new generative AI tools to help creators streamline the video creation process or completely skip it. Based on a new report, Adobe just previewed AI video tools to use with Adobe Premiere Pro.

At first, generative AI only involved text media. However, it quickly grew to encompass different forms of media such as images. Now, 2024 is the year of the AI video. We’ve already seen the trailer for The TCL AI-generated movie. As bad as that looks, it probably set a new trend into motion that will see more AI-generated movies hit the market. Hopefully, that doesn’t happen.

In any case, with video tools such as Sora set to hit the market, there’s no telling where AI video will be in just a year.

Adobe previewed some new AI video tools for Adobe Premiere Pro

Adobe Premiere Pro is the company’s professional video editing platform. However, these new AI tools will involve the platform in the video creation process. It will achieve this by employing generative AI. For example, there will be a generative AI video extender tool. Using this tool, creators will be able to extend shots by adding AI-generated frames. This could come in handy if you happen to cut off a shot just a second too soon.

Another tool will be able to generate b-roll clips using generative AI. This will eliminate the need to have to go out and record secondary footage for your videos.

It’s obvious that the company wants to capitalize on the surge in the popularity of AI. This technology has taken the world by storm over the past year and a half, and it does not appear that it is going to be slowing down. At this point, this is only a preview. Adobe has not launched these features to the public just yet. However, when it does, we expect them to be very popular tools.


[ad_2]
Source link

iPhone 16 Pro models to use ALD coating to reduce lens flare

0
[ad_1]

According to a South Korean platform called Naver, Apple is working on a new anti-reflective coating technology called ALD (Atomic Layer Deposition) for the camera lenses in iPhone 16. This new technology will reportedly reduce the lens flare, which is one of the noticeable issues of an iPhone’s camera system.

What is lens flare?

For those unfamiliar with the term lens flare, it is basically an unwanted scattering of light caused by its reflection on the lens surface on its way to the sensor. It becomes noticeable when you shoot a bright light source in the middle of a darker background, such as the moon in the night sky.

The iPhone 16 Pro could get an ALD coating to reduce lens flare

The tipster claims that this news comes from a source within Apple’s supply chain. As MacRumors notes, this deposition technology creates an extremely thin single atomic layer on a surface. In this case, it might be necessary to maintain the optical characteristics of the camera lenses. Notably, this is a commonly used technique to create anti-reflective lenses for cameras and smartphones. Since the ALD coating process deposits the same amount of material on all surfaces with 100% cover, it becomes an effective method for the purpose.

This coating works by reducing the reflective index of the lens surface and in turn, minimizing the reflections. Less reflected light hitting the sensor means fewer artifacts (such as lens flare) in the image.

Another problem of the iPhone 16 that Apple aims to solve with this ALD coating is ghosting. This is a type of image distortion where faint secondary images appear in the photo, especially near the boundaries of the frame. Ghosting also occurs due to the light reflecting back and forth between the lenses and ultimately hitting the sensor, making the image somewhat hazy.

Only the Pro models could get the ALD coating

This appears to be one of the few notable changes to the iPhone 16 series. Last year, Apple kept the Grade 5 titanium frame exclusive to the iPhone 15 Pro and iPhone 15 Pro Max. According to the report, this new addition to the camera system will also remain exclusive to the iPhone 16 Pro models.

Speaking of the other camera improvements, the iPhone 16 Pro models will offer an additional multi-step button dedicated to the camera. Like the iPhone 15 Pro Max, this year’s Pro model will also get the 5x tetraprism camera module. Additionally, tipster “Digital Chat Station” (translated) suggests that the iPhone 16 Pro may also boast a slightly larger 1/1.14″ sensor for the main camera as compared to the predecessor’s 1/1.28″ one.


[ad_2]
Source link

Epic Games claims Apple violated court order with alternative fees

0
[ad_1]

Apple is sneakily violating a court’s order that mandates the iPhone maker must allow alternative payment methods, Epic Games has claimed. The Fortnite developer called on a federal judge to hold Apple in contempt of court.

As expected, Apple has reportedly requested the court to squash Epic Games’ request. The company has claimed that it hasn’t violated any order. Apple is accusing Epic Games of trying to “micromanage” its business.

