ZeroSecurity
zerosecurity.bsky.social
ZeroSecurity
@zerosecurity.bsky.social
Latest in Information Security news - https://zerosecurity.org

Security Through Insecurity.
In the latest blow to U.S. telecommunications security, Chinese hackers have successfully breached T-Mobile's network as part of an aggressive espionage campaign.
zerosecurity.org/chinese-hack...
Chinese Hackers Hit T-Mobile in Massive Telecom Spy Operation
In the latest blow to U.S. telecommunications security, Chinese hackers have successfully breached T-Mobile's network as part of an aggressive espionage campai
zerosecurity.org
January 16, 2025 at 6:49 PM
In an era where smart devices have become ubiquitous in our homes, a disturbing reality lurks beneath their convenient features. Is that robot vacuum diligently cleaning your floors? It's creating detailed 3D maps of your home.
zerosecurity.org/hidden-cost-...
The Hidden Cost of Convenience: How Your Smart Devices Are Mapping Your Life
In an era where smart devices have become ubiquitous in our homes, a disturbing reality lurks beneath their convenient features. Is that robot vacuum diligently cleaning your floors? It’s creating detailed 3D maps of your home. The biometric scanner at your local grocery store? It’s collecting more than just payment data. These revelations come from data privacy experts Aram Senriq and Jesse Gilbert, authors of “The Secret Life of Data,” who warn that our digital footprints are far more extensive – and permanent – than most people realize. “Data isn’t really an object so much as it’s a frame of […]
zerosecurity.org
December 25, 2024 at 5:38 AM
Donald Trump's return to the White House signals dramatic changes to federal AI oversight, with cybersecurity concerns about increased vulnerability to state-sponsored attacks.
zerosecurity.org/us-ai-policy...
US AI Policy Overhaul Raises Cybersecurity Concerns Amid Global Tech Race
Trump's potential return to the White House signals a shift in AI policy, raising cybersecurity concerns as federal safeguards are dismantled, heightening vulnerability to state-sponsored attacks.
zerosecurity.org
December 23, 2024 at 11:17 PM
Roman Sterlingov, the 36-year-old operator of Bitcoin Fog, has been sentenced to 12 years and six months in federal prison for running what prosecutors described as the longest-operating money laundering service on the dark web.
zerosecurity.org/bitcoin-fog-...
Bitcoin Fog Operator Sentenced to 12.5 Years for $400M Cryptocurrency Laundering Scheme
Roman Sterlingov, the 36-year-old operator of Bitcoin Fog, has been sentenced to 12 years and six months in federal prison for running what prosecutors describe
zerosecurity.org
December 19, 2024 at 1:55 AM
Ahead of the 2024 US Presidential Election, US government agencies have accused Russian actors of manufacturing a video that falsely depicts individuals claiming to be from Haiti illegally voting in multiple counties in the state of Georgia.
zerosecurity.org/russia-accus...
Russia Accused of Spreading Disinformation Ahead of US Presidential Election
Russia accused of manufacturing fake video claiming Haitians illegally voted in Georgia, part of broader disinformation campaign to undermine 2024 US presidential election integrity.
zerosecurity.org
December 14, 2024 at 6:17 PM
Security researchers have exposed a critical vulnerability in qBittorrent, a widely-used open-source BitTorrent client, that has potentially compromised user security for over 14 years.
zerosecurity.org/major-securi...
Major Security Vulnerability Uncovered in qBittorrent Client
Shocking 14-year qBittorrent security flaw exposed: Hackers could exploit SSL validation weakness to inject malware through update, RSS, and Python installers.
zerosecurity.org
December 13, 2024 at 6:22 PM
Microsoft has recently issued a warning about a large-scale spear-phishing campaign attributed to the notorious Russian state-sponsored threat actor known as Midnight Blizzard. #APT29 #CozyBear #MidnightBlizzard
zerosecurity.org/microsoft-wa...
Microsoft Warns of Russian Spear-Phishing Attacks
Midnight Blizzard's spear-phishing campaign targets thousands across government, defense, academia, NGOs; Microsoft warns of stolen data, persistent access risks.
zerosecurity.org
December 1, 2024 at 3:46 AM
Following the massive data breach that affected millions of gaming accounts earlier this year, security experts warn of potential escalated risks for compromised accounts.
zerosecurity.org/activision-b...
Activision/Blizzard Accounts Under Attack 7 Months Post Cheat Provider Hack
Millions of gaming accounts face renewed security threats 7 months after major breach affecting Activision Blizzard users, with accounts being hacked now.
zerosecurity.org
November 28, 2024 at 1:35 AM
LinkedIn has been fined €310 million ($335 million) by European Union regulators for violating the General Data Protection Regulation (GDPR).
zerosecurity.org/linkedin-hit...
LinkedIn Hit with €310 Million GDPR Fine Over Data Privacy Violations
LinkedIn faces massive €310M EU fine for GDPR violations related to unauthorized user data processing for targeted advertising purposes.
zerosecurity.org
November 25, 2024 at 4:15 PM
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has escalated concerns over a significant Microsoft SharePoint vulnerability by adding it to its Known Exploited Vulnerabilities (KEV) catalog.
zerosecurity.org/cisa-adds-cr...
CISA Adds Critical Microsoft SharePoint Vulnerability (CVE-2024-38094) to Known Exploited Vulnerabilities Catalog
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has escalated concerns over a significant Microsoft SharePoint vulnerability by adding it to it
zerosecurity.org
November 22, 2024 at 7:53 PM
Microsoft's Threat Intelligence team has unveiled details about a significant security vulnerability in Apple's macOS operating system.
zerosecurity.org/apple-patche...
Apple Patches Critical Security Flaw (CVE-2024-44133) in macOS Safari: HM Surf Vulnerability
Microsoft's Threat Intelligence team has unveiled details about a significant security vulnerability in Apple's macOS operating system. The flaw, dubbed "HM
zerosecurity.org
November 19, 2024 at 4:38 AM
Checkmarx Researchers have discovered a concerning vulnerability that spans multiple open-source programming ecosystems, including PyPI, npm, Ruby Gems, NuGet, Dart Pub, and Rust Crates.
zerosecurity.org/researchers-...
Researchers Uncover Widespread Vulnerability in Open-Source Package Ecosystems
Researchers uncover widespread vulnerability in open-source package ecosystems, exposing new avenues for supply chain attacks through entry point exploitation.
zerosecurity.org
November 11, 2024 at 11:12 PM
The Federal Bureau of Investigation (FBI) has unveiled a sophisticated sting operation that indicted 18 individuals and entities, including four major cryptocurrency firms, for their alleged involvement in a widespread market manipulation scheme.
zerosecurity.org/fbis-covert-...
FBI's Covert Operation Token Mirrors Exposes Massive Crypto Fraud Ring
FBI creates crypto token NexFundAI to expose fraud, leading to charges against 18 entities for market manipulation in a landmark cryptocurrency case.
zerosecurity.org
November 8, 2024 at 1:25 AM
A sophisticated malware strain dubbed "Perfctl" has been discovered infecting thousands of Linux machines.
zerosecurity.org/linux-malwar...
Linux Malware "Perfctl" Exploits Vulnerabilities (CVE-2023-33246) and Misconfigurations
New Linux malware "Perfctl" infects thousands of machines, exploiting CVE-2023-33246 and misconfigurations. Learn about its stealth techniques and how to protect your systems.
zerosecurity.org
October 27, 2024 at 3:41 PM
Cybersecurity researchers have uncovered a sophisticated spear-phishing campaign targeting HR professionals with a potent JavaScript backdoor known as More_eggs. #Spearphishing
zerosecurity.org/more_eggs-ma...
More_eggs Malware Spread via Fake Resumes to HR Departments
Cybersecurity researchers have uncovered a sophisticated spear-phishing campaign targeting HR professionals with a potent JavaScript backdoor known as More_eggs
zerosecurity.org
October 26, 2024 at 5:50 AM
Rackspace, a leading cloud-hosting provider, successfully detected and mitigated a cyber intrusion that exploited a zero-day vulnerability in a third-party application.
zerosecurity.org/rackspace-th...
Rackspace Thwarts Cyber Intrusion Exploiting Zero-Day Vulnerability
Rackspace, a leading cloud-hosting provider, successfully detected and mitigated a cyber intrusion that exploited a zero-day vulnerability in a third-party appl
zerosecurity.org
October 23, 2024 at 5:13 PM
Strategies to bypass content restrictions on ChatGPT are continually being released, sparking widespread controversy about AI safety and ethics, which have surfaced online.
zerosecurity.org/chatgpt-jail...
ChatGPT "Jailbreak" Dan 10.0/7.0 Raises Concerns Over AI Safety and Ethics
ChatGPT's DAN 7.0 & 1.0 jailbreak raises concerns over AI ethics. Experts warn of risks as users bypass safeguards, sparking debate on responsible AI development.
zerosecurity.org
October 21, 2024 at 7:46 PM
Transitioning to Zero Trust is a journey, not a destination. Read our article on how to get started.
zerosecurity.org/zero-trust-s...
Zero Trust Security: Principles of the Zero Trust Security Model
Explore the Zero Trust security model, where trust is never assumed. Learn how continuous authentication and strict access controls enhance your network security.
zerosecurity.org
October 18, 2024 at 9:26 PM
Telegram CEO Pavel Durov has announced substantial changes to the messaging platform's policies, signaling a shift away from its previous stance as a haven for those seeking to avoid government scrutiny.
zerosecurity.org/telegram-tig...
Telegram Tightens Policies: Now Cooperating with Law Enforcement
Telegram CEO announces major policy changes, allowing user data sharing with authorities for criminal investigations and intensifying content moderation efforts.
zerosecurity.org
October 17, 2024 at 4:51 PM
A series of pager explosions rocked Lebanon and Syria yesterday, resulting in at least 11 deaths and over 2,700 injuries.
zerosecurity.org/supply-chain...
Supply Chain Pager Hack in Lebanon and Syria: Suspected Israeli Operation Targets Hezbollah
A series of pager explosions rocked Lebanon and Syria yesterday, resulting in at least 11 deaths and over 2,700 injuries. The suspected pager hack, which began
zerosecurity.org
October 9, 2024 at 2:43 AM
A newly discovered malware infection has raised alarm bells by affecting an estimated 1.3 million Android streaming devices running an open-source version across almost 200 countries.
zerosecurity.org/massive-back...
Massive Backdoor Infection Hits 1.3 Million Android-Based Streaming Devices
A newly discovered malware infection has raised alarm bells by affecting an estimated 1.3 million Android streaming devices running an open-source version acros
zerosecurity.org
October 5, 2024 at 4:51 AM