Tag: mobile
-
Fake Apple Pay charge brings the classic tech support scam to your phone
Built for mobile users, this tech support scam uses a fake Apple Pay alert and browser tricks to pressure victims into calling a scam number. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/fake-apple-pay-charge-brings-the-classic-tech-support-scam-to-your-phone/
-
KI-Governance auf mobilen Endgeräten: Die alten Regeln gelten nicht mehr
KI-Funktionen wandern zunehmend vom Chatfenster in Apps, Agenten und mobile Endgeräte. Für Unternehmen bedeutet das: Klassische KI-Governance greift zu kurz, wenn sie mobile Nutzung, App-Updates, Netzwerkwechsel und rollenbasierte Risiken nicht gezielt berücksichtigt. Management Summary Klassische KI-Governance reicht für mobile Endgeräte nicht mehr aus: KI steckt heute zunehmend in nativen Apps, Updates und Agenten statt nur……
-
Fake recruiter scams target corporate credentials on mobile devices
First seen on scworld.com Jump to article: www.scworld.com/brief/fake-recruiter-scams-target-corporate-credentials-on-mobile-devices
-
Mobile banking trojans expand capabilities; 66% now allow full device takeover
First seen on scworld.com Jump to article: www.scworld.com/news/mobile-banking-trojans-expand-capabilites-66-now-allow-full-device-takeover
-
Mobile banking trojans expand capabilities; 66% now allow full device takeover
First seen on scworld.com Jump to article: www.scworld.com/news/mobile-banking-trojans-expand-capabilites-66-now-allow-full-device-takeover
-
Bogus recruiters go after high-value corporate credentials on mobile
Scammers posing as HR staff at well-known companies are running interview scheduling scams that end with a stolen corporate password, according to Zimperium. Attackers are … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/08/26/recruitment-scam-corporate-passwords-mobile/
-
Fake Recruiter Scams Target Corporate Credentials on Mobile
RecruitTrap campaigns use mobile-optimized phishing pages to target enterprise credentials First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/fake-recruiter-scams-corporate/
-
Can You Hear Me Now? Show Me Your Papers
The FCC’s proposed phone-service KYC rules could reduce fraud but also turn mobile numbers into identity-linked credentials with major privacy implications. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/can-you-hear-me-now-show-me-your-papers/
-
Cybersecurity Newsletter Bulletin Top 50 Biggest Cybersecurity Stories of the Week Shell Azure Mega-Breaches, Salt Typhoon Evicted, Entra ID RCE, Chinese vCenter ESXi Ransomware More
Tags: breach, china, cisa, credentials, cyber, cybersecurity, exploit, flaw, mobile, ransomware, rce, remote-code-execution, theft, vcenterWelcome to this week’s edition of the GBHackers cybersecurity newsletter, your weekly cybersecurity bulletin covering the 50 most important stories from August 1721, 2026. Breaches and exploited flaws dominated: Cl0p claimed 89GB from Shell, a mass Azure credential-theft campaign hit McDonald’s and Vodafone, and T-Mobile physically cut a cable to evict Salt Typhoon. CISA […]…
-
Kabel beim Cyberangriff durchtrennt: So schützte sich T-Mobile vor einer Spionageattacke
First seen on t3n.de Jump to article: t3n.de/news/kabel-cyberangriff-durchtrennt-t-mobile-1758997/
-
Enterprise Network Security Solution
A traditional corporate network may once have consisted primarily of office computers, servers, switches, routers, and a centralized data center. Today, organizations operate across cloud platforms, remote offices, SaaS applications, mobile devices, IoT systems, endpoints, APIs, data centers, and operational technology environments. Employees can access business resources from almost anywhere. Applications may be distributed across…
-
T-Mobile cybersecurity staff cut cable to expel Chinese hackers
First seen on scworld.com Jump to article: www.scworld.com/brief/t-mobile-cybersecurity-staff-cut-cable-to-expel-chinese-hackers
-
Manic: The Android Malware That Exfiltrates Data Even When the Phone Is Offline
Manic Android malware combines banking fraud and spyware, using a Bluetooth relay to steal data even when devices are offline. ThreatFabric’s Mobile Threat Intelligence team has identified a new Android malware, dubbed Manic, which has been active in the wild since at least February 2026. The researchers state that the malware is still under development…
-
T-Mobile Cuts Network Cable to Stop Salt Typhoon Hackers
T-Mobile physically cut a network cable to disrupt Salt Typhoon’s access. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/threats/t-mobile-cuts-network-cable-to-stop-salt-typhoon-hackers/
-
Manic Android Malware Exfiltrates Data From Offline Phones via Nearby Infected Devices
A new Android threat codenamed Manic has been observed actively targeting Ukrainian banks, government and identity services, and messaging applications, as well as Russian and European financial institutions, global fintech and cryptocurrency services, and military-focused communications.”Manic sits at the intersection of Android banking malware and mobile spyware, combining financial-fraud First seen on thehackernews.com Jump to…
-
Spionage aus China: T-Mobile US soll Cyberangriff mit Schere bekämpft haben
Chinesische Hacker hatten sich 2024 tief in die Infrastruktur von US-Providern eingenistet. T-Mobile hat für die Cyberabwehr wohl sogar ein Kabel durchgeschnitten. First seen on golem.de Jump to article: www.golem.de/news/spionage-aus-china-t-mobile-us-soll-cyberangriff-mit-schere-bekaempft-haben-2608-212119.html
-
T-Mobile Physically Cuts Network Cable to Evict Chinese Salt Typhoon Hackers
