Space Travel News  
CYBER WARS
Spyware campaign targeted journalists, activists: researchers
by AFP Staff Writers
Washington (AFP) July 15, 2021

A spyware campaign using tools from a secretive Israeli firm was used to attack and impersonate dozens of human rights activists, journalists, dissidents, politicians and others, researchers said Thursday.

Statements from Microsoft security researchers and the University of Toronto's Citizen Lab said powerful "cyberweapons" were being used in precision attacks targeting more than 100 victims around the world.

Microsoft said it patched this week the vulnerability exploited by the group, known by the names Candiru and Sourgum.

Citizen Lab said in a blog post that "Candiru is a secretive Israel-based company that sells spyware exclusively to governments," which can then use it to "infect and monitor iPhones, Androids, Macs, PCs, and cloud accounts."

"We found many domains masquerading as advocacy organizations such as Amnesty International, the Black Lives Matter movement, as well as media companies, and other civil-society themed entities," Citizen Lab said.

Microsoft observed at least 100 victims in the Palestinian territories, Israel, Iran, Lebanon, Yemen, Spain, Britain, Turkey, Armenia and Singapore.

The US tech firm said it moved to thwart the attacks with Windows software updates that prevent Candiru from delivering its malware.

"Microsoft has created and built protections into our products against this unique malware, which we are calling DevilsTongue," a Microsoft statement said.

"We have shared these protections with the security community so that we can collectively address and mitigate this threat."

According to Microsoft, DevilsTongue was able to infiltrate popular websites such as Facebook, Twitter, Gmail, Yahoo and others to collect information, read the victim's messages and retrieve photos.

"DevilsTongue can also send messages as the victim on some of these websites, appearing to any recipient that the victim had sent these messages," said the statement from Microsoft Threat Intelligence Center.

"The capability to send messages could be weaponized to send malicious links to more victims."

Citizen Lab researchers found evidence the spyware can exfiltrate private data from a number of apps and accounts, including Gmail, Skype, Telegram and Facebook.

It can also capture browsing history and passwords, as well as turn on the target's webcam and microphone, according to the findings.

Citizen Lab said the Israeli firm's current name is Saito Tech Ltd, and that it has some of the same investors and principals as NSO Group, another Israeli firm under scrutiny for surveillance software.

rl/sw

FACEBOOK

YAHOO!

Twitter

MICROSOFT


Related Links
Cyberwar - Internet Security News - Systems and Policy Issues


Thanks for being here;
We need your help. The SpaceDaily news network continues to grow but revenues have never been harder to maintain.

With the rise of Ad Blockers, and Facebook - our traditional revenue sources via quality network advertising continues to decline. And unlike so many other news sites, we don't have a paywall - with those annoying usernames and passwords.

Our news coverage takes time and effort to publish 365 days a year.

If you find our news sites informative and useful then please consider becoming a regular supporter or for now make a one off contribution.
SpaceDaily Contributor
$5 Billed Once


credit card or paypal
SpaceDaily Monthly Supporter
$5 Billed Monthly


paypal only


CYBER WARS
Ransomware gang goes offline, prompting questions
Washington (AFP) July 13, 2021
A Russian-based hacker group blamed for a massive ransomware attack went offline Tuesday, sparking speculation about whether the move was the result of a government-led action. The "dark web" page of the group known as REvil disappeared some two weeks after an attack which crippled networks of hundreds of companies worldwide and prompted a ransom demand of $70 million. "REvil has seemingly vanished from the dark web, as its website has gone offline," tweeted Allan Liska, a security researcher wi ... read more

Comment using your Disqus, Facebook, Google or Twitter login.



Share this article via these popular social media networks
del.icio.usdel.icio.us DiggDigg RedditReddit GoogleGoogle

CYBER WARS
CYBER WARS
Mars Helicopter reveals intriguing terrain for rover team

China Shares New Images of Mars Taken by Zhurong Rover

Curiosity rover finds patches of rock record erased, revealing clues

Ingenuity Mars helicopter photos show latest flight area

CYBER WARS
New maps help developers plan lunar road trip for VIPER's Artemis Mission

Lockheed Martin opens advanced manufacturing facility to expand Orion production

China kicks off lunar sample study programs

China declares Chang'e-4 mission complete success

CYBER WARS
Ride with Juno as it flies past Jupiter and Ganymede

The mystery of what causes Jupiter's X-ray auroras is solved

Surface of Jupiter's moon Europa churned by small impacts

Scientists solve 40-year mystery over Jupiter's X-ray aurora

CYBER WARS
Brainless slime molds 'think' their way through the environment

TESS discovers stellar siblings host 'teenage' exoplanets

Haziness of exoplanet atmospheres depends on properties of aerosol particles

Four newly found exoplanets may offer insights into Earth's teenage years

CYBER WARS
India's ISRO tests high-powered rocket engine for country's first manned mission

Environmental concerns grow as space tourism lifts off

Suborbital aerospace plane makes maiden flight

Musk's Starship launch tower in Texas might be demolished

CYBER WARS
China's Commercial Space Industry

Exercise bike in space helps keep crew fit

Homemade spacesuits ensure safety of Chinese astronauts in space

Mechanical arm is Chinese astronauts' space helper

CYBER WARS
LCO discovers activity on largest comet ever found

NASA Lucy mission's message to the future

Early Earth was bombarded by series of city-sized asteroids

Chinese Scientists Suggest Launching Dozens of Rockets to Prevent Asteroid Collision With Earth









The content herein, unless otherwise known to be public domain, are Copyright 1995-2024 - Space Media Network. All websites are published in Australia and are solely subject to Australian law and governed by Fair Use principals for news reporting and research purposes. AFP, UPI and IANS news wire stories are copyright Agence France-Presse, United Press International and Indo-Asia News Service. ESA news reports are copyright European Space Agency. All NASA sourced material is public domain. Additional copyrights may apply in whole or part to other bona fide parties. All articles labeled "by Staff Writers" include reports supplied to Space Media Network by industry news wires, PR agencies, corporate press officers and the like. Such articles are individually curated and edited by Space Media Network staff on the basis of the report's information value to our industry and professional readership. Advertising does not imply endorsement, agreement or approval of any opinions, statements or information provided by Space Media Network on any Web page published or hosted by Space Media Network. General Data Protection Regulation (GDPR) Statement Our advertisers use various cookies and the like to deliver the best ad banner available at one time. All network advertising suppliers have GDPR policies (Legitimate Interest) that conform with EU regulations for data collection. By using our websites you consent to cookie based advertising. If you do not agree with this then you must stop using the websites from May 25, 2018. Privacy Statement. Additional information can be found here at About Us.