Decryptedtech Decryptedtech Decryptedtech Decryptedtech
  • Home
  • Articles
    • News
    • Security Talk
    • Game Thoughts
    • Editorials
    • Shows and Events
    • Leaks and Rumors
    • My Ramblings
    • In Other News
    • Bits, Bytes, and Bourbon
  • Consulting
    • Security Consulting
    • Why Us
    • Services
  • Privacy Policy
  • Archived Items
    • Reviews
      • Enthusiast Gear
        • Motherboards
        • CPUs
        • GPUs
        • Audio
        • Storage and Networking
        • Entusiast Peripherals
      • Pro Gear
        • Motherboards
        • Memory
        • Storage and Networking
      • Consumer Gear
        • Motherboards
        • Audio
        • Storage and Networking
        • Consumer Peripherals
      • Home Theater
      • Mobile Computing
      • Tech Unplugged
      • Gadgets
      • Systems
        • Pro Systems
      • Software and Games
        • Consumer Software
        • Games
      • Peripherals
      • Power and Cooling
  • Bits, Bytes, and Bourbon Store

News

News

ByteDance’s TikTok Video Editor/Maker CapCut Being Impersonated to Spread Malware

Video editing software CapCut users are being targeted by attackers to push different strains of malware. For those that are not aware of that CapCut is, it is a video editor and maker for TikTok and is the official one at that (ByteDance also owns TikTok). With over 500 million downloads from Google Play alone it is clearly a very popular app for people to grab to feed their TikTok streams with. It was only a matter of time before someone decided to go after the poplar app and with the growing number of bans and lock outs for ByteDance and their services, offering what appears to be an alternative way to get this software makes sense (from an attacker perspective).

Details
By Sean Kalinich
Sean Kalinich
May 22
Hits: 1454
  • Malware
  • AntiMalware
  • redline stealer
  • bytedance
  • tiktok
  • capput
  • offx stealer
  • cyble

Read more: ByteDance’s TikTok Video Editor/Maker CapCut...

No comments on “ByteDance’s TikTok Video Editor/Maker CapCut Being Impersonated to Spread Malware”
News

Samsung Discloses Medium Vulnerability Exploited in the Wild First Identified in January 2023

First identified in January of 2023, Samsung has put a warning about a CVSS 4.4 vulnerability (CVE-2023-21492) that Is actively being exploited in the wild. The flaw, which impacts Samsung devices that are running Android 11, 12, and 13, was first disclosed to Samsung privately on January 17th, 2023. CISA (Cybersecurity and Infrastructure Security Agency) has also issued a warning about the flaw.

Details
By Sean Kalinich
Sean Kalinich
May 22
Hits: 780
  • Security
  • Samsung
  • Vulnerabilities
  • cve202321492
  • epss
  • kev
  • exploitation probability scoring system
  • known exploited vulnerabilities

Read more: Samsung Discloses Medium Vulnerability Exploited...

No comments on “Samsung Discloses Medium Vulnerability Exploited in the Wild First Identified in January 2023”
News

PyPI Stops New Users and Uploads to Deal with Malicious User Increase

PyPI (the Python Package Index) has stopped allowing the creation of new accounts and the upload of new packages. This move has been put in place to deal with a massive increase in identified malicious users and packages. This decision comes as other repositories like NPM and even Microsoft VSCode have identified new malware posing as well-known projects. Supply chain attacks and typo-squatting are not really a new thing and increases in attacks on repositories often happen on a fairly regular basis. However, the increase across three popular repos can been seen as a larger threat when put in context of the general IT market.

Details
By Sean Kalinich
Sean Kalinich
May 22
Hits: 917
  • Malware
  • supply chain attack
  • threat groups
  • pypi
  • python
  • pythong package index

Read more: PyPI Stops New Users and Uploads to Deal with...

No comments on “PyPI Stops New Users and Uploads to Deal with Malicious User Increase”
News

Millions of Android Devices Loaded with Malware Infected OEM Images.

TrendMicro made a shocking revelation at Black Hat Asia 2023 where they disclosed an operation that has been running since 2018 targeting Android devices. The scheme was uncovered in 2021 while researchers at TrendMicro were looking into SMS PVA (Phone Verified Accounts) mobile bot net. They identified that the botnet had been helped along by a supply chain attack targeting the image used by OEM to rapidly deploy the OS onto the devices.

Details
By Sean Kalinich
Sean Kalinich
May 19
Hits: 2246
  • Android
  • Malware
  • TrendMicro
  • supply chain attacks
  • lemon group
  • black hat asia

Read more: Millions of Android Devices Loaded with Malware...

No comments on “Millions of Android Devices Loaded with Malware Infected OEM Images.”
News

Apple Pushes Out Patches for Three Zero-Day Vulnerabilities Exploited in the Wild

Apple has rushed to release patches for CVE-2023-32409, CVE-2023-28204, and CVE-2023-32373 all of which are in the WebKit Browser engine and across all Apple platforms (IOS, IpadOS and macOS). These three flaws have also been seen to be actively exploited in the wild. This increases the significance of them and should be remediated as soon as possible by applying any available patches.

Details
By Sean Kalinich
Sean Kalinich
May 19
Hits: 1842
  • Apple
  • iOS
  • Vulnerabilities
  • Patching
  • macos
  • ipados
  • cve202332409
  • cve202328204
  • cve202332373

Read more: Apple Pushes Out Patches for Three Zero-Day...

No comments on “Apple Pushes Out Patches for Three Zero-Day Vulnerabilities Exploited in the Wild”

More Articles …

  1. Apple Launches ChatGPT app Wile Banning it from Use by Employees
  2. Well Crap, New Flaw in KeePass Allows Attackers to Recover Master Password via Memory Dump
  3. More Repo Issues as Malware Found in NPM Node.js Packages
  4. Apple Rolling out a Feature that Lets Your iPhone Sound Just Like You, What Could Go Wrong
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16

Page 12 of 570

Follow Us

Follow DecryptedTech on Social Media

facebook twitter linkedin
Decryptedtech