Security - Latest News & Updates https://www.thetechoutlook.com/category/news/security/ Daily Tech News, Interviews, Reviews and Updates Tue, 21 Jan 2025 03:10:47 +0000 en-US hourly 1 https://wordpress.org/?v=6.7.1 https://www.thetechoutlook.com/wp-content/uploads/2019/09/cropped-favicon-1-150x150.png Security - Latest News & Updates https://www.thetechoutlook.com/category/news/security/ 32 32 Grok Conversations Reportedly Indexed by Google Search Posing Serious AI Privacy Threats https://www.thetechoutlook.com/news/security/grok-conversations-reportedly-indexed-by-google-search-posing-serious-ai-privacy-threats/ https://www.thetechoutlook.com/news/security/grok-conversations-reportedly-indexed-by-google-search-posing-serious-ai-privacy-threats/#respond Tue, 21 Jan 2025 03:10:47 +0000 https://www.thetechoutlook.com/?p=212061

The generative artificial intelligence chat bot developed by Elon Musk founded xAI – Grok was introduced in 2023 on the X platform (formerly known as Twitter), and later a standalone app version of Grok also came out which is currently available in several countries (for iOS). Very recently, a web version of the AI chat […]

The post Grok Conversations Reportedly Indexed by Google Search Posing Serious AI Privacy Threats appeared first on The Tech Outlook.

]]>

The generative artificial intelligence chat bot developed by Elon Musk founded xAI – Grok was introduced in 2023 on the X platform (formerly known as Twitter), and later a standalone app version of Grok also came out which is currently available in several countries (for iOS). Very recently, a web version of the AI chat bot was also released, that can be accessed without an X account and with features like temporary data mode and personalized settings.

Now, it has been reported that Google Search is indexing Grok conversations made by X users, and it is available and accessible to other users on the web. Read more about it below.

Is Google Search Indexing Grok Conversations?

While brands have been assuring safety and privacy across their AI services and taking necessary steps to prevent any misuse of the features, it has come to notice that Google Search has been indexing Grok conversations that have been made by X users (received via @gaganghotra_). xAI’s Grok chat bot which is a direct competitor for OpenAI’s ChatGPT and Google’s Gemini was recently introduced as a web version too, and one of its new key features is the ‘Temporary Mode’ that enables users to have conversations with the history not being saved anywhere or used to train language models.

As per what has been shared, a large amount of chat made by Japanese X users with Grok have been indexed on Google Search, and it is not sure whether users are aware about this or not. Just to add, Japan is said to be ranked second as per region-wise number of X users, and do note that Grok’s chat data is being exposed to the public through one of its competitors. Moreover, this news comes following the introduction of the Grok web version.

Google Search has indexed an insane number of Grok conversations but do those users know - X Post

The matter is a very serious AI privacy issue, and for people who might be talking to Grok as a friend would possibly be at great risk as what they are communicating is accessible to others as well, and can be misused. xAI will have to look into this matter, giving it the utmost importance, and users of AI chat bots are best advised to not be very open and share their personal details as these may always likely pose a privacy threat like this.

The post Grok Conversations Reportedly Indexed by Google Search Posing Serious AI Privacy Threats appeared first on The Tech Outlook.

]]>
https://www.thetechoutlook.com/news/security/grok-conversations-reportedly-indexed-by-google-search-posing-serious-ai-privacy-threats/feed/ 0
RBI Mandates ‘1600’ Series for Bank Calls, ‘140’ for Marketing to Combat Fraud https://www.thetechoutlook.com/news/security/rbi-mandates-1600-series-for-bank-calls-140-for-marketing-to-combat-fraud/ https://www.thetechoutlook.com/news/security/rbi-mandates-1600-series-for-bank-calls-140-for-marketing-to-combat-fraud/#respond Sun, 19 Jan 2025 18:49:13 +0000 https://www.thetechoutlook.com/?p=211974 RBI issues a new alert for websites

Scams! Yes, they are increasing day by day and giving all of us a hard time. Whether you are from any part of the world, you may have heard or even witnessed scam calls. However, recently scams have been rampant in India, where people have been getting digitally arrested by scammers who then drain them […]

The post RBI Mandates ‘1600’ Series for Bank Calls, ‘140’ for Marketing to Combat Fraud appeared first on The Tech Outlook.

]]>
RBI issues a new alert for websites

Scams! Yes, they are increasing day by day and giving all of us a hard time. Whether you are from any part of the world, you may have heard or even witnessed scam calls. However, recently scams have been rampant in India, where people have been getting digitally arrested by scammers who then drain them of their savings. And sometimes they call you and say they are from your bank.

There have been several steps taken even by TRAI in India to stop these scams. But now even the Reserve Bank of India has come forward with a new direction for Indian banks to start using the 1600 number series for calling customers and the 140 series for marketing calls and SMS. This means that if your bank will try to reach you, the number should begin with 1600 or 140. And not just banks, but all regulated entities, NBFCs, and payment aggregators will also be under this new direction.

Additionally, they will need to register their customer service numbers on DoT’s Sanchar Saathi portal, making it easier for customers to verify legitimate business numbers. Second, they must join TRAI’s Distributed Ledger Technology (DLT) platform, where they can only use approved templates for SMS and calls. Furthermore, banks and other financial institutions must get clear digital consent from customers before sending any promotional messages. These measures are designed to eliminate unauthorized telemarketers and create a system where all commercial communications can be traced.

The post RBI Mandates ‘1600’ Series for Bank Calls, ‘140’ for Marketing to Combat Fraud appeared first on The Tech Outlook.

]]>
https://www.thetechoutlook.com/news/security/rbi-mandates-1600-series-for-bank-calls-140-for-marketing-to-combat-fraud/feed/ 0
Users Can Now Report Call/SMS With Tampered Indian Numbers Using Sanchar Saathi Mobile App https://www.thetechoutlook.com/news/security/users-can-now-report-call-sms-with-tampered-indian-numbers-using-sanchar-saathi-mobile-app/ https://www.thetechoutlook.com/news/security/users-can-now-report-call-sms-with-tampered-indian-numbers-using-sanchar-saathi-mobile-app/#respond Fri, 17 Jan 2025 09:47:14 +0000 https://www.thetechoutlook.com/?p=211827

Today in a program organized by the Department of Telecommunications, Union Minister and North-East Development Minister Jyotiraditya Scindia has officially launched the Sanchar Saathi mobile app, with the help of this app, users will now be able to complain about cyber fraud or fake calls from their mobile itself. Earlier a Sanchar Saathi portal was […]

The post Users Can Now Report Call/SMS With Tampered Indian Numbers Using Sanchar Saathi Mobile App appeared first on The Tech Outlook.

]]>

Today in a program organized by the Department of Telecommunications, Union Minister and North-East Development Minister Jyotiraditya Scindia has officially launched the Sanchar Saathi mobile app, with the help of this app, users will now be able to complain about cyber fraud or fake calls from their mobile itself.

Earlier a Sanchar Saathi portal was available to complain about fraud calls and messages and now a new mobile app is launched for the same. To download the app you can either scan the QR code on the Sanchar Saathi website or you can download the app directly via Play Store or App Store.

After the launch of this app, BSNL shared how users can now report Call/SMS through Call/SMS logs with the help of this app.

Report Call/SMS

Step 1- Enable Extension

To enable extension in your mobile setting, follow the process below-

  • Go to your Settings
  • Select Phone
  • Select SMS/Call Reporting
  • Select Sanchar Saathi and click Enable

Step 2- Reporting Call/ SMS

For reporting calls

Go to your phone app, right-swipe on a number you want to report, and tap the report icon to report a call

For reporting messages

Go to your Message app, select the message you want to report, and tap Report Message at the bottom ofthe  message content.

