Toggle light / dark theme

Security researchers at Zscaler’s ThreatLabz group have discovered a new strain of a large-scale phishing campaign, which uses an adversary-in-the-middle (AiTM) attack technique capable of bypassing multi-factor authentication (MFA).

For the unversed, AiTM attack is a cyberattack where the attacker secretly conveys and possibly alters the communications between two parties who believe that they are directly communicating with each other, as the attacker has inserted themselves between the two parties. Hackers through this method can use the stolen cookies to log in and completely evade MFA.

The main purpose of the large-scale phishing campaign is believed to be breaching of corporate accounts to conduct BEC (business email compromise) attacks, which redirects payments toward the hacker’s bank account using forged documents, as reported by BleepingComputer.

Innovative Solutions For Unmet Needs Of Older Adults & Their Caregivers — Keith Camhi, Managing Director, Techstars Future of Longevity Accelerator — A Partnership With Melinda Gates Pivotal Ventures.


Keith Camhi is Managing Director, Techstars Future of Longevity Accelerator (https://www.techstars.com/accelerators/longevity), a program, run in partnership with Pivotal Ventures (https://www.pivotalventures.org/), an investment and incubation company created by Melinda French Gates, focusing on innovative solutions to address the unmet needs of older adults and their caregivers. The longevity accelerator core program themes include: Caregiver Support, Care Coordination, Aging in Place, Financial Wellness and Resilience, Preventive Health (both Physical and Cognitive), and Social Engagement.

Keith was previously the SVP of Accelerators for Techstars globally and was inspired to move to the MD role for the longevity program based on having built a venture-backed startup serving older adults himself, having experienced the gaps in America’s care giving infrastructure firsthand, and wanting to support entrepreneurs who are building solutions to address this substantial market opportunity.

A 24-year-old Australian hacker has been charged with developing and selling the “Imminent Monitor” spy software to more than 14,500 people.


Critical Security Vulnerabilities In Netgear Business Routers Which The Netgear Team Can’t Fix. Stop Using These Routers As Soon As Possible — Vulnerabilities — Information Security Newspaper | Hacking News.

This post is also available in: he עברית (Hebrew)

A recent report has shown that many social media databases are currently being sold on Breach Forums, a popular hacking forum on the Dark Web. According to cyber security researchers HackerOne, the database allegedly consisted of 5.4 million users, and included the datasets for celebrities, politicians and businesses. The owner of Breach Forums reportedly verified the authenticity of the leaked data.

This nefarious collection of information was due to an already known Twitter vulnerability that could possibly allow an attacker to acquire the phone number and/or email address associated with user accounts even if the user had hidden those fields in the platform’s privacy settings. This should worry many social media users, as it seems that privacy and anonymity are merely a veil that hides the many dangers we are exposed to on the internet.

A new phishing campaign codenamed ‘Ducktail’ is underway, targeting professionals on LinkedIn to take over Facebook business accounts that manage advertising for the company.

The operators of Ducktail have a narrow targeting scope and select their victims carefully, trying to find people who have admin privileges on their employer’s social media accounts.

The discovery of this campaign comes from researchers at WithSecure, who have been tracking what they believe to be a Vietnamese threat actor since 2021, and collected evidence of activity dating going back to 2018.