A bunch of OnePlus 13 details confirmed by a trusted source

0
[ad_1]

The OnePlus 13 will become the company’s new flagship later this year. It may launch globally in January next year, though. In any case, a bunch of OnePlus 13 details have just surfaced, thanks to a trusted source.

A well-known tipster just confirmed a bunch of OnePlus 13 details

This information comes from Digital Chat Station, a well-known Chinese tipster. He went to Weibo to share a bunch of tidbits. The tipster confirms that the OnePlus 13 will be fueled by the Snapdragon 8 Gen 4, as expected.

In addition to that, the phone will feature a 2K “iso-depth micro-curved display”. So yes, the panel will once again be curved. Its size wasn’t mentioned, but it could be a 6.8-inch panel once again.

A larger battery will be included inside the phone, and it will be a silicon-carbon unit it seems. The OnePlus 12 already used a 5,400mAh battery, so it was large to begin with. Well, thanks to a silicon-carbon battery, OnePlus will be able to improve that even more, while not adding bulk to the phone.

Fast wired & wireless charging will be on offer, and three 50MP cameras

100W wired charging will be supported, and wireless charging will be offered too. The OnePlus 12 supports 50W wireless charging, so we’re expecting that same charging (or better) to be included in the OnePlus 13.

Three cameras will sit on the back of the phone, three 50-megapixel units. We’re hoping that the main shooter will be a 1-inch type camera. The tipster mentioned that a periscope telephoto camera will be a part of the package, with a 3x optical zoom. Hasselblad will once again be a part of the package too.

An ultrasonic fingerprint scanner is also mentioned by the tipster. The same goes for a “super-lage X-axis motor”, for haptic feedback. The OnePlus 13 will also be IP68/IP69 certified for water and dust resistance. This is an improvement over the IP65 certification that the OnePlus 12 offered.


[ad_2]
Source link

Opera’s gaming-oriented browser updated with even more AI features

0
[ad_1]

Opera GX is a browser launched back in 2019, which aims to be the browser of choice for millions of gamers who are looking for a more custom internet experience.

Besides its gaming-inspired design, Opera GX includes CPU, RAM and Network Bandwidth limiters that make it less resource-hungry, thus leaving more of the computer’s resources for gaming.

The browser received a lot of updates since its release, so it makes sense for Opera to want to bring the latest advancements in AI to those using GX. If you’re using Opera GX on Android, iOS or desktop, you’re in for some nice AI-related surprises.

The latest Opera GX update increases Aria’s capabilities by adding image generation and understanding, voice input, a chat summary option, as well as links to sources.

Opera GX’s Aria gains the ability to turn text prompts and descriptions into unique images using the image generation model Imagen2 by Google. Basically, Aria is now able to identify the user’s intention to generate an image based on conversational prompts.

Furthermore, Opera GX users can take advantage of the “regenerate” option to have Aria come up with a new image if they’re not satisfied with the initial result. However, there’s a limit to the number of images that Aria is allowed to generate each day pers user, and that’s 30.

Another interesting new feature coming to Opera GX is Aria’s ability to read answers out loud by using Google’s WaveNet model. Also, Aria is gaining image understanding capabilities, so users can now upload an image to Aria that they can ask the AI too about as part of the chat conversation.

This is especially useful if you want to identify a certain item by brand and/or model. But Aria can also solve math problems among other things.

On a side note, these are the same features that Opera released as part of its experimental AI Feature Drops program in the Developer stream of the Opera One browser.


[ad_2]
Source link

CapraRAT Mimics As Popular Android Apps Attacking Android Users

0
[ad_1]

Transparent Tribe (aka APT36) has been active since 2016, focusing on social engineering strategies to target Indian government and military personnel.

The CapraTube campaign of Transparent Tribe (aka APT36) was revealed in September 2023, in which threat actors employed weaponized Android apps posing as YouTube, mostly in dating scenarios.

Cybersecurity researchers at SentinelLabs recently discovered that the CapraRAT has been mimicking popular Android apps by attacking Android users.

These latest actions imply complex but relatively increased spyware conformity with older and modern versions of Android, revealing the group’s adaptability and continuous drive to widen its attack surface against Indian targets.

