November 15, 2024

Month: September 2019

Beware: Legit-looking iPhone Lightening Cables May NOT be

Soon it may be easier to get your hands on a cable that looks just like a legitimate Apple lightning cable, but which actually lets you remotely take over a computer. The security researcher behind the recently developed tool announced over the weekend that the cable has been successfully made in a factory.

"I’ve completely torn the cable apart to make sure there aren’t any production stoppers. Gotta make sure it’s up to par!," the security researcher MG told Motherboard in an online chat.

To read the rest of the article, click here.

Apple News + Finally Comes to Austria and the United Kingdom

Apple News+, a new subscription service that brings together over 150 popular magazines and leading newspapers into a convenient and curated experience within the Apple News app, is now available to UK and Australian readers.

Apple News+ presents the best and most relevant publications to meet any range of interests from renowned British publications such as The Times and The Sunday Times, Cosmopolitan UK, Elle UK, Esquire UK, FourFourTwo, Empire, Hello!, Cyclist and Grazia, as well as several US newspapers, magazines and digital outlets including The Wall Street Journal, Bloomberg Businessweek, National Geographic, Rolling Stone, Vox and more.

“Apple News+ offers hundreds of the world’s most popular publications, all discoverable through personalised and curated recommendations,” said Lauren Kern, editor-in-chief of Apple News in a statement. “The quality of the journalism, the beautiful photography, the stunning live covers and custom-designed articles in this collection are second to none.

Apple News+ subscribers can access current and past issues and individual articles from magazines and digital outlets such as Cosmopolitan UK, Cyclist, Elle UK, Empire, Esquire UK, EVO, Grazia, Heat, Hello!, House Beautiful, Men’s Health UK, Women’s Health UK, MoneyWeek, Q: The Biggest Music Magazine, and FourFourTwo.

Apple News+ subscribers can access current and past issues and individual articles from magazines such as Vogue Australia, Harper’s Bazaar Australia, Australian Women’s Health, The Australian Women’s Weekly, Elle, GQ Australia, Australian Men’s Health and Delicious. Australian subscribers can also access international newspapers and magazines including The Wall Street Journal (US), Los Angeles Times (US), The Times (UK), (more…)

iPhone users warned to update as 1.1 billion eGobbler malvertising attack is confirmed

I first wrote about eGobbler, the prolific threat actor behind malvertising campaigns with a history of compromising adverts in their hundreds of millions in a matter of hours, on April 17, 2019. Back then, it was iPhone users that were coming under attack as eGobbler exploited a vulnerability in the Google Chrome web browser for iOS to bypass the pop-up blocker and forced redirection mitigations in place. The Chromium development team fixed that CVE-2019–5840 bug with the release of Chrome 75 for iOS on June 4, 2019. This wasn’t, unfortunately, the end of the eGobbler story. The same security researchers from Confiant who found that earlier Chrome vulnerability soon spotted another eGobbler payload out in the wild: this time turning more than 1.1 billion adverts into badverts.

A badvert, or malvertising if you prefer the popular infosecurity vernacular, is a seemingly legitimate advert that has been manipulated to contain underlying code that redirects to malicious content. The core nature of most badverts is fraudulent, with users being redirected away from the real advertising message to landing pages that deliver fake content where the attacker can generate revenue from serving genuine adverts. A secondary payload of badverts can be more malicious in intent; malware distribution or the collection of user credentials is not uncommon.

Given the vast volumes of hits that the badverts served up by these campaigns achieve, in just ten days that iOS-targeted campaign was able to distribute more than 500 million badverts, it’s likely eGobbler is an organized criminal venture rather than a lone-wolf actor.

The vulnerability was fixed in the iOS 13 release on September 19, and on September 24 it was also fixed in Safari 13.0.1.

Via: Forbes

Apple releases iOS 13.1.2 and iPadOS 13.1.2

Apple has released a minor update for iOS 13 and iPadOS 13.

iOS 13.1.2:

  • An issue with the Flashlight.
  • A bug that could result in the loss of display calibration data.
  • Bluetooth disconnect problem.
  • An iCloud Backup issue.

iPadOS 13.1.2:

  • HomePod Shortcut issue has been fixed.
  • An issue with iCloud Sync has been fixed.

The updates are available now.

You may have Missed:

Verified by MonsterInsights