Apple legally complied to the court’s orders but still had its way

Epic Games has been fighting a long-winded battle with Apple The Fortnite developer wants Apple to allow third-party payment platforms inside the App Store’s walled garden.

Simply put, Epic Games wants to avoid the hefty “Apple Tax”, which starts from 15% but is often 30% on most transactions that take place inside the App Store. Needless to add, Apple insists all transactions must take place through its payment mechanisms.

Back in 2021, Epic Games managed a marginal win, when a US Federal Court sided with the company on one of its ten grudges. The court had ordered Apple to allow direct and alternative payment systems in the App Store. The company was essentially barred from stopping companies that wanted to offer their customers alternative payment methods.

Apple came up with a seemingly devious solution. The iPhone maker has allowed links to third-party payment platforms. However, developers must first apply for an ‘entitlement’ before they can insert these links in their apps. Moreover, Apple restricts app and game developers to just one link that they can display in the app, and one on the App Store page.

Apple has a “Small Business Program”, for developers whose revenue is less than a million dollars per year. A vast majority of developers qualifying for this program will have to pay a 12% commission on digital purchases that “take place on the developer’s website within seven days after a user taps through an External Purchase Link.” The same applies to developers who offer subscriptions through their apps.

Epic Games claims Apple’s solutions are “commercially unusable”

If the above conditions aren’t sneaky enough, Apple claims 27% of any revenue from purchases made through these links. Needless to say, these loopholes try to ensure Apple continues to make close to its traditional 30% “Apple Tax”.

Epic Games is fighting these conditions and the resultant continued existence of the hefty Apple Tax. The company reportedly claimed in a court filing last month that Apple was in “blatant violation” of the court’s injunction.

Epic Games is suggesting Apple’s 27% commission makes links for alternative payment options “commercially unusable” and hence, “entirely useless.” The company has requested the court to hold Apple in contempt.

As always, Apple insists the entitlement condition ensures users “enjoy a safe and secure iOS experience.” In other words, Apple suggests these safeguards and conditions are necessary to, “maintain a safe, secure, and efficient ecosystem.”

It is interesting to note that Microsoft, Meta, X, and Match have reportedly filed their support, in unison, for Epic’s legal cause.


[ad_2]
Source link

Google Pixel UI for upcoming “Satellite SOS” feature teaches you how to point your phone to the sky

0
[ad_1]
Google has been facing challenges with recent Pixel phone models, specifically related to connectivity issues such as dropped calls and weak signals. This is because they’ve been using Samsung modems instead of Qualcomm modems in their phones.

To address this problem, Google is introducing a new Samsung modem in the upcoming Pixel 9 and Pixel Fold 2. This new modem is expected to be not only faster and more energy efficient but also support innovative features like texting via satellite connections or 5G non-terrestrial networks (NTN).

Following this revelation, thanks to the Google News Telegram channel, we are now also getting a look at the special UI that was prepared to guide users through using the “Satellite SOS” emergency feature for Pixel devices. The instructions are expected to appear while texting with this feature on, when you need to keep your device pointed at the satellite in order to get the best signal.

Images credit: Google News Telegram channel

According to the source, you will need to move your phone to center the satellite in the circle, and the process is illustrated by the accompanying animations in the UI. These instructions can also be minimized into a floating window, so you can potentially keep an eye and use both the instructions and your messages window.

Though this will be part of the Messages app, the actual interface is part of the Adaptive Connectity Services app. It will be interesting to see how, by implementing this features, Google will in turn make Pixel phones more competitive in the market, especially when compared to Samsung and Apple’s iPhone.

[ad_2]
Source link

Microsoft April Patch Tuesday Fixes Dozens of RCE Flaws

0
[ad_1]

This month’s Patch Tuesday update bundle from Microsoft is a huge one, requiring immediate user attention for device updates. Specifically, with April 2024 Patch Tuesday, Microsoft addressed 150 different security flaws, including over 60 remote code execution vulnerabilities.

