Tag: phone
-
A cheap fake base station can still track 5G subscribers
Researchers from the i2CAT Foundation, the University of Murcia, and NEC Laboratories Europe built a low-cost tool called 5G-Shark that lures a target phone onto a fake base … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/22/5g-subscriber-tracking-research/
-
Microsoft to Disable SMS as Primary Entra ID Sign-In Method in 2027
Microsoft will turn off SMS as a primary sign-in method for Microsoft Entra ID workforce tenants on February 1, 2027, accelerating its transition to phishing-resistant authentication. This change affects workers who currently use a registered phone number and a one-time SMS code as their initial sign-in credential, a passwordless flow utilized by frontline organizations. Microsoft…
-
Google says some Pixel phone owners were hacked in zero-day attacks
The Pixel phone maker said there are indications that a bug in the phone’s modem “may be under limited, targeted exploitation.” First seen on techcrunch.com Jump to article: techcrunch.com/2026/09/16/google-says-some-pixel-phone-owners-were-hacked-in-zero-day-attacks/
-
Hundreds of fake government websites target users in Central Asia
The sites are designed to collect victims’ contact details, which scammers then use to target them through phone or email to steal money, personal information or gain access to their devices. First seen on therecord.media Jump to article: therecord.media/hundreds-of-fake-gov-websites-central-asia-scam
-
Mantax Otax Targets Android Phones With Spyware and Ransomware
Mantax Otax Android malware steals messages, PINs, and files, monitors screens, and uses ransomware and harassment to pressure victims into paying. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/cybersecurity/news-mantax-otax-android-malware-apac-indonesia/
-
WhatsApp Restricted Chat locks a conversation to your primary phone
WhatsApp is building a per-chat setting that keeps a conversation on a single phone. The setting, called Restricted Chat, sits in the Android beta distributed through Google … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/14/whatsapp-restricted-chat-feature/
-
‘Cheap iPhone deal’: warning over scam sites selling latest Apple mobiles
Criminals exploit demand for iPhone 18 Pro and foldable Duo to trick people eager to get their hands on oneApple has just launched a range of new iPhones, including a foldable handset, just as you decide it is time to replace your own ageing mobile. But you balk at the £1,199 price tag for the…
-
Getting a stranger’s phone kicked off the cellular network costs a few dollars
Researchers at Michigan State University and three partner schools bought a Samsung Galaxy Z Fold 7, copied the identification number printed on the sealed box, and reported … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/11/cellular-network-lost-phone-reporting/
-
Gigabud Creates Android Work Profiles to Hide From Banking App Malware Checks
The Gigabud banking trojan now installs a second Android app that creates a work profile on an infected phone and drops a tampered banking app inside it, security firm Group-IB said in a report published on September 9.A work profile is a separate space that Android typically reserves for employer apps, and what’s inside it…
-
Smashing Security podcast #484: How websites are tracking you with silence
When a chap called Matt noticed his Bluetooth headphones wouldn’t switch to his phone, he was surprised to realise the reason was a single AliExpress webpage sitting open in his browser – playing nothing at all, at zero volume. And yet somehow his hardware could hear it. Audio fingerprinting is one of the sneakiest tracking…
-
Government to force tech companies to verify age of users to protect children
Phone and tablet users will be required to verify their ages with credit card or official ID under government plans to prevent under-18s viewing nude images. First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366649187/Government-to-force-tech-companies-to-verify-age-of-users-to-protect-children
-
Using AI, Calif Creates Demo WeChat Exploit that Spreads Through Phone Calls
Researchers with Calif used AI to detect a security flaw in the WeChat app and then create a demo worm exploit that can be spread quickly through mobile phones. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/using-ai-calif-creates-demo-wechat-exploit-that-spreads-through-phone-calls/
-
WeChat Zero-Click Worm Took Over Accounts on iPhone and Android via Incoming Calls
Researchers at the security firm Calif have built a worm that takes over a WeChat account via an incoming call and demonstrated it spreading among three test phones.The person being called does not have to answer or touch their phone for it to work, but the caller must already be one of their WeChat contacts.…
-
Trezor customers hit with phishing calls and letters after shipping-partner breach
Roughly 67,000 more customers of SatoshiLabs, the maker of hardware crypto-wallet Trezor, are at heightened risk of phishing attacks after their names, email addresses, phone … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/08/trezor-shipping-partner-breach-phishing-attacks/
-
IT Help Desk Impersonation Lets Hackers Bypass MFA
Attackers bypass endpoint security by posing as IT staff, stealing Microsoft 365 sessions, draining SaaS data and demanding extortion. Forget installing malware because today’s extortionists just pick up the phone instead of writing code. A widespread threat cluster tracked as PREY-0058 bypasses endpoint security entirely by targeting Microsoft 365 and SaaS environments through pure social…