The post Users Can Now Report Call/SMS With Tampered Indian Numbers Using Sanchar Saathi Mobile App appeared first on The Tech Outlook.

]]>
https://www.thetechoutlook.com/news/security/users-can-now-report-call-sms-with-tampered-indian-numbers-using-sanchar-saathi-mobile-app/feed/ 0
Knox Suite Now Available In Three Scalable Plans For Enterprises Of All Sizes And Industries https://www.thetechoutlook.com/news/security/knox-suite-now-available-in-three-scalable-plans-for-enterprises-of-all-sizes-and-industries/ https://www.thetechoutlook.com/news/security/knox-suite-now-available-in-three-scalable-plans-for-enterprises-of-all-sizes-and-industries/#respond Fri, 17 Jan 2025 06:26:16 +0000 https://www.thetechoutlook.com/?p=211743

Samsung’s Knox is a defense-grade enterprise mobile security platform built into Samsun devices, protecting users’ data from advanced security threats. Samsung also provides Knox Suite- an all-in-one solution package to manage and secure enterprise devices. Previously, Knox Suite was only available as a comprehensive package, but now, as per the latest announcement by the brand, […]

The post Knox Suite Now Available In Three Scalable Plans For Enterprises Of All Sizes And Industries appeared first on The Tech Outlook.

]]>

Samsung’s Knox is a defense-grade enterprise mobile security platform built into Samsun devices, protecting users’ data from advanced security threats. Samsung also provides Knox Suite- an all-in-one solution package to manage and secure enterprise devices.

Previously, Knox Suite was only available as a comprehensive package, but now, as per the latest announcement by the brand, a few updates have been introduced for Knox Suite.

Knox Suite will now offer flexible plans- Base, Essentials, and Enterprise. These plans cater to the device security and device management needs of businesses of all sizes, from small startups to large enterprises managing thousands of devices.

Jerry Park, EVP and Head of B2B Team, Mobile Experience Business at Samsung Electronics said, “Enterprises of varying sizes and industries have diverse device management needs, but ultimately are looking toward the same end goal – enabling secure, productive mobile workspaces. That’s why we’re introducing flexible options within Knox Suite, designed to provide businesses with the tailored tools they need. Through these new scalable solutions, Knox Suite is now optimized for all types of operational use cases, empowering businesses to comprehensively and intelligently manage enterprise ecosystems.”

Knox Suite In Three Scalable Plans

  • Knox Suite — Base Plan: Included with Samsung Galaxy device purchases at no additional cost, the Knox Suite Base Plan is ideal for businesses seeking a simple and secure set-up of managed business devices. IT administrators can add Samsung devices to their Enterprise Mobility Management (EMM) solutions without the hassle of manual enrollment, and ensure devices and data are protected with government-grade security.2 The Base Plan includes access to Knox Mobile Enrollment (KME) and Knox Platform for Enterprise (KPE), with no additional license key requirement for use.
  • Knox Suite — Essentials Plan: For those looking for more than just device setup, the Knox Suite Essentials Plan transforms mobile devices into powerful and efficient assets. In addition to solutions found in the Base Plan, the Essentials Plan also features Knox Manage and Knox Remote Support services designed to enable unified, cross-platform device management plus real-time troubleshooting support.
  • Knox Suite — Enterprise Plan: As the most comprehensive Knox Suite package, the Enterprise Plan helps organizations get the most out of extensive device fleets through granular OS version control, intelligent insights, and tailored features designed for the frontline. From large-scale enterprises to mid-market companies with dedicated IT support teams, this plan is the best fit for those looking to fully optimize digital workspace experiences and improve productivity for frontline workers. In addition to solutions found in the Essentials Plan, the Enterprise Plan includes Knox E-FOTA, Knox Asset Intelligence, Knox Capture and Knox Authentication Manager.

For businesses investing in Galaxy Enterprise Edition, a comprehensive package of business-ready mobile devices and services, it now includes a one-year Knox Suite — Enterprise Plan license at no additional cost, providing even greater value. Also for businesses already using other EMM solutions, Knox Suite can be integrated seamlessly into existing operations to provide deeper insights and enhanced control over Samsung Galaxy devices, allowing IT teams to optimize device performance without disrupting existing workflows.

The post Knox Suite Now Available In Three Scalable Plans For Enterprises Of All Sizes And Industries appeared first on The Tech Outlook.

]]>
https://www.thetechoutlook.com/news/security/knox-suite-now-available-in-three-scalable-plans-for-enterprises-of-all-sizes-and-industries/feed/ 0
Oppo And Realme Apologies For Pre-Installing Fineasy Loan App Without User Consent; Investigation Already Started In Thailand Regarding The Pre-Installation Of Loan Apps https://www.thetechoutlook.com/news/security/oppo-and-realme-apologies-for-pre-installing-fineasy-loan-app-without-user-consent-investigation-already-started-in-thailand-regarding-the-pre-installation-of-loan-apps/ https://www.thetechoutlook.com/news/security/oppo-and-realme-apologies-for-pre-installing-fineasy-loan-app-without-user-consent-investigation-already-started-in-thailand-regarding-the-pre-installation-of-loan-apps/#respond Wed, 15 Jan 2025 06:55:09 +0000 https://www.thetechoutlook.com/?p=211515

Recently various Oppo and Realme users in Thailand found an irremovable loan app, Fineasy pre-installed on their devices that can send notifications and access user’s personal data, including their contact lists and phone numbers. This raised a concern of security among the users who then started complaining about this issue on social media. This matter […]

The post Oppo And Realme Apologies For Pre-Installing Fineasy Loan App Without User Consent; Investigation Already Started In Thailand Regarding The Pre-Installation Of Loan Apps appeared first on The Tech Outlook.

]]>

Recently various Oppo and Realme users in Thailand found an irremovable loan app, Fineasy pre-installed on their devices that can send notifications and access user’s personal data, including their contact lists and phone numbers. This raised a concern of security among the users who then started complaining about this issue on social media.

This matter was taken into consideration by the Thailand Consumers Council which stated this pre-installing of the app without users’ consent is a violation of consumer rights, as the users could neither prevent access to personal information nor uninstall the app. The council is calling on government agencies including, the Ministry of Digital Economy and Society, the Office of the Personal Data Protection Committee, the National Broadcasting and Telecommunications Commission, the Office of the Consumer Protection Board, and the Bank of Thailand to investigate the issue promptly to protect consumers from potential online financial fraud.

Soon after the investigation started, both Oppo and Realme smartphone brands officially issued a statement apologising to the users for the inconvenience caused. The brands mentioned that they have been cooperating and working closely with the National Broadcasting and Telecommunications Commission and other relevant agencies to resolve the issue.

The brands will also be taking the following measures-

  • On January 13, 2025, the Fineasy app issued an in-app announcement to suspend the service
  • From January 14, 2025 new phones that have not yet fixed the Fineasy app installation issue will no longer be sold
  • From January 16, 2025 smartphone users will receive OTA updates, which are new system versions that no longer require the installation of the app
  • From January 14, the pre-installing of third-party loan apps on Oppo and Realme devices will be stopped

It is said that if violations are found in the investigation, both companies could face fines of up to 3 million baht and other penalties. As per the current update, PM’s office Minister Jiraporn Sindhuprai has revealed that representatives from Oppo and Realme have been summoned to explain the installation of the loan app. Meanwhile, victims are also encouraged to file complaints and the phone distributors must clarify the issue.

On data leak to China, Jiraporn said the CPB will collect information from affected consumers and may need international cooperation.

Can Realme and Oppo be blacklisted in Thailand?

