Visualização normal

Antes de ontemStream principal
  • ✇Cybersecurity News
  • ToxicPanda 2.0 Banking Trojan Attacks Escalate Globally Do Son
    The new ToxicPanda 2.0 banking Trojan attacks target hundreds of financial apps globally. Learn how this ToxicPanda 2.0 banking Trojan steals credentials. Related Posts: ToxNetV2 Botnet Integrates AI Anthropic Issues Claude Security Warnings NPM Typosquatting Malware Targets WSL Developers The post ToxicPanda 2.0 Banking Trojan Attacks Escalate Globally appeared first on Daily CyberSecurity.
     

ToxicPanda 2.0 Banking Trojan Attacks Escalate Globally

Por:Do Son
31 de Agosto de 2026, 04:01

The new ToxicPanda 2.0 banking Trojan attacks target hundreds of financial apps globally. Learn how this ToxicPanda 2.0 banking Trojan steals credentials.

Related Posts:

The post ToxicPanda 2.0 Banking Trojan Attacks Escalate Globally appeared first on Daily CyberSecurity.

  • ✇Cybersecurity News
  • Manic Android Malware Steals Data Without Active Internet Do Son
    A new Manic Android malware campaign combines banking fraud and spyware, using a unique offline mesh relay to steal data even without internet access. Related Posts: Android Head Unit Malware Recruits Vehicles into Botnet Projextor Malware Hides in Fake PDF and Recipe Apps Evooo1Bot Linux Botnet Employs SOCKS Relays and DDoS The post Manic Android Malware Steals Data Without Active Internet appeared first on Daily CyberSecurity.
     

Apple Warns Users in 110 Countries of Mercenary Spyware as iPhone Alerts Get Harder to Miss

18 de Agosto de 2026, 11:18

Apple sent a new wave of mercenary spyware threat notifications to targeted users in 110 countries, while making the warnings more visible on iPhones. The alerts signal suspected targeting, not confirmed compromise, and Apple is urging affected users to verify the warning, consider Lockdown Mode, and seek expert help.

The post Apple Warns Users in 110 Countries of Mercenary Spyware as iPhone Alerts Get Harder to Miss appeared first on TechRepublic.

Galaxy Z Fold 8 Is Getting Android’s New Tap-to-Share Quick Share Feature

13 de Agosto de 2026, 06:59

Google’s tap-to-share Quick Share feature is coming to the Galaxy Z Fold 8 and Fold 8 Ultra, adding a faster proximity-based sharing option for personal and managed devices.

The post Galaxy Z Fold 8 Is Getting Android’s New Tap-to-Share Quick Share Feature appeared first on TechRepublic.

OnePlus 10T Is Out of Security Support: Should You Keep Using Yours?

7 de Agosto de 2026, 10:36

OnePlus 10T security support has ended. Here’s how owners can check their patch level, understand the risks, and decide when to replace the phone.

The post OnePlus 10T Is Out of Security Support: Should You Keep Using Yours? appeared first on TechRepublic.

  • ✇Firewall Daily – The Cyber Express
  • Google Patches Android Zero-Day CVE-2025-48595 Exploited in Targeted Attacks Ashish Khaitan
    Google has released its June 2026 Android security update, addressing 124 vulnerabilities, including one actively exploited zero-day. The zero-day — CVE-2025-48595 — is an integer overflow vulnerability in the Android Framework that allows local attackers to escalate privileges on affected devices without requiring user interaction. CVE-2025-48595 is classified as a high-severity integer overflow (CWE-190) in the Android Framework — the set of APIs and system services that applications intera
     

Google Patches Android Zero-Day CVE-2025-48595 Exploited in Targeted Attacks

CVE-2025-48595

Google has released its June 2026 Android security update, addressing 124 vulnerabilities, including one actively exploited zero-day. The zero-day — CVE-2025-48595 — is an integer overflow vulnerability in the Android Framework that allows local attackers to escalate privileges on affected devices without requiring user interaction. CVE-2025-48595 is classified as a high-severity integer overflow (CWE-190) in the Android Framework — the set of APIs and system services that applications interact with directly. An integer overflow occurs when an arithmetic operation produces a value that exceeds the maximum size of the data type used to store it, causing the value to wrap around or produce unexpected behaviour that attackers can exploit to gain elevated access.

CVE-2025-48595: The Zero-Day Under Fire

The vulnerability enables a local attacker with basic application permissions to escalate privileges and execute code at a higher permission level, potentially gaining full control of device functions. Crucially, exploitation requires no user interaction beyond running a malicious application on the device. This marks the fourth Android zero-day patched since December 2025. Google noted that CVE-2025-48595 "may be under limited, targeted exploitation" — language the company uses when targeted attacks have been confirmed, but widespread in-the-wild exploitation has not yet been observed. This pattern is frequently associated with commercial spyware vendors or nation-state threat actors targeting high-profile individuals such as journalists, activists, or government officials.