Two Zero-Day Vulnerabilities And Three Critical Flaws Addressed

With April 2024 updates, Microsoft patched two zero-day vulnerabilities, both actively exploited for malware attacks. These include,

  • CVE-2024-29988 (CVSS 8.8): An important severity vulnerability affecting the Microsoft SmartScreen. Microsoft described it as a security feature bypass in the SmartScreen Prompt that could let an attacker exploit the flaw by tricking the victim into opening maliciously crafted content. According to ZDI researchers, this vulnerability bypasses the Mark-of-the-Web (MotW), allowing malware execution, similar to CVE-2024-21412, which Microsoft patched in February this year.
  • CVE-2024-26234 (CVSS 6.7): Another important severity vulnerability affecting the Proxy driver. Researchers from Sophos have provided a detailed description of the vulnerability, as they discovered its exploitation in the wild. Specifically, they found a malicious driver signed with a valid Microsoft Hardware Publisher Certificate, which the attackers used to deploy malware.

Besides, these two vulnerabilities, Microsoft also addressed some critical security issues in the Microsoft Defender for IoT. All of these, CVE-2024-21322, CVE-2024-21323, and CVE-2024-29053, could allow remote code execution attacks.

Other Important April Patch Tuesday Updates From Microsoft

With April Patch Tuesday, Microsoft also addressed over 100 other vulnerabilities, rolling out 152 security fixes this month. These include 68 remote code execution vulnerabilities, 31 privilege escalation flaws, 28 security feature bypass vulnerabilities, 24 of which affected the Secure Boot feature, 14 information disclosure bugs, 6 denial of service vulnerabilities, and 5 spoofing vulnerabilities.

All of these vulnerabilities received important severity rating, except two spoofing vulnerabilities. These include CVE-2024-29049 – a moderate severity issue, and CVE-2024-29981 – a low severity flaw, both affecting Microsoft Edge.

While the updates have been rolled out for all eligible systems, users should still check their systems manually for updates to avoid potential risks.

Let us know your thoughts in the comments.


[ad_2]
Source link

Samsung still has a bunch of Galaxy devices to launch in 2024

0
[ad_1]

Three and a half months into 2024, Samsung has launched a dozen Galaxy devices. Alongside the Galaxy S24 series flagships, it has launched new phones under the Galaxy A, F, M, and Xcover lineups, and two tablets. Its schedule for the rest of the year is also packed. The company is readying new foldables, watches, flagship tablets, earbuds, and more. An X user recently summed up what Samsung has in the pipeline for the remainder of 2024 and early 2025.

Leak reveals Samsung’s Galaxy device lineup for the rest of 2024

Samsung’s next big launch event is expected to take place in July. The Korean firm will unveil at least a couple of foldables—Galaxy Z Fold 6 and Galaxy Z Flip 6—and a couple of watches—Galaxy Watch 7 and Galaxy Watch 7 Classic. There are also rumors about a third foldable called the Galaxy Z Fold 6 Ultra and a third watch, possibly called the Galaxy Watch 7 Pro. The Galaxy Ring may also finally see a market launch at this event.

Additionally, Samsung is tipped to launch a new pair of TWS earbuds around the same time. The Galaxy Buds 3 could be part of the Unpacked event in July or arrive separately. The Korean behemoth’s busy schedule continues with the unveiling of a series of Fan Edition (FE) products a few months later. Rumors say it will bring affordable foldables to the market this year with the FE branding. We might get affordable variants of both Fold and Flip series products.

The 2024 Fan Edition lineup will also include the Galaxy S24 FE, Galaxy Watch FE (another new product), Galaxy Buds 2 FE, and an unspecified number of FE tablets. Samsung launched the Galaxy Tab S9 FE series (two models) in October last year. So, the new lineup should be the Galaxy Tab S10 FE. However, the Galaxy Tab S10 series may not arrive until early 2025. Time will tell what Samsung calls its new FE tablets.

Samsung also has an XR headset in the pipeline

Samsung has been long working on an XR headset. Rumors suggest the device will arrive in late 2024 or early 2025, possibly alongside the Galaxy S25 series. The Korean company also reportedly plans to launch a new Windows laptop—Galaxy Book 4 Edge—early next year. All this while, it will introduce new phones under the Galaxy A, F, and M lineups. The latter two lineups aren’t as widely available as the Galaxy S and Galaxy A.

Samsung 2024 2025 Galaxy device lineup


[ad_2]
Source link