Digital Economy And Society Ministry, Minister Prasert Chanthararuangthong said that relevant laws need to be looked at first as there are no clear regulations for installing software and applications on mobile phones. The scope of the investigation will be dependent on legal factors.

Apart from these agencies, the Cyber Crime Investigation Bureau also launched an investigation into this matter and found that the loan apps were part of ColorOS which is developed by phone manufacturers. In the latest Android 15 version the apps Fineasy and Happiness Loan were found pre-installed without user consent. Authorities are now determining if this violates Section 13 of the Computer Crime Act, which prohibits distributing software specifically designed as a tool for committing crimes. Violators face up to one year in prison, a fine of up to 20,000 baht, or both.

Amid this ongoing investigation, Oppo has also postponed the launch of its Reno 13 5G series that was scheduled for yesterday in Thailand while the Thai distributor, Possfey grou,p and Chinese manufacturer are being investigated for possible violations whereas Realme and its Thai distributors are also under investigation for the same issue.

Via 1, 2,3

The post Oppo And Realme Apologies For Pre-Installing Fineasy Loan App Without User Consent; Investigation Already Started In Thailand Regarding The Pre-Installation Of Loan Apps appeared first on The Tech Outlook.

]]>
https://www.thetechoutlook.com/news/security/oppo-and-realme-apologies-for-pre-installing-fineasy-loan-app-without-user-consent-investigation-already-started-in-thailand-regarding-the-pre-installation-of-loan-apps/feed/ 0
Fake Video of Mukesh Ambani and Narendra Modi Now Running as Ad on Facebook: ‘Financial Project for Indian Citizens’ is a SCAM https://www.thetechoutlook.com/news/security/fake-video-of-mukesh-ambani-and-narendra-modi-now-running-as-ad-on-facebook-financial-project-for-indian-citizens-is-a-scam/ Mon, 06 Jan 2025 09:54:34 +0000 https://www.thetechoutlook.com/?p=210571 Fake Video of Mukesh Ambani and Narendra Modi Running as Ad on Facebook; 'Financial Project for Indian Citizens' is a SCAM

Scammers are always on the loose with different scams and now, a new scam is here targeting Indian citizens. On the Facebook platform, a fake video of Mukesh Ambani and Narendra Modi is currently running as an ad, inviting Indians to participate in a ‘financial project’ – SCAM. Know more about it in detail below. […]

The post Fake Video of Mukesh Ambani and Narendra Modi Now Running as Ad on Facebook: ‘Financial Project for Indian Citizens’ is a SCAM appeared first on The Tech Outlook.

]]>
Fake Video of Mukesh Ambani and Narendra Modi Running as Ad on Facebook; 'Financial Project for Indian Citizens' is a SCAM

Scammers are always on the loose with different scams and now, a new scam is here targeting Indian citizens. On the Facebook platform, a fake video of Mukesh Ambani and Narendra Modi is currently running as an ad, inviting Indians to participate in a ‘financial project’ – SCAM.

Know more about it in detail below.

Beware of the Financial Project Scam Being Discussed in Mukesh Ambani x Narendra Modi Fake Video

At least some of you might have already come across this ‘FAKE’ Facebook ad video with Mukesh Ambani speaking about how his financial project has been blocked unlawfully and deliberately by the ‘Indian Intelligence Services’ and Narendra Modi further assuring that the platform is legal and would be made open to more users and that it was blocked by mistake. It has been claimed in the video that Indians with just an initial investment of just INR 22,000 can earn up to INR 3,000,000 a month, and already many are earning. This is just another but serious scam being run on Facebook by a user with ID name – ‘Lily King’ from Vietnam.

Below given are the screenshots of the scam website, featuring Mukesh Ambani, Narendra Modi, and even Gautam Adani, as well as a fake article put on a leading Indian newspaper (not really published), along with people who have supposedly earned through the project, in attempts to bring authenticity to it. But beware Indians – THIS IS A SCAM!