"Is Your System Under Attack? Try Cynet XDR: Automated Detection & Response for Endpoints, Networks, & Users!"- Free Demo

CapraRAT As Android Apps

The code of this malware contains obfuscated URLs and utilizes WebView to launch YouTube and CrazyGames[.]com. The “Sexy Videos” app still uses social engineering tactics centered on romance.

“TikTok” is a preloaded query on one app that launches YouTube with a search “Tik Toks.” Another, labeled as “Weapons”, opens the Forgotten Weapons YouTube channel while the third one called “Crazy Games” loads CrazyGames[.]com.

New CapraRAT APKs (Source – Sentinel Labs)

SentinelLabs researchers said this change in CapraRAT’s modus operandi demonstrates its flexibility and employment of genuine platforms as smokescreens for malicious activities, consequently maintaining its core function of accessing sensitive device permissions.

The latest CapraTube campaign continues with the same old romance-themed social engineering using such apps. These apps open YouTube and run theme-related searches.

Although some previously requested permissions have been removed, this malware asks for a lot of dangerous permissions during monitoring.

Android 8.0 (Oreo) and above versions are now being targeted compared to the September 2023 campaign to make them more compatible with modern devices.

Still, they ask for suspicious permissions despite operating well on new Android versions. Consequently, a new WebView class has been added to retain compatibility with older Android versions.

Even after updating these aspects, malware’s core functionality remains largely unchanged as they focus on surveillance capabilities.

The spyware application CapraRAT is initiated through MainActivity and exploits the TCHPClient class for malicious activities. It includes functions for audio streaming, call recording, contact logging, file browsing, and SMS sniffing.

These kinds of malware use particular hostnames and IP addresses to communicate with their C2 servers, some of which are connected to other malware like CrimsonRAT.

The latest updates aim to enhance the software’s reliability and ensure its compatibility with newer Android versions.

The social engineering tactics employed by this malware target specific groups, such as mobile gamers or people who love guns.

Users should pay attention to app permissions they give during installations and be cautious about unnecessary requests for access.

Incident responders must keep an eye on specific network indicators and method names related to CapraRAT.

IoCs

IoCs  (Source – Sentinel Labs)

Are you from SOC/DFIR Teams? - Sign up for a free ANY.RUN account! to Analyse Advanced Malware Files


[ad_2]
Source link

HONOR Magic V3 launch date has just been announced

0
[ad_1]

The HONOR Magic V3 launch date has been announced by the company. The device will become official on July 12, so in 10 days. It will launch in China, and it won’t be the only device to arrive.

The HONOR Magic V3 launch date has been announced, and it’s not coming alone

HONOR will also announce the Magic Vs3, MagicPad 2, and MagicBook Art 14. It will be a packed event, it seems. Two foldable phones, a tablet, and a laptop will all arrive. The HONOR Magic V3 is definitely in focus, though.

HONOR Magic V3 launch event announcement

That smartphone will become the company’s new foldable flagship. The HONOR Magic V2 managed to leave quite an impression on us due to its thin profile. That was the first device that actually felt like a regular smartphone during use, and it was a book-style foldable.

The HONOR Magic V3, based on rumors, will push things even further. It’s said to be even thinner than its predecessor, and even lighter too. HONOR is looking to push the boundaries yet again.

The phone’s camera setup is a mystery, and we’re expecting to see an improvement

Let’s hope that HONOR will also improve its camera setup. That’s a bit ask considering that the phone is expected to be even more compact than it way, but let’s see what HONOR can do in that regard.

The company didn’t really want to overdo the camera hardware in the Magic V2, probably due to the thickness and heft. And even though it had a really good camera setup, HONOR can certainly do better based on the company’s flagship smartphone (the regular one).

The HONOR Magic Vs3 will likely be a cheaper variant of the HONOR Magic V3. It’s a bit surprising those two devices are coming at the same time, but there you have it. The HONOR Magic V2 did launch globally, though it arrived 6 months after the initial launch. Let’s hope that HONOR will move a bit more quickly this time around.