-
Trezor Says ShipMonk Breach Exposed 67,000 U.S. Customers’ Data It Said Was Deleted
Hardware wallet manufacturer Trezor on Friday disclosed that another 67,000 customers from the U.S. have been impacted in a breach at its shipping provider ShipMonk.The exposed information includes customer names, email addresses, phone numbers, shipping addresses, and order numbers between November 2019 and August 2021. The breach does not affect the security of the company’s…
-
Crooks Behind Manchester Airports Group Hack Leaked Data of 8.8 Million People
Manchester Airports Group (MAG) data allegedly leaked by FulcrumSec exposes emails and phone numbers of 8.8 million people. Manchester Airports Group, which operates Manchester, London Stansted and East Midlands airports, has confirmed a data breach involving customer information held in a third-party database. The company says airport operations, passenger safety and aviation security were not…
-
FCC proposes public scorecard to rate telecoms on anti-robocall efforts
The agency also booted 14 phone service providers from U.S. networks for violating existing robocalling regulations. First seen on cyberscoop.com Jump to article: cyberscoop.com/the-fcc-wants-consumers-to-rate-their-telecoms-anti-robocall-protections/
-
The FCC wants consumers to rate their telecom’s anti-robocall protections
The agency also booted 14 phone service providers from U.S. networks for violating existing robocalling regulations. First seen on cyberscoop.com Jump to article: cyberscoop.com/the-fcc-wants-consumers-to-rate-their-telecoms-anti-robocall-protections/
-
Revolut scam wave steals £180,000 from Jersey residents in just four weeks
If you live in Jersey and bank with Revolut, you should be on your guard against scam phone calls. First seen on bitdefender.com Jump to article: www.bitdefender.com/en-us/blog/hotforsecurity/revolut-scam-jersey
-
Stage 3, Contact: How the Attack Reaches a Person and Crosses the Perimeter
Somewhere in your organization today, an attack crossed the perimeter, and there is a good chance it did not come through email. It came as a text to a personal phone, a LinkedIn message, a WhatsApp note, or a call… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/stage-3-contact-how-the-attack-reaches-a-person-and-crosses-the-perimeter/
-
TDL 029 – Decoupling Digital Identity: Beyond Carrier-Level Defense – Mark Kreitzman
Why Your Phone Number Is the Ultimate Cyber Target”, and How to Secure It In a recent episode of The Defender’s Log, host David Redekop sat down with Mark Kreitzman, General Manager at Efani and a 25-year cybersecurity veteran, to discuss… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/tdl-029-decoupling-digital-identity-beyond-carrier-level-defense-mark-kreitzman/
-
Indeed Job Scam: Fake Recruiters Are Spreading Android Spyware
Scammers are using fake Indeed interview apps to infect Android phones with spyware. Learn how the attack works and how job seekers can avoid it. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/threats/news-indeed-fake-interview-app-android-malware/
-
Fake Apple Pay charge brings the classic tech support scam to your phone
Built for mobile users, this tech support scam uses a fake Apple Pay alert and browser tricks to pressure victims into calling a scam number. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/fake-apple-pay-charge-brings-the-classic-tech-support-scam-to-your-phone/
-
Three UK airports hit by cyber-attack with data of 8.7m customers accessed
Company that runs Manchester, Stansted and East Midlands hubs says passenger safety is unaffected<ul><li><a href=”https://www.theguardian.com/business/live/2026/aug/27/asian-technology-shares-ride-high-ai-optimism-nvidias-stunning-results-jackson-hole-live-updates”>Business live latest updates</li></ul>Manchester, London Stansted and East Midlands airports have been hit by a cyber-attack, with hackers accessing the data of about 8.7 million customers.Hackers obtained their email addresses, phone numbers, vehicle registration numbers and postcodes, as the incident affected…
-
MyChart Portal Phishing Scams Target Patients Nationwide
Dozens of Health Systems Warn of Emails, Texts and Calls Using Epic’s MyChart Brand. Dozens of U.S. healthcare systems are warning patients about potential email phishing, text and phone scams involving their MyChart patient portals. MyChart vendor Epic also issued a public warning about the scams, which offer patients a senior package, Medicare wellness benefits…
-
Can You Hear Me Now? Show Me Your Papers
The FCC’s proposed phone-service KYC rules could reduce fraud but also turn mobile numbers into identity-linked credentials with major privacy implications. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/can-you-hear-me-now-show-me-your-papers/
-
GTA 6 leak hunt could expose data belonging to thousands of Discord users
Take-Two is demanding IP addresses, phone numbers, device IDs, and other data as it tries to identify whoever leaked GTA 6 footage. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/gta-6-leak-hunt-could-expose-data-belonging-to-thousands-of-discord-users/
-
ToxicPanda 2.0 can take over your Android phone and banking apps
A new version of the Android banking Trojan can seize control of infected phones and block access to Google Play and Google Play Services. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/toxicpanda-2-0-can-take-over-your-android-phone-and-banking-apps/