Receive a passive income of ₹4,000,000 per month with an investment of just ₹22, (2)_page-0001 Receive a passive income of ₹4,000,000 per month with an investment of just ₹22, (2)_page-0002 Receive a passive income of ₹4,000,000 per month with an investment of just ₹22, (2)_page-0003 Receive a passive income of ₹4,000,000 per month with an investment of just ₹22, (2)_page-0004 Receive a passive income of ₹4,000,000 per month with an investment of just ₹22, (2)_page-0005

Do keep a watch on such scams and think twice before you give someone your hard earned money to receive some easy money which you will never get. Pass on the news to your friends and family and stay alert.

The post Fake Video of Mukesh Ambani and Narendra Modi Now Running as Ad on Facebook: ‘Financial Project for Indian Citizens’ is a SCAM appeared first on The Tech Outlook.

]]>
Cloudflare’s 1.1.1.1 Among Multiple VPN Apps Pulled from Indian App Stores https://www.thetechoutlook.com/news/apps/cloudflares-1-1-1-1-among-multiple-vpn-apps-pulled-from-indian-app-stores/ Sun, 05 Jan 2025 14:52:46 +0000 https://www.thetechoutlook.com/?p=210507 Cloudflare 1.1.1.1

Indian authorities have ordered the removal of several prominent Virtual Private Network (VPN) applications, including Cloudflare’s popular 1.1.1.1 app, from both Apple’s App Store and Google Play Store in India. This marks the first major enforcement action under India’s 2022 VPN regulations. The Indian Ministry of Home Affairs issued removal orders through its Cyber Crime […]

The post Cloudflare’s 1.1.1.1 Among Multiple VPN Apps Pulled from Indian App Stores appeared first on The Tech Outlook.

]]>
Cloudflare 1.1.1.1

Indian authorities have ordered the removal of several prominent Virtual Private Network (VPN) applications, including Cloudflare’s popular 1.1.1.1 app, from both Apple’s App Store and Google Play Store in India. This marks the first major enforcement action under India’s 2022 VPN regulations.

The Indian Ministry of Home Affairs issued removal orders through its Cyber Crime Coordination Centre, affecting more than half a dozen VPN services. Other apps impacted by the takedown include Hide.me and PrivadoVPN, according to documents reviewed by TechCrunch.

This enforcement follows India’s 2022 regulatory framework, which requires VPN providers and cloud service operators to maintain extensive customer records. The regulations mandate the collection and storage of user data, including names, addresses, IP addresses, and transaction histories, for five years.

The new requirements have faced major resistance from industry leaders. Major VPN providers, including NordVPN, ExpressVPN, Surfshark, and Proton VPN, previously expressed concerns about the regulations. Several companies responded by removing their server infrastructure from India, though some continue to serve Indian customers while ceasing local marketing efforts.

Neither the Ministry of Electronics and Information Technology nor the affected technology companies – Apple, Google, and Cloudflare – have provided public comment on the removal orders.

The post Cloudflare’s 1.1.1.1 Among Multiple VPN Apps Pulled from Indian App Stores appeared first on The Tech Outlook.

]]>
US May Ban TP-Link Routers Next Year Due To Cybersecurity; New Mirai Botnet Exploits NVRs, TP-Link Routers https://www.thetechoutlook.com/news/security/us-may-ban-tp-link-routers-next-year-due-to-cybersecurity-new-mirai-botnet-exploits-nvrs-tp-link-routers/ Thu, 26 Dec 2024 07:30:27 +0000 https://www.thetechoutlook.com/?p=209506

TP-Link routers have been quite dominant in the US market lately. Seems like the dominance could soon get over as reportedly TP-Link routers could be facing a ban in US next year. Want to know the reason behind it, let’s dive in. TP-Link Routers Could Be Banned Next Year In US TP-Link is said to […]

The post US May Ban TP-Link Routers Next Year Due To Cybersecurity; New Mirai Botnet Exploits NVRs, TP-Link Routers appeared first on The Tech Outlook.