[ad_2]
Source link

Google Tensor G5 design is ready, coming with Pixel 10

0
[ad_1]

Google has completed the design of the Tensor G5 SoC, a chip that will fuel the Pixel 10 next year. That chip is now ready to be sent to the foundry for fabrication. This one will be manufactured by TSMC, by the way.

The Google Tensor G5 design is ready, coming next year

The information regarding the finished design process comes from Taiwan. The Pixel 10 series will be the first to utilize this processor. Other Pixel products are expected to include it after that, though, of course.

This chip will be made using TSMC’s second-gen 3nm node aka N3E. This chip is expected to be a considerable jump compared to everything else Google made thus far. Google designed it itself, and TSMC’s second-gen 3nm node is the right way to manufacture it.

The Google Tensor G5 is probably the chip Google hopes will compete with the best processors out there. It is expected to be immensely powerful, in addition to be designed specifically for Pixel products.

Pixel users had to deal with some questionable SoCs in the past, Google is looking to change that

Pixel users had to deal with some really questionable chips in the past. The Exynos 5123 model inside the Pixel 6 series definitely comes to mind, and it was a part of the Tensor chip. The Exynos 5300 was an improvement, but still not the best solution. That one was included in the Pixel 7 and Pixel 8 series smartphones.

What happens now? Well, while the chip is ready for manufacturing, Google still has to test it out after the fact. We’re still a long way from seeing that chip in action, as the Tensor G4 hasn’t launched just yet.

The Tensor G4 will arrive alongside the Pixel 9 series next month. Google announced that the new Pixel smartphones will become official on August 13. That is a big change for Google, as everyone expected the devices to arrive in early October.


[ad_2]
Source link

YouTube will let you flag AI-generated content for removal if it includes someone that looks or sounds like you

0
[ad_1]

Generative AI is everywhere, it’s fun and useful and can save you hours. But it’s not really “making things up”, or at least, not entirely. It is “generating” stuff, but it’s basing it on things that are already existing, including… well, real people. And now, YouTube has quietly added a policy that lets you request the removal of AI-generated content that features ‘your likeness’. The new policy allows you to flag videos that use AI if the AI has created something that looks or sounds like you. That’s actually great if YouTube is able to enforce this, depending on how it’s going to determine if the generated content looks like you.

YouTube says it will use factors such as whether the content is altered or synthetic (and if it’s been disclosed as such), and whether it is easily identifiable as the person in question.

Additionally, YouTube will take into account whether the content is parody or satire, if it includes a public figure or a well-known person, also, if there is ‘sensitive behavior’ like crime, violence, endorsing a product or a political candidate.  

The new policy falls under YouTube’s privacy violations, and first-party claims are required. The exception is only if the individual is a minor, doesn’t have access to a computer, or is deceased.


[ad_2]
Source link

Water Sigbin Exploiting Oracle WebLogic Server Flaw

0
[ad_1]

Water Sigbin (8220 Gang) exploits vulnerabilities (CVE-2017-3506, CVE-2023-21839) in Oracle WebLogic servers to deliver cryptocurrency miners using PowerShell scripts. 

They use a multi-stage loading technique with a .Net Reactor protecting the payload to deploy the PureCrypter loader and XMRig miner, which makes it hard to analyze the code and implement defensive measures. 

Water Sigbin Attack diagram
Water Sigbin Attack diagram

Water Sigbin exploits CVE-2017-3506 to deploy a PowerShell script that decodes a Base64-encoded payload and then drops a malicious file named wireguard2-3.exe, which impersonates a legitimate VPN application

This dropper is a trojan loader that retrieves, decrypts, maps, and executes a second-stage payload (Zxpus.dll) in memory using reflective DLL injection, allowing the malware to evade detection and carry out malicious activities. 

"Is Your System Under Attack? Try Cynet XDR: Automated Detection & Response for Endpoints, Networks, & Users!"- Free Demo

Zxpus.dll, a second-stage loader, retrieves a binary named Vewijfiv from its resources, decrypts it using AES with a specified key and IV, and decompresses it using GZip. 

The decompressed payload is then deserialized using protobuf-net, revealing the loader’s configuration, including the process name to be created and the next stage payload in an encrypted format. 

Zxpus.dll creating the cvtres.exe process
Zxpus.dll creating the cvtres.exe process

It then creates a new process named cvtres.exe, injects the decrypted next-stage payload into memory using process injection, and passes the execution to the cvtres.exe process.  

The malware, cvtres.exe, decompresses a DLL file with Gzip and loads it for execution, which is identified as PureCrypter loader version V6.0.7D, which establishes a connection with a command-and-control server and downloads the final malicious payload, which is likely a cryptocurrency miner.  

The PureCrypter loader is a malicious DLL that uses a mutex to ensure only one instance runs by retrieving configuration from its C&C server, including persistence mechanisms and exclusion rules for antivirus

PureCrypter generates a victim ID from system information
PureCrypter generates a victim ID from system information

For persistence, it creates a scheduled task disguised as a synchronized file and another task with a random name to add specific files, and processes to the exclusion list, and then generates a unique identifier for the victim machine based on system information and communicates with the C&C server.  

PureCrypter, a .NET obfuscated loader, downloads and executes various malware, like information stealers and RATs, by using process hollowing to inject the payload into a legitimate process. To evade detection, PureCrypter collects system information using WMI 

queries encrypt it with TripleDES and send it to the C&C server. 

XMRig login request
XMRig login request

According to Trend Micro, the C&C server responds with an encrypted XMRig mining configuration, which is stored in the registry. 

PureCrypter then downloads the XMRig payload (plugin3.dll), decrypts it, injects it into a newly created process (AddinProcess.exe), and starts mining for the XMRig mining pool at the address 217.182.205.238:8080 using the wallet address ZEPHYR2xf9vMHptpxP6VY4hHwTe94b2L5SGyp9Czg57U8DwRT3RQvDd37eyKxoFJUYJvP5ivBbiFCAMyaKWUe9aPZzuNoDXYTtj2Z.c4k.  

Are you from SOC/DFIR Teams? - Sign up for a free ANY.RUN account! to Analyse Advanced Malware Files


[ad_2]
Source link

WhatsApp users will soon choose between two different models for AI generated images

0
[ad_1]

We’re inching closer to the day when WhatsApp users will be able to AI-generate their own images right in the popular messaging app!

What’s more, WhatsApp users will be able to choose between two distinct models from Meta’s AI Llama models:

  • 3-70B (simpler, faster tasks)
  • 3-405B (more complex queries)

These are the latest findings of the always informative WABetaInfo and the report is focused on the 2.24.14.13 beta version of WhatsApp.In a previous update, version 2.24.14.7, WhatsApp revealed its work on integrating the Meta AI Llama model, offering users a choice between different AI models for varied interaction complexity.

Users could opt for the Llama 3-70B model for simpler tasks or the more advanced Llama 3-405B model for more complex queries. The current update just goes to show that WhatsApp isn’t an exception when it comes to the rule: in 2024, everything is AI-oriented. Personally, I find the whole thing overwhelming at moments, but I’ll wait and see how this new feature will behave in WhatsApp. It could turn out to be useful!

The new feature, detailed in the latest beta, enables users to create AI-generated images of themselves by taking a set of setup photos. Then, Meta AI will analyze and use these to generate images that accurately reflect the user’s appearance. Users maintain full control over this feature, with the ability to delete their setup photos at any time through the Meta AI settings.

To generate an AI image, users can type “Imagine me” in a Meta AI conversation. This feature can also be used in other chats by typing “@Meta AI imagine me”. Notably, Meta AI processes this command separately from other messages, ensuring user privacy. The generated image will automatically be shared in the conversation by the app.

This feature is optional and requires users to opt-in by enabling it in their settings and taking their setup photos. The development of this feature is ongoing, with plans for availability in a future update.


[ad_2]
Source link

Rapid7 to Acquire Noetic Cyber to Enhance Attack Surface Visibility

0
[ad_1]

Rapid7, Inc., a leader in extended risk and threat detection, has announced a definitive agreement to acquire Noetic Cyber, a pioneering company in cyber asset surface management (CAASM).

