April 12, 2024 at 05:04PM

■■■■■ Hackable Intel and Lenovo hardware that went undetected for 5 years won’t ever be fixed. Multiple links in the supply chain failed for years to identify an unfixed vulnerability. https://arstechnica.com/security/2024/04/supply-chain-snafu-causes-intel-and-others-to-ship-hackable-hardware-for-5-years/ https://t.me/cKure/13835

April 12, 2024 at 05:04AM

■■■■■ New Technique to Trick Developers Detected in an Open Source Supply Chain Attack. https://checkmarx.com/blog/new-technique-to-trick-developers-detected-in-an-open-source-supply-chain-attack/ https://t.me/cKure/13834

April 12, 2024 at 04:30AM

■□□□□ Mumbai, India school faced around 105K USD scam through alleged man-in-the-middle attack. Money was recovered from the Wells-Fargo account (frozen by state police). https://timesofindia.indiatimes.com/city/mumbai/mumbai-school-faces-rs-87-3-lakh-scam-through-man-in-the-middle-attack/articleshow/109225670.cms https://t.me/cKure/13833

April 12, 2024 at 12:21AM

■■■■□ Genzai: The IoT security toolkit to help identify IoT related dashboards and scan them for default passwords and vulnerabilities. https://github.com/umair9747/Genzai https://t.me/cKure/13831

April 11, 2024 at 08:55PM

■■□□□ ‘eXotic Visit’ Spyware Campaign Targets Android Users in India and Pakistan. An active Android malware campaign dubbed eXotic Visit has been primarily targeting users in South Asia, particularly those in India and Pakistan, with malware distributed via dedicated websites and Google Play Store. https://thehackernews.com/2024/04/exotic-visit-spyware-campaign-targets.html https://t.me/cKure/13828