]]>

TP-Link routers have been quite dominant in the US market lately. Seems like the dominance could soon get over as reportedly TP-Link routers could be facing a ban in US next year. Want to know the reason behind it, let’s dive in.

TP-Link Routers Could Be Banned Next Year In US

TP-Link is said to be currently under investigation by a trio of US government agencies including the Departments of Commerce, Defense, and Justice due to security concerns and potential ties to Chinese cyberattacks. These departments might consider putting a ban on TP-Link routers in the US next year.

Previously there have been high-profile cyberattacks involving TP-Link routers, especially the one where Microsoft released details on a password-spraying attack that involved TP-Link routers. It is said that the company allegedly ships the routers with security vulnerabilities and the company is resistant to address these flaws while some reports suggest that the potential ban is more about the company’s ties to China than specific security issues. While the news of this ban spread like wildfire, a TP-Link representative told CNET, “TP-Link has a secure, vertically integrated and US-owned international supply chain. Nearly all products sold in the United States are manufactured in Vietnam.”

Several cybersecurity experts believe that it is likely that intelligence agencies have found something with TP-Link routers that warrants a ban. TP-Link routers do come with a flaw but so do the other routers, so a vulnerability issue might not be the only reason.

Well if the US government decides to put a ban on TP-Link routers then this will be a massive loss to the company as they make up about 65% of the US market.

In another report by Bleeping Computer, it is revealed that a new Mirai-based botnet is actively exploiting vulnerabilities in NVRs, and TP-Link Routers.

New Botnet Exploiting NVRs, TP-Link Routers

As per the report, this botnet is actively exploiting a remote code execution vulnerability that has not received a tracker number and appears to be unpatched in DigiEver DS-2015 Pro NVRs. The campaign is said to have started in October and targets multiple network video recorders and TP-Link routers with outdated firmware.

According to Akamai researchers, the botnet started to exploit the flaw in mid-November but the campaign has been active since September. This new Mirai malware variant targets CVE-2023-1389 on TP-Link devices and CVE-2018-17532 on Teltonika RUT9XX routers. Further, the researchers revealed thatthe  Mirai variant is notable for its use of XOR and ChaCha20 encryption and its targeting of a broad range of system architectures, including x86, ARM, and MIPS.

It is revealed that through command injection, the attackers fetch malware binary from an external server and enlist the device into its botnet. Persistence is achieved by adding cron jobs. Once the device is compromised, it is then used to conduct distributed denial of service attacks or to spread to other devices by leveraging exploit sets and credential lists.

The post US May Ban TP-Link Routers Next Year Due To Cybersecurity; New Mirai Botnet Exploits NVRs, TP-Link Routers appeared first on The Tech Outlook.

]]>
Skoda Superb III Vulnerabilities Exposed as Cybersecurity Flaws in Infotainment System Impact 1.4 Million Vehicles https://www.thetechoutlook.com/current-affairs/auto/skoda-superb-iii-vulnerabilities-exposed-as-cybersecurity-flaws-in-infotainment-system-impact-1-4-million-vehicles/ Thu, 12 Dec 2024 13:19:10 +0000 https://www.thetechoutlook.com/?p=208208

In recent years, car makers have introduced various security features so that users can enjoy their ride also without worrying about their safety and security vulnerabilities as modern cars nowadays connected with electronic devices process large quantities of data which makes it important to protect cars in this regard. Among other automakers, Skoda has been […]

The post Skoda Superb III Vulnerabilities Exposed as Cybersecurity Flaws in Infotainment System Impact 1.4 Million Vehicles appeared first on The Tech Outlook.