This strategic move aims to bolster Rapid7’s existing cybersecurity solutions by integrating Noetic’s advanced CAASM capabilities, providing customers with a more comprehensive view of their digital environments.

Enhanced Visibility and Risk Management

Integrating Noetic Cyber’s CAASM solution into Rapid7’s platform will offer unparalleled visibility into internal and external assets spanning on-premise and cloud environments.

This enhanced visibility will empower customers to:

  • Gain a high-context, inside-out view and an adversary-aware, outside-in perspective to better anticipate threats and manage risks.
  • Prioritize risks with threat-aware context, identifying the most critical exposures.
  • Improve signal-to-noise ratios across security teams, enhancing asset inventory and reducing risks through pragmatic remediation guidance and automation.
  • Boost efficiency and productivity by providing highly correlated asset and resource views with searchable risk context.

"Is Your System Under Attack? Try Cynet XDR: Automated Detection & Response for Endpoints, Networks, & Users!"- Free Demo

Corey Thomas, CEO of Rapid7, emphasized the importance of this acquisition, stating, “Fragmented attack surfaces stifle security productivity, efficiency, collaboration, and credibility.

Adding Noetic’s solution to our platform positions Rapid7 to deliver the most productive security operations experience while making it more accessible to the teams who need it most.”

Addressing a Critical Industry Challenge

According to the 2024 Gartner® Innovation Insight: Attack Surface Management report, only 17% of organizations can identify and inventory a majority (95% or more) of their assets.

This statistic underscores the critical need for improved asset visibility and management in the cybersecurity landscape.

Paul Ayers, CEO and co-founder of Noetic Cyber highlighted the acquisition’s benefits, stating, “The addition of Noetic Cyber to Rapid7’s portfolio ensures even more security teams can be confident they have the right visibility of their security data.

Rapid7 customers will now be able to better prioritize exposures based on the meaningful insights from Noetic and take action to identify security gaps and reduce cyber risk.”

Noetic Cyber, founded in 2019 by Paul Ayers, Allen Hadden, and Allen Rogers, has been dedicated to empowering security teams to command their attack surface.

The company’s proactive approach to cyber asset and exposure management aims to enhance security tools and control efficacy by breaking down existing data silos.

The acquisition is expected to close during Rapid7’s fiscal third quarter and is not anticipated to have a material impact on the company’s 2024 Annualized Recurring Revenue (ARR).

Rapid7 plans to make Noetic Cyber’s capabilities available to its customers this summer after the transaction’s completion.

The company’s comprehensive security solutions help over 11,000 global customers manage cloud risk and detect threats quickly and precisely.

Are you from SOC/DFIR Teams? - Sign up for a free ANY.RUN account! to Analyse Advanced Malware Files


[ad_2]
Source link

Meta changes how it labels AI-generated content after complaints from photographers

0
[ad_1]
Meta introduced new policies regarding all AI-generated content posted on Facebook and Instagram back in April. One of the new rules rolled out a few months ago was the labeling of AI-generated content and manipulated media with a “Made with AI” watermark.

However, photographers all around the world noticed that their images were labeled with “Made with AI” watermarks even though they only suffered minor modifications.

Meta acknowledged the issue and admitted that its labels weren’t always aligned with people’s expectations. Moreover, the “Made with AI” watermark didn’t provide enough context.

To avoid content that includes minor modifications using AI, such as retouching tools, to be labeled “Made with AI,” the social giant announced that it’s updating the label to “AI info” across its apps.

– Meta, July 2024

On top of that, people can now click on the “AI info” label to get more information about the image they’re looking at. Hopefully, Meta will provide more context on the content labeled “AI info,” so that users can figure out if they’re looking at AI-generated content or original content that’s been slightly modified using AI tools.

Meta’s new “AI info” label | Image credit: Meta

Obviously, this means that Meta will start adding “AI info” labels to a wider range of video, audio and image when it detects industry standard AI image indicators or when users disclose that they’re uploading AI-generated content.

Meta amended its policy regarding AI-generated content a few times since launch, and it’s probably going to fine-tune it further as AI tech continues to evolve and more people start using it for various purposes.


[ad_2]
Source link