LidarPhone attack converts smart vacuums into microphones | ZDNet

LidarPhone attack works by converting a smart vacuum’s LiDAR navigational component into a laser microphone. Read…

New tool automates phishing attacks that bypass 2FA | ZDNet

Trust in two-factor authentication has slowly eroded in the last month after release of Amnesty International…

Jailbreak iPhone 12 Pro under iOS 14.2 successfully completed – Galus Australis

Jailbreaking the iPhone 12 Pro on iOS 14.2 is already a reality. It’s the work of…

CERT/CC launches Twitter bot to give security bugs random names | ZDNet

CERT/CC attempts to reduce the use of sensationalized vulnerability names that needlessly scare software users. Read…

samyk/slipstream

NAT Slipstreaming allows an attacker to remotely access any TCP/UDP services bound to a victim machine,…

It’s 2020 and a rogue ICMPv6 network packet can pwn your Microsoft Windows machine

Redmond urges folks to apply update ASAP – plus more fixes for Outlook and software from…

The Nvidia Geforce RTX 3090 is very good at cracking passwords and that’s bad news

Yet another reason to use strong, complex passwords Read more at TechRadar…

A powerful iPhone jailbreak also cracks Apple’s Mac security chip

The Checkm8 vulnerability, which could jailbreak generations of iPhones, has now been used against the company’s…

How AI will automate cybersecurity in the post-COVID world

As cybercrime is becoming more lucrative and more automated, we’re going to have to depend on…

Facebook open-sources Opacus, a PyTorch library for differential privacy

Facebook’s Opacus is a library for training PyTorch models with differential privacy that’s ostensibly more scalable…

New P2P botnet infects SSH servers all over the world

Botnet is hard to detect and with no centralized control server, harder to take down. Read…

China is now blocking all encrypted HTTPS traffic that uses TLS 1.3 and ESNI | ZDNet

The block was put in place at the end of July and is enforced via China’s…

‘BootHole’ Secure Boot Threat Found In Most Every Linux Distro, Windows 8 And 10

A high-rated security vulnerability in the Secure Boot function of the majority of laptops, desktops, workstations…

Nearly half of employees have made a serious security mistake at work

Distraction and burnout can lead to serious mistakes when working online Read more at TechRadar…

New ‘Shadow Attack’ can replace content in digitally signed PDF files | ZDNet

15 out of the 28 biggest desktop PDF viewers are vulnerable, German academics say. Read more…

Twitter Hackers Tell NYT How They Did It

The implications of the Twitter hack are much bigger than bitcoin Read more…

The Twitter attack may have been executed by a 21-year-old SIM swapper, researcher says

If a 21-year-old was behind the crippling attack, Twitter has some serious explaining to do. Read…

The Big Twitter Hack Keeps Getting Stranger and Stranger

If this incident was, in fact, the result of social engineering, that’s good news. Read more…

Iranian Spies Accidentally Leaked Videos of Themselves Hacking

IBM’s X-Force security team obtained five hours of APT35 hacking operations, showing exactly how the group…

UK and Australia open joint data-privacy investigation into Clearview AI

The facial recognition company is being scrutinized over its database of 3 billion photos. Read more…