Posts

Showing posts with the label security

SEC account hack renews spotlight on X's security concerns

SAN FRANCISCO/WASHINGTON: The hack of the US Securities and Exchange Commission's official account on X on Tuesday renewed concerns about the social media platform's security since its takeover by billionaire Elon Musk in 2022. The hackers posted false news about a widely anticipated announcement the SEC was expected to make about bitcoin, leading the cryptocurrency's price to spike and alarming observers. The false post on @SECGov said the securities regulator had approved exchange-traded funds to hold bitcoin. The SEC deleted the post about 30 minutes after it appeared. X confirmed later on Tuesday, following a preliminary investigation, that the SEC's account was compromised because an unidentified individual gained control over a phone number associated with the account through a third party. The social media platform also said in a post that the SEC did not have two-factor authentication enabled at the time the account was compromised. While...

Apple patches two security vulnerabilities

In new updates to Apple devices, the company has patched two zero-day security vulnerabilities with new softwares. According to its blog post, “Apple is aware of a report that this issue may have been exploited against versions of iOS before iOS 16.7.1, " and was actively exploited. Researcher Clément Lecigne of Google’s Threat Analysis Group (TAG) discovered the security flaws, exposing the zero-day bugs against high-risk individuals, like politicians, journalists and dissidents. While Apple didn't provide details on the nature of the bugs, the two security flaws was affecting WebKit, Apple’s open-source browser framework powering Safari. Apple said the first bug was “processing web content may disclose sensitive information,” while the second was “processing web content may lead to arbitrary code execution.” The new security update covers “iPhone XS and later, iPad Pro 12.9-inch 2nd generation and later, iPad Pro ...

US regulator probes Twitter security lapse before Musk took over

The US securities regulator is investigating how Twitter managed a 2018 security lapse that exposed personal user information before billionaire Elon Musk bought the social media platform last year, Bloomberg News reported. The agency has been scrutinizing whether the former top executives failed to adequately disclose those privacy issues to shareholders or put in place proper controls, according to the report, which cited people familiar with the matter. At the time, the company was being led by Jack Dorsey with Ned Segal as CFO and Parag Agrawal as the chief Technology officer. A bug on the social media platform had let outsiders view user email addresses during password resets, which revealed the identity of users, Bloomberg News said. The company and the SEC did not immediately respond to Reuters requests for comment. Musk renamed the social media platform as X following the acquisition. Source: https://thefoxposts.com/us-regulator-probes-twitter-security-l...

Urgent security warning over ChatGPT iPhone app

Technology experts are warning iPhone users over a ChatGPT app which poses a security risk to users. The artificial intelligence that is ChatGPT has soared in popularity in recent months, and the masterminds behind the technology, OpenAI, have launched the technology in a new iPhone app. WATCH THE VIDEO ABOVE: Warning over scam MyGov text messages. Watch the latest News on Channel 7 or stream for free on 7plus >> Since its release, it has become one of the most popular free apps on the App Store. However, computing staff writer at Techradar, Muskaan Saxena, says sharing too many personal details with the mobile-friendly bot could put your privacy at risk. The free iOS app does, however, come with a warning about sharing personal information because “anonymised chats may be reviewed by our AI trainer to improve our systems”. But many users may not be aware of all the security risks. The app has become one of the most popular free apps available. But it could come at a cost. ...

Warning for millions of Android users over serious security flaws in Samsung Galaxy smartphones

Several high-risk security flaws have been discovered in Samsung Galaxy smartphones that could allow hackers to easily target the devices. Attackers only need to know the victim’s phone number to exploit the bugs without the user knowing anything is wrong, warns Google’s Project Zero team. WATCH THE VIDEO ABOVE: Best new budget phones 2023. Watch the latest News on Channel 7 or stream for free on 7plus >> Google’s Project Zero security researchers study flaws in hardware and software systems to find the bugs and fix them. In a March update, Project Zero’s Tim Willis said researchers found at least 18 security flaws that had not yet been fixed in Samsung’s Exynos modems, which are used in the company’s flagship Galaxy devices. He warned the four most serious vulnerabilities (CVE-2023-24033, CVE-2023-26496, CVE-2023-26497 and CVE-2023-26498) allow for “internet-to-baseband remote code execution” by hackers. “Tests conducted by Project Zero confirm that those four vulnerabiliti...

TikTok steps up efforts to clinch US security deal

Image
Popular short-video app TikTok is offering to operate more of its business at arm's length and subject it to outside scrutiny as it tries to convince the US government to allow it to remain under the ownership of Chinese technology company ByteDance, according to people familiar with the matter. TikTok has been seeking to assure US government departments and agencies for the last three years that the personal data of U.S. citizens cannot be accessed and its content cannot be manipulated by China's Communist Party or any other entity under the influence of that country's government. Last year, President Joe Biden revoked an executive order by his predecessor Donald Trump to ban TikTok in the United States, but negotiations between his administration and the social media company continued over a potential deal that would address the security concerns. US lawmakers seeking to crack down on China as part of broader set of disputes over trade, intelle...

Five ways TikTok is seen as threat to US national security

Many in the United States see TikTok, the highly popular video-sharing app owned by Beijing-based ByteDance, as a threat to national security. The following is a look at five reasons why: Data sharing TikTok -- like its rivals Instagram, Snapchat and YouTube -- thrives on data and there seems to be no limit to how much young users are willing to share about themselves on the super addictive app. TikTok's critics worry that all this information is being processed by a Chinese company in China where the Communist Party reigns supreme. But some experts believe the threat is overblown and that nefarious actors can make their way to the troves of data no matter who owns the platform and where it is based. "If we're talking about US citizen data, it's the Wild West," said Justin Sherman, a senior fellow at Duke University's Sanford School of Public Policy. "There's very little regulation, companies collect tons of data all the time, whether they...

More than 5 million Twitter users at risk after alleged security breach

Millions of Twitter users may have had their personal data - including personal phone numbers and email addresses - breached in a massive cybersecurity attack. Last week, some 5.4 million user records were exposed, according to Chad Loder, the founder of cyber security awareness company Habitu8. WATCH THE VIDEO: Black Fireay and Cyber Monday scams to beware of Watch the latest News on Channel 7 or stream for free on 7plus >> Loder shared the news on his Twitter account on November 23. However, his account was suspended shortly after he posted the claim. “I have just received evidence of a massive Twitter data breach affecting million s of Twitter accounts in the EU and US. I have contacted a sample of the affected accounts, and they confirmed that the breach ed data is accurate,” he said. Users in Europe and the US were impacted, according to Loder, who added the data exposed was enough for attackers to unleash phishing attacks. Many are now concerned Twitter is attempting to...