GPS News  
CYBER WARS
Spyware campaign targeted journalists, activists: researchers
by AFP Staff Writers
Washington (AFP) July 15, 2021

A spyware campaign using tools from a secretive Israeli firm was used to attack and impersonate dozens of human rights activists, journalists, dissidents, politicians and others, researchers said Thursday.

Statements from Microsoft security researchers and the University of Toronto's Citizen Lab said powerful "cyberweapons" were being used in precision attacks targeting more than 100 victims around the world.

Microsoft said it patched this week the vulnerability exploited by the group, known by the names Candiru and Sourgum.

Citizen Lab said in a blog post that "Candiru is a secretive Israel-based company that sells spyware exclusively to governments," which can then use it to "infect and monitor iPhones, Androids, Macs, PCs, and cloud accounts."

"We found many domains masquerading as advocacy organizations such as Amnesty International, the Black Lives Matter movement, as well as media companies, and other civil-society themed entities," Citizen Lab said.

Microsoft observed at least 100 victims in the Palestinian territories, Israel, Iran, Lebanon, Yemen, Spain, Britain, Turkey, Armenia and Singapore.

The US tech firm said it moved to thwart the attacks with Windows software updates that prevent Candiru from delivering its malware.

"Microsoft has created and built protections into our products against this unique malware, which we are calling DevilsTongue," a Microsoft statement said.

"We have shared these protections with the security community so that we can collectively address and mitigate this threat."

According to Microsoft, DevilsTongue was able to infiltrate popular websites such as Facebook, Twitter, Gmail, Yahoo and others to collect information, read the victim's messages and retrieve photos.

"DevilsTongue can also send messages as the victim on some of these websites, appearing to any recipient that the victim had sent these messages," said the statement from Microsoft Threat Intelligence Center.

"The capability to send messages could be weaponized to send malicious links to more victims."

Citizen Lab researchers found evidence the spyware can exfiltrate private data from a number of apps and accounts, including Gmail, Skype, Telegram and Facebook.

It can also capture browsing history and passwords, as well as turn on the target's webcam and microphone, according to the findings.

Citizen Lab said the Israeli firm's current name is Saito Tech Ltd, and that it has some of the same investors and principals as NSO Group, another Israeli firm under scrutiny for surveillance software.

rl/sw

FACEBOOK

YAHOO!

Twitter

MICROSOFT


Related Links
Cyberwar - Internet Security News - Systems and Policy Issues


Thanks for being here;
We need your help. The SpaceDaily news network continues to grow but revenues have never been harder to maintain.

With the rise of Ad Blockers, and Facebook - our traditional revenue sources via quality network advertising continues to decline. And unlike so many other news sites, we don't have a paywall - with those annoying usernames and passwords.

Our news coverage takes time and effort to publish 365 days a year.

If you find our news sites informative and useful then please consider becoming a regular supporter or for now make a one off contribution.
SpaceDaily Contributor
$5 Billed Once


credit card or paypal
SpaceDaily Monthly Supporter
$5 Billed Monthly


paypal only


CYBER WARS
Ransomware gang goes offline, prompting questions
Washington (AFP) July 13, 2021
A Russian-based hacker group blamed for a massive ransomware attack went offline Tuesday, sparking speculation about whether the move was the result of a government-led action. The "dark web" page of the group known as REvil disappeared some two weeks after an attack which crippled networks of hundreds of companies worldwide and prompted a ransom demand of $70 million. "REvil has seemingly vanished from the dark web, as its website has gone offline," tweeted Allan Liska, a security researcher wi ... read more

Comment using your Disqus, Facebook, Google or Twitter login.



Share this article via these popular social media networks
del.icio.usdel.icio.us DiggDigg RedditReddit GoogleGoogle

CYBER WARS
India food delivery giant Zomato kicks off $1.3bn IPO

New method makes vital fertilizer element in a more sustainable way

Colorado ranchers face not just drought but rising social pressures

Farm robots could bring utopia or disaster, scientist warns

CYBER WARS
Concepts for the development of German quantum computers

Ultrathin semiconductors electrically connected to superconductors for the first time

UK PM reveals govt will review Chinese purchase of semiconductor firm

Broadcom settles US antitrust case on chip market

CYBER WARS
U.S. Air Force sends F-22s to Western Pacific as message to China

Time between F-35 software updates increased to cut down on flaws

Black Hawk helicopter makes emergency landing in Bucharest

B-52 bomber task force deploys to Guam ahead of Talisman Saber exercise

CYBER WARS
Self-driving car startup Aurora on road to going public

Will drivers get burned by EU ban on ICE cars?

UK publishes plans to decarbonise transport by mid-century

Fiat-Chrysler also charged in French 'dieselgate' case

CYBER WARS
China growth slows to 7.9% in second quarter in Covid recovery

Asia builds on global retreat as Delta fears deepen

China growth slows to 7.9% in second quarter

US warns of 'growing risks' for business in blow to Hong Kong

CYBER WARS
20% of intact tropical forests overlap with extractive industries

Environment watchdogs oppose lifting of DR Congo logging ban

UNESCO removes DR Congo park from endangered list

Warming, deforestation turn Amazon into source of CO2

CYBER WARS
Global satellite data shows clouds will amplify global heating

NASA mission explores intense summertime thunderstorms

NASA Space Lasers Map Meltwater Lakes in Antarctica With Striking Precision

Pathfinder satellite paves way for constellation of tropical-storm observers

CYBER WARS
Custom-made MIT tool probes materials at the nanoscale

Nano-Bio Materials Consortium introduces new AFRL-Industry Co-Development Program

Nanostructured device stops light in its tracks









The content herein, unless otherwise known to be public domain, are Copyright 1995-2024 - Space Media Network. All websites are published in Australia and are solely subject to Australian law and governed by Fair Use principals for news reporting and research purposes. AFP, UPI and IANS news wire stories are copyright Agence France-Presse, United Press International and Indo-Asia News Service. ESA news reports are copyright European Space Agency. All NASA sourced material is public domain. Additional copyrights may apply in whole or part to other bona fide parties. All articles labeled "by Staff Writers" include reports supplied to Space Media Network by industry news wires, PR agencies, corporate press officers and the like. Such articles are individually curated and edited by Space Media Network staff on the basis of the report's information value to our industry and professional readership. Advertising does not imply endorsement, agreement or approval of any opinions, statements or information provided by Space Media Network on any Web page published or hosted by Space Media Network. General Data Protection Regulation (GDPR) Statement Our advertisers use various cookies and the like to deliver the best ad banner available at one time. All network advertising suppliers have GDPR policies (Legitimate Interest) that conform with EU regulations for data collection. By using our websites you consent to cookie based advertising. If you do not agree with this then you must stop using the websites from May 25, 2018. Privacy Statement. Additional information can be found here at About Us.