Tag Archive for: Serious

New Attack exploiting serious Bluetooth weakness can intercept sensitive data

New Attack exploiting serious Bluetooth weakness can intercept sensitive data

Enlarge

Researchers have demonstrated a serious weakness in the Bluetooth wireless standard that could allow hackers to intercept keystrokes, address books, and other sensitive data sent from billions of devices.

Dubbed Key Negotiation of Bluetooth—or KNOB for short—the attack forces two or more devices to choose an encryption key just a single byte in length before establishing a Bluetooth connection. Attackers within radio range can then use commodity hardware to quickly crack the key. From there, attackers can use the cracked key to decrypt data passing between the devices. The types of data susceptible could include keystrokes passing between a wireless keyboard and computer, address books uploaded from a phone to a car dashboard, or photographs exchanged between phones.

KNOB doesn’t require an attacker to have any previously shared secret material or to observe the pairing process of the targeted devices. The exploit is invisible to Bluetooth apps and the operating system they run on, making the attack almost impossible to detect without highly specialized equipment. KNOB also exploits a weakness in the Bluetooth standard itself. That means, in all likelihood, that the vulnerability affects just about every device that’s compliant with the specification. The researchers have simulated the attack on 14 different Bluetooth chips—including those from Broadcom, Apple, and Qualcomm—and found all of them to be vulnerable.

Read 19 remaining paragraphs | Comments

Biz & IT – Ars Technica

Serious Zoom security flaw could let websites hijack Mac cameras – The Verge

  1. Serious Zoom security flaw could let websites hijack Mac cameras  The Verge
  2. Zoom Zero-Day Bug Opens Mac Users to Webcam Hijacking  Threatpost
  3. Zoom security flaw lets hackers access Mac webcams  Vox.com
  4. Your Mac could be hijacked through major security flaw in Zoom conferencing app  CNET
  5. View full coverage on read more

“HTTPS hijacking” – read more

WhatsApp alert as millions of Android users warned of another serious security threat – Express

WhatsApp alert as millions of Android users warned of another serious security threat  Express

WHATSAPP users are being warned to be on alert after a new security threat that could leave their devices open to hackers has been detected.

“android security news” – read more

Malware a Serious Threat for Industrial Orgs – Infosecurity Magazine

Malware a Serious Threat for Industrial Orgs  Infosecurity Magazine

During Q1 2019, Cryptolocker malware spiked to account for 24% of all malware used, up from only 9% in Q4 2018, according to a new report from Positive …

“malware news” – read more