In 2024, T-Mobile’s security team took an unusually direct approach to contain a cybersecurity threat: they physically cut a network cable to terminate suspected access by the Chinese state-backed hackers known as Salt Typhoon. According to CSN, this action came after months of incident response efforts within T-Mobile’s network, during which defenders investigated signs of…
-
T-Mobile ‘chopped a cable’ to expel Chinese hackers from its network
The U.S. phone provider escaped a large-scale breach of its network after identifying Chinese-backed hackers early on. First seen on techcrunch.com Jump to article: techcrunch.com/2026/08/19/t-mobile-chopped-a-cable-to-expel-chinese-hackers-from-its-network/
-
Budget airlines, mobile phones, and AI
I was talking to some friends about how much more we travel now than we (our parents generation) did in the 1980s. I know there are a lot of factors that contribute towards the shift, but the main point we landed on was that budget airlines have overall enriched us, allowed us to become worldly……
-
BTMob Uses Custom Phishing Apps to Turn Android Users Into Remote-Controlled Fraud Victims
BTMOB has evolved beyond a conventional Android banking trojan into a turnkey fraud platform that lets criminals build branded phishing apps, remotely operate infected phones, and automate theft. Its emergence illustrates how leaked malware source code and low-code tooling are turning mobile fraud into a scalable franchise. The malicious lnat-tv-pro.apk sample connected to server[.]yaarsa[.]com/con over…
-
Android Banking Droppers Surge as Malware Operators Change Packaging Tactics
Android banking malware operators are increasingly relying on dropper-based packaging to evade mobile app-store controls, shifting how threats are classified and delivered rather than simply expanding their overall distribution. Kaspersky telemetry for the second quarter of 2026 recorded 1,996,823 blocked attacks involving malware, adware, and potentially unwanted mobile software, down from 2,676,328 in Q1. Yet…
-
Android Banking Droppers Surge as Malware Operators Change Packaging Tactics
Android banking malware operators are increasingly relying on dropper-based packaging to evade mobile app-store controls, shifting how threats are classified and delivered rather than simply expanding their overall distribution. Kaspersky telemetry for the second quarter of 2026 recorded 1,996,823 blocked attacks involving malware, adware, and potentially unwanted mobile software, down from 2,676,328 in Q1. Yet…
-
The Hidden Risks of Ignoring API Security During Mobile Application Security Testing
Mobile applications don’t operate in isolation. Behind every login screen, payment flow, and push notification sits a network of APIs quietly moving data between the app, the backend, and third-party services. Yet when organizations plan mobile application security testing, API security is often treated as an afterthought, something to “get to later” once the app’s……
-
Novel-reading apps used users’ phones to generate fake ad traffic
A new mobile ad fraud scheme, dubbed Papyrus, is using a cluster of novel-reading apps to generate hidden browser traffic, according to IAS Threat Lab. Sample novel-reading … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/08/06/papyrus-mobile-ad-fraud-scheme/
-
Over 4,400 Rockwell PLCs Exposed Online, 22 Found in Water Attack Cities
Forescout found 22 internet-facing Rockwell Automation programmable logic controllers (PLCs) in cities hit by recent cyberattacks on US water utilities. Nineteen used the same mobile carrier network.Its August 3 scan counted 4,407 exposed Rockwell controllers worldwide, including 2,844 in the United States, but Forescout could not confirm any were compromised. That figure counts exposed First…
-
Novee Brings Continuous AI Pentesting to Mobile Applications
Novee has expanded its AI penetration testing platform to mobile applications, extending continuous testing across mobile, web, APIs, desktop software and AI-enabled applications. The company announced the update ahead of Black Hat USA 2026. Novee said users can upload a mobile application package and receive results within hours, alongside findings from their other application assets……
-
Angola’s Largest Telco Breached Hours Before IPO
Unitel, Angola’s dominant mobile operator, continues to recover from a cyberattack that caused outages the day of the government-owned telco’s public offering. First seen on darkreading.com Jump to article: www.darkreading.com/cyberattacks-data-breaches/angolas-largest-telco-breached-hours-before-ipo
-
Zimperium Launches Deep Insights for Automated Mobile Forensics
Zimperium has announced Deep Insights, a mobile security product that combines real-time Mobile Threat Defense with automated mobile forensics. Deep Insights automates forensic analysis and reconstructs the sequence of events around a mobile incident. Zimperium said it correlates configuration changes, application activity, permission shifts and suspicious network traffic to build a step-by-step attack timeline. The..…
-
INC Ransomware is Calling Victims Pressure Tactics Post SonicWall Zero-Day Exploit
INC Ransomware exploits SonicWall SMA 1000 flaws, using calls and emails to pressure victims during extortion campaigns targeting global organizations. Resecurity disclosed that INC Ransomware has emerged as the dominant threat actor exploiting the recently disclosed SonicWall Secure Mobile Access (SMA) 1000 vulnerabilities. According to the company’s research, the group has accelerated its operations since…

