sensor

Winsage
December 26, 2024
A new attack technique exploits Windows Defender Application Control (WDAC) to disable Endpoint Detection and Response (EDR) sensors on Windows systems. Attackers with administrative privileges can create and deploy custom WDAC policies that prevent EDR sensors from loading during system boot, leaving networks vulnerable. The attack involves three phases: crafting a malicious WDAC policy, rebooting the machine to enforce the policy, and disabling the EDR upon reboot. A proof-of-concept tool called "Krueger" has been developed for this purpose. Mitigation strategies include enforcing WDAC policies via Group Policy Objects (GