BleepingComputer.com

"New FireScam Android malware poses as RuStore app to steal data."

Views expressed in this cybersecurity, cyber crime update are those of the reporters and correspondents.  Accessed on 04 January 2025, 1553 UTC.

Content and Source:  https://www.bleepingcomputer.com/

Please check link or scroll down to read your selections.  Thanks for joining us today.

Russ Roberts (https://www.hawaiicybersecurityjournal.net).

New FireScam Android malware poses as RuStore app to steal data

  • A new Android malware named 'FireScam' is being distributed as a premium version of the Telegram app via phishing websites on GitHub that mimick the RuStore, Russia's app market for mobile devices.

  • Cybersecurity ethical hacking penetration testing
     

Get started in ethical hacking with this $35 training bundle deal

  • Make a career change or level up your skills in the new year with this super-sized ethical hacking e-course bundle on sale for $34.97 (reg. $1,098) until January 12 at 11:59 p.m. PT. No coupon is needed for this discount.

    • BleepingComputer Deals
    •  
    • January 04, 2025
    •  
    • 08:17 AM
    •  
    • Comment Count 0
  • Nudge Security
     

Sponsored Content 
How to conduct an AI risk assessment [Free Guide]

  • AI is clearly here to stay. This guide will help ensure you don't miss important sources of risk when safeguarding your org's approach to AI use.

  • Tenable
     

Bad Tenable plugin updates take down Nessus agents worldwide

  • Tenable says customers must manually upgrade their software to revive Nessus vulnerability scanner agents taken offline on December 31st due to buggy differential plugin updates.

  • Chinese Hackers
     

US sanctions Chinese company linked to Flax Typhoon hackers

  • ​The U.S. Treasury Department has sanctioned Beijing-based cybersecurity company Integrity Tech (also known as Yongxin Zhicheng) for its involvement in cyberattacks attributed to the Chinese state-sponsored Flax Typhoon hacking group.

  • NPM
     

Malicious npm packages target Ethereum developers' private keys

  • Twenty malicious packages impersonating the Hardhat development environment used by Ethereum developers are targeting private keys and other sensitive data.

  • Siri
     

Apple offers $95 million in Siri privacy violation settlement

  • Apple has agreed to pay $95 million to settle a class action lawsuit in the U.S. alleging that its Siri assistant recorded private conversations and shared them with third parties.

  • Atos
     

French govt contractor Atos denies Space Bears ransomware attack claims

  • French tech giant Atos, which secures communications for the country's military and secret services, has denied claims made by the Space Bears ransomware gang that they compromised one of its databases.

  • CompTIA
     

Start an IT career this year with this $25 CompTIA course bundle deal

  • Set a resolution to make a career change while this ultimate cybersecurity and IT career certification training bundle is on sale for $24.97 (reg. $184) through January 12 at 11:59 p.m. PT. No coupon is needed to get this deal.

    • BleepingComputer Deals
    •  
    • January 03, 2025
    •  
    • 07:12 AM
    •  
    • Comment Count 0
  • Rhode Island statehouse
     

Ransomware gang leaks data stolen in Rhode Island's RIBridges Breach

  • The Brain Cipher ransomware gang has begun to leak documents stolen in an attack on Rhode Island's "RIBridges" social services platform.

  • Clickjack mouse
     

New DoubleClickjacking attack exploits double-clicks to hijack accounts

  • A new variation of clickjacking attacks called "DoubleClickjacking" lets attackers trick users into authorizing sensitive actions using double-clicks while bypassing existing protections against these types of attacks.

  • Datacenter Network Switch
     

This $40 training deal covers 5 platform certification paths in 1 bundle

  • Prepare for exams and job interviews with the lessons from ExamsDigest and unlimited access to 15+ certification paths, including AWS, Cisco, Microsoft, Google, and CompTIA, with course deal priced at $39.97 through January 12

    • BleepingComputer Deals
    •  
    • January 02, 2025
    •  
    • 02:06 PM
    •  
    • Comment Count 0
  • US Treasury
     

Chinese hackers targeted sanctions office in Treasury attack

  • ​Chinese state-backed hackers have reportedly breached the Office of Foreign Assets Control (OFAC), a Treasury Department office that administers and enforces trade and economic sanctions programs.

  • Email
     

Over 3 million mail servers without encryption exposed to sniffing attacks

  • Over three million POP3 and IMAP mail servers without TLS encryption are currently exposed on the Internet and vulnerable to network sniffing attacks.

  • Sams Club
     

One-stop shopping is possible when you join Sam's Club for $20

  • Grab this one-year Sam's Club membership with auto-renew for just $20 while supplies last. You only have until January 12 at 11:59 p.m. PT to grab this New Year's offer!

    • BleepingComputer Deals
    •  
    • January 02, 2025
    •  
    • 07:19 AM
    •  
    • Comment Count 0
  • Cybersecurity Lock World
     

Study for industry-leading IT certifications in this discounted course deal

  • With the increasing reliance on digital systems across industries, the demand for professionals who can safeguard digital assets is growing rapidly. This bundle could be how you prepare for industry-recognized certifications or how you prepare for your first job in the field, and it's on sale for $59.99 (reg. $936). 

    • BleepingComputer Deals
    •  
    • January 01, 2025
    •  
    • 02:09 PM
    •  
    • Comment Count 0
  • 2024
     

The biggest cybersecurity and cyberattack stories of 2024

  • 2024 was a big year for cybersecurity, with significant cyberattacks, data breaches, new threat groups emerging, and, of course, zero-day vulnerabilities. Below are fourteen of what BleepingComputer believes are the most impactful cybersecurity stories of 2024.

  • Dell
     

This open-box Dell Inspiron laptop is now 21% off in this deal

  • Here's an affordable laptop upgrade you've been waiting for: this open-box Dell Inspiron 15 laptop. It comes with a 15.6-inch touchscreen display, ports that have been discontinued in newer MacBooks, and is pre-installed with Windows 11 Home for only $469.99 (reg. $599) while supplies last.

    • BleepingComputer Deals
    •  
    • January 01, 2025
    •  
    • 07:09 AM
    •  
    • Comment Count 0
  • Identity Cybersecurity Framework passwords authentication
     

Train for a new cybersecurity job in 2025 with this course deal

  • During the new year, you could study and prepare for four of the most in-demand cybersecurity certifications that could get you noticed by tech titans and government agencies. Grab the Ultimate Cybersecurity Professional e-learning courses now for $64.97 (reg. $535) through January 12.

    • BleepingComputer Deals
    •  
    • December 31, 2024
    •  
    • 02:06 PM
    •  
    • Comment Count 0
  • Chrome flare
     

New details reveal how hackers hijacked 35 Google Chrome extensions

  • New details have emerged about a phishing campaign targeting Chrome browser extension developers that led to the compromise of at least thirty-five extensions to inject data-stealing code, including those from cybersecurity firm Cyberhaven.

  • GitHub
     

Over 3.1 million fake "stars" on GitHub projects used to boost rankings

  • GitHub has a problem with inauthentic "stars" used to artificially inflate the popularity of scam and malware distribution repositories, helping them reach more unsuspecting users.

View More

 

Comments

Popular posts from this blog

The Cyberwire Daily Briefing

Cyber War News Today.

BleepingComputer.com