Tag: phone
-
Hackers Target Blackstone, CME and Other Wall Street Firms in Phone-Based Scam
Hackers targeted major financial firms with help-desk vishing and real-time MFA interception. Here’s how the campaign worked and how to respond. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/threats/news-unc6671-financial-firms-vishing-extortion/
-
UNC6671 Vishing Attacks Target Personal Phones to Steal SaaS Data
A recent wave of cyber attacks targeting financial services, private equity, and professional services is attributed to a data extortion group known as UNC6671.”UNC6671 continues to rely on voice phishing (vishing) to target enterprise employees, posing as IT help desk staff facilitating mandatory, urgent security migrations. Significantly, the threat actor often contacts employees via their…
-
Computer maker Framework notifies ‘all customers’ of a data breach
Framework told “all” of its customers that hackers accessed their names, email addresses, phone numbers, and physical addresses in a data breach. First seen on techcrunch.com Jump to article: techcrunch.com/2026/08/07/computer-maker-framework-notifies-all-customers-of-a-data-breach/
-
Novel-reading apps used users’ phones to generate fake ad traffic
A new mobile ad fraud scheme, dubbed Papyrus, is using a cluster of novel-reading apps to generate hidden browser traffic, according to IAS Threat Lab. Sample novel-reading … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/08/06/papyrus-mobile-ad-fraud-scheme/
-
Smashing Security podcast #479: How a fake police officer nearly stole Graham’s cryptocurrency
Graham gets a phone call from the police. Well, someone who sounds convincingly like the police. There’s just one small problem: what they really want is the 24-word seed key to Graham’s cryptocurrency wallet. First seen on grahamcluley.com Jump to article: grahamcluley.com/smashing-security-podcast-479-how-a-fake-police-officer-nearly-stole-grahams-cryptocurrency/
-
BlackCloak Expands Impersonation Protection to Executives’ Trusted Circles
BlackCloak is expanding its Impersonation Protection service with a “circle of trust” feature designed to help executives verify communications from the people closest to them. The company announced the capability ahead of Black Hat USA 2026 in Las Vegas. Impersonation Protection lets members authenticate phone calls, video meetings, emails, WhatsApp and Slack messages, texts, and..…
-
Is Securing Data A Crime? The Sam Tunick Case Tests the Limits of Digital Self-Defense
A federal prosecution involving a phone’s duress-wipe feature raises difficult questions about border searches, digital property and whether privacy protections can become obstruction. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/is-securing-data-a-crime-the-sam-tunick-case-tests-the-limits-of-digital-self-defense/
-
Cheap Android TV Boxes Pose as Phones and Turn Owners’ Broadband Into Proxies
Bitsight says some cheap Android TV boxes have shipped with apps that rewrite their hardware identity to mimic Samsung, Huawei, Xiaomi, or Vivo phones, then click ads on websites run by the same operators.Researchers named the operation Fuyao and attributed it to Zhejiang Fengwo IoT Technology Co., Ltd., a mainland China company founded in 2019.The…
-
Healthcare Disruption, Critical Software Flaws, and Exposed PLCs Show How Quickly Cyber Risk Becomes Business Risk
Tags: business, computer, cyber, cyberattack, data-breach, flaw, healthcare, Internet, phone, risk, softwareAnMed temporarily closed 79 of its 106 facilities after a cyberattack disrupted computer systems, phone lines, and internet connectivity. Appointments were postponed, elective procedures faced uncertainty, and the health system had to coordinate care while teams worked to restore access. For a healthcare provider, that kind of disruption reaches far beyond technology. It affects how……
-
Read This Before You Buy That TV Streaming Stick
Security experts have been sounding the alarm for years about the risks of using generic TV boxes that promise unlimited content streaming for a one-time fee, warning that they secretly rent the user’s Internet connection out to strangers. But a groundbreaking new analysis finds these devices also routinely spoof themselves as mobile phones clicking ads…
-
Police monitored phone data of BBC security editor Brian Rowan to identify confidential sources
Northern Ireland police monitored phone communications of former BBC security editor Brian Rowan after he wrote about a police and MI5 agent in Northern Ireland First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366646575/Police-monitored-phone-data-of-BBC-security-editor-Brian-Rowan-to-identify-confidential-sources
-
Inside police plans to share intelligence and crime data across the UK
Computer Weekly examines how UK police will use Palantir’s AI tools to dramatically increase intelligence sharing between forces, enabling investigators to analyse mobile phone data and sensitive information at scale First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366645965/Inside-police-plans-to-share-intelligence-and-crime-data-across-the-UK
-
Malware Attack Forces AnMed to Close Care Facilities
Nonprofit Health System in SC and Georgia Says Email, Phones and Portal Are Down. AnMed, a nonprofit healthcare system that serves upstate South Carolina and Northeast Georgia, has temporarily closed dozens of its medical offices and other care facilities as the organization responds to a weekend ransomware attack. Email, phones and patient portals are among…
-
Activist charged with felony after giving border agent duress code that wiped his phone
The government says destroying his own data during an airport interrogation was illegal. First seen on arstechnica.com Jump to article: arstechnica.com/gadgets/2026/07/activist-charged-with-felony-after-giving-border-agent-duress-code-that-wiped-his-phone/
-
Man charged for using phone’s ‘duress’ password to wipe data
First seen on scworld.com Jump to article: www.scworld.com/brief/man-charged-for-using-phones-duress-password-to-wipe-data
-
US accuses American of allegedly wiping his phone using a ‘duress’ password during border search
A U.S. citizen has asked a court to throw out the government’s claim that he gave over a passcode to border authorities that wiped his phone’s data, opening up fresh questions about a person’s constitutional rights at the U.S. border. First seen on techcrunch.com Jump to article: techcrunch.com/2026/07/24/us-accuses-american-of-allegedly-wiping-his-phone-using-a-duress-password-during-border-search/
-
Google Adds Selfie Video Recovery for Users Locked Out of Their Accounts
Google on Thursday announced a new way for users to sign-in to their accounts by letting them take a selfie video.The selfie for sign-in, per the tech giant, is another option on top of existing recovery methods to log in to an account, including an email address or a phone number. The idea is to…
-
AI music generator Suno breach affects 55M users, per Have I Been Pwned
A hacker took names, phone numbers, and physical addresses of millions of customers who used AI music generator Suno. First seen on techcrunch.com Jump to article: techcrunch.com/2026/07/21/ai-music-generator-suno-breach-affects-55m-users-per-have-i-been-pwned/
-
Open-Source Android AI Agents Could Let Invisible Screen Text Run Code on Host PCs
An Android app that can draw over other windows and write to shared storage can slip instructions to the AI agent driving that phone, in text no human eye will ever see. Two more steps, and the same app is running commands on the PC driving the agent.Researchers demonstrated that chain, plus six other attacks,…
-
Google’s Gemini lets strangers send messages from your locked Android phone
Gemini, Google’s AI assistant, is supposed to make life easier for Android smartphone owners. But right now it may also be making life easier for anyone anyone who happens to pick up your phone. First seen on bitdefender.com Jump to article: www.bitdefender.com/en-us/blog/hotforsecurity/googles-gemini-strangers-messages-locked-android-phone
-
New FCC Proposal Pits Phone Privacy Against Fraud Prevention
The FCC has proposed requiring identity verification for phone activation, a move supporters say will fight fraud while critics warn it threatens privacy. The post New FCC Proposal Pits Phone Privacy Against Fraud Prevention appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-fcc-phone-identity-verification-burner-phone-proposal/
-
Armenia Detains Russian Tourist on U.S. Warrant for REvil Hacker, Lawyers Say Wrong Man
Armenia has held a Russian tourist named Aleksandr Ermakov in a detention center since June 28, on a U.S. extradition request for a REvil ransomware suspect named Aleksandr Ermakov.His wife, Maria Yurova, told REN TV that border officers pulled him out of the departure hall at Yerevan’s Zvartnots airport, held up a phone with a…
-
Google adds FIDO2 keys and phone passkeys to Windows login via GCPW
Google has started rolling out FIDO2-compliant physical security key support as a second factor for authentication in Google Credential Provider for Windows (GCPW) to all … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/07/14/security-key-windows-login-google-workspace/
-
Fake Bank Apps Let Scammers Control Android Phones in Southeast Asia
RedHook malware uses fake banking and government apps to steal data and control Android phones, with attacks confirmed in Vietnam and Indonesia so far. The post Fake Bank Apps Let Scammers Control Android Phones in Southeast Asia appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-android-malware-apac-southeast-asia/
-
IonStack Exploit Chain Lets Hackers Root Android 17 Phones With a Single URL Click
Nebula Security has revealed a significant exploit chain known as “IonStack,” demonstrating how attackers could gain full root access on Android 17 devices with just a single click on a malicious URL. This raises serious concerns about browser-to-kernel attack surfaces in today’s mobile ecosystems. The disclosure highlights a complex, multi-stage exploitation technique that combines two…
-
Claude Cowork turns your phone into a remote control for AI work
Anthropic started rolling out Claude Cowork, an AI agent that completes multi-step tasks, in beta for Max users on mobile and the web. They describe a goal, and Claude plans … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/07/08/claude-cowork-phone-mobile-web/
-
RedWing MaaS Packages Android Bank Fraud as a Telegram Rental Service
A new Android malware operation called RedWing is being rented out on Telegram as a ready-made bank-fraud service. It lets even low-skill criminals take over a victim’s phone, steal their banking logins, and capture the one-time codes that protect their accounts.Zimperium’s zLabs, which found the operation, says it looks like a new variant of Oblivion,…
-
Politician who investigated spyware abuses had his phone hacked with Pegasus spyware
A government customer of NSO Group used the company’s Pegasus spyware to hack into the phone of a European politician, who at the time was serving on an EU committee tasked with investigating the spyware industry. First seen on techcrunch.com Jump to article: techcrunch.com/2026/07/02/politician-who-investigated-spyware-abuses-had-his-phone-hacked-with-pegasus-spyware/
-
Spyware found on phone of European Parliament member probing it
Stelios Kouloglou, formerly a member of the European Parliament’s committee investigation abuses of commercial spyware, was twice infected with Pegasus while serving, researchers said. First seen on therecord.media Jump to article: therecord.media/pegasus-spyware-european-parliament-pega-committee-member