]]>

In recent years, car makers have introduced various security features so that users can enjoy their ride also without worrying about their safety and security vulnerabilities as modern cars nowadays connected with electronic devices process large quantities of data which makes it important to protect cars in this regard. Among other automakers, Skoda has been taking cybersecurity seriously for its cars but a recent report by TechCrunch reveals that a particular Skoda model may have some vulnerabilities.

As per the report, PCAutomotive a cybersecurity firm, unveiled 12 new security vulnerabilities that impact the latest model of the Skoda Superb III sedan. Earlier also the organization disclosed 9 other vulnerabilities affecting the same model. It is said that the vulnerabilities could be chained together and exploited by hackers to inject malware into the vehicle. An attacker would need to connect the Skoda model media unit via Bluetooth to exploit the flaws and Danila Parnishchev, head of security assessment at PCAutomotive noted that “the attack can be performed within 10 meters without authentication.”

The vehicle’s MIB3 infotainment unit could allow attackers to achieve unrestricted code execution and run malicious code every time the unit starts. This may allow the hacker to obtain live GPS coordinates and speed data, record conversations via an in-car microphone, take screenshots of the infotainment display, and play arbitrary sounds in the car. Not only this the phone contact database can also be hacked if a vehicle owner has enabled contact synchronization with their car.

The research shared by PCAutomotive mentioned that the vulnerable MIB3 units are used in multiple Volkswagen and Skoda models, and based on public sales data, estimates there are potentially more than 1.4 million vulnerable vehicles out there. Though PCAutomotive said Volkswagen patched the vulnerabilities after they were reported through the company’s cybersecurity disclosure program.

Meanwhile, Skoda spokesperson Tom Drechsler sent an email to TechCrunch that mentioned, “The reported vulnerabilities in the infotainment system have been and are being addressed and eliminated through continuous improvement management via the lifecycle of our products. At no time was and is there any danger to the safety of our customers or our vehicles.”

The post Skoda Superb III Vulnerabilities Exposed as Cybersecurity Flaws in Infotainment System Impact 1.4 Million Vehicles appeared first on The Tech Outlook.

]]>
Data Breach: Bitcoin ATM Operator, Byte Federal Reports 58,000 Users Personal Data Compromised https://www.thetechoutlook.com/news/security/data-breach-bitcoin-atm-operator-byte-federal-reports-58000-users-personal-data-compromised/ Thu, 12 Dec 2024 10:18:45 +0000 https://www.thetechoutlook.com/?p=208169

A prominent Bitcoin ATM operator in the US, Byte Federal has recently reported a data breach incident in which it was mentioned that the personal data of thousands of customers may have been compromised during a recent breach. In a filing with Maine’s attorney general, Byte Federal revealed that the breach occurred on 30th September […]

The post Data Breach: Bitcoin ATM Operator, Byte Federal Reports 58,000 Users Personal Data Compromised appeared first on The Tech Outlook.

]]>

A prominent Bitcoin ATM operator in the US, Byte Federal has recently reported a data breach incident in which it was mentioned that the personal data of thousands of customers may have been compromised during a recent breach.

In a filing with Maine’s attorney general, Byte Federal revealed that the breach occurred on 30th September and was discovered on 18th November. It is said that the hacker tried to access the data of 58,000 customers which includes 111 Maine residents.

In the Data Breach notice, Byte Federal mentioned that the customer’s personal information that was subject to the attempt at unauthorized access includes name, birthdate, address, phone number, email address, government-issued ID, social security number, transaction activity, and photographs of users.

The company is not sure whether the said data is compromised or not, hence they took some preventive measures like a hard reset on all customer accounts, notice of the incident was sent to the users and a press release was also issued. Byte Federal has updated its internal passwords, password management system, tokens, and keys forthe  network to prevent any further unauthorized access. It is clarified that no user funds or assets were compromised. Users are also advised to reset their login credentials for access to Byte Federal services.

The post Data Breach: Bitcoin ATM Operator, Byte Federal Reports 58,000 Users Personal Data Compromised appeared first on The Tech Outlook.

]]>