Scope of the June 2026 Update

The June 2026 Android security update is substantial, fixing 124 vulnerabilities across two patch levels. Patch level 2026-06-01 addresses core Android OS components, including the Framework and System, with 18 vulnerabilities rated critical. **Patch level 2026-06-05** includes all fixes from 2026-06-01 plus additional patches for kernel subcomponents and third-party chipset drivers from manufacturers such as Qualcomm and MediaTek. Affected Android versions include Android 14, 15, 16, and Android 16 QPR2. Pixel devices receive updates immediately through Google's update delivery system, while devices from Samsung, OnePlus, Xiaomi, and other manufacturers will receive updates on a rolling timeline that may extend weeks or months after Google's release.

CVSS and Technical Details

  • CVE: CVE-2025-48595
  • CWE: CWE-190 (Integer Overflow or Wraparound)
  • Severity: High
  • KEV Status: Not confirmed, added to CISA KEV catalogue as of June 3, 2026
  • Affected Versions: Android 14, Android 15, Android 16, Android 16 QPR2

Why It Matters

The pattern of four Android zero-days in under six months reflects an active market for Android exploits among sophisticated threat actors. While Google's characterisation of "limited, targeted exploitation" suggests this is not yet a mass exploitation scenario, targeted use by spyware operators or nation-state actors presents significant risk for high-value individuals and organisations. Mobile devices increasingly serve as primary work devices, accessing corporate email, VPN, and sensitive business applications. A privilege escalation vulnerability on a corporate-enrolled Android device could allow an attacker to capture credentials, intercept MFA codes, access enterprise apps, and exfiltrate sensitive data — all from a device users typically trust implicitly. The trajectory of Android zero-days in 2026 suggests that mobile endpoints are receiving increased attention from sophisticated threat actors," said a threat intelligence analyst. "Organisations with mobile device management (MDM) programmes should treat Android OS updates with the same urgency as Windows Patch Tuesday releases."

Mitigation Steps

  • Apply the June 2026 Android security update immediately on all managed Android devices via your MDM or enterprise mobility management (EMM) platform.
  • For Pixel devices, install the update via Settings > System > Software update.
  • Contact device manufacturers for updated timelines if using non-Pixel Android devices.
  • Implement mobile application management (MAM) policies that block installation of applications from unverified sources.
  • Enable Google Play Protect scanning on all managed Android devices.
  • Restrict sensitive corporate applications to devices meeting a minimum patch level of 2026-06-05 through MDM policy enforcement.
  • Monitor for unusual privilege escalation events in your mobile device management console.
Google's June 2026 Android update demonstrates that mobile patch management is now an essential component of enterprise security hygiene, not an optional maintenance activity.
  • ✇Security Boulevard
  • U.S. Consumers Lost $2.1 Billion in Social Media Scams in 2025, FTC Says Jeffrey Burt
    An FTC report says that Americans last year lost $2.1 billion in social media scams, such as shopping and investment schemes. Social media site have become the place where most of these scams start, and more than half of that money was stolen in scams began on Facebook, WhatsApp, and Instagram. The post U.S. Consumers Lost $2.1 Billion in Social Media Scams in 2025, FTC Says appeared first on Security Boulevard.
     

U.S. Consumers Lost $2.1 Billion in Social Media Scams in 2025, FTC Says

1 de Maio de 2026, 09:47

An FTC report says that Americans last year lost $2.1 billion in social media scams, such as shopping and investment schemes. Social media site have become the place where most of these scams start, and more than half of that money was stolen in scams began on Facebook, WhatsApp, and Instagram.

The post U.S. Consumers Lost $2.1 Billion in Social Media Scams in 2025, FTC Says appeared first on Security Boulevard.

  • ✇Security Boulevard
  • China-Backed Groups are Using Massive Botnets in Espionage, Intrusion Campaigns Jeffrey Burt
    China-sponsored threat groups like Salt Typhoon and Flax Typhoon are increasingly relying on multiple massive botnets comprising edge and IoT devices to run their cyber espionage and network intrusion campaigns, CISA and other security agencies say. The use of such "covert networks" makes it more difficult to detect and mitigate their campaigns. The post China-Backed Groups are Using Massive Botnets in Espionage, Intrusion Campaigns appeared first on Security Boulevard.
     

China-Backed Groups are Using Massive Botnets in Espionage, Intrusion Campaigns

27 de Abril de 2026, 09:32
Chinese, A PRC flag flies atop a metal flagpole

China-sponsored threat groups like Salt Typhoon and Flax Typhoon are increasingly relying on multiple massive botnets comprising edge and IoT devices to run their cyber espionage and network intrusion campaigns, CISA and other security agencies say. The use of such "covert networks" makes it more difficult to detect and mitigate their campaigns.

The post China-Backed Groups are Using Massive Botnets in Espionage, Intrusion Campaigns appeared first on Security Boulevard.

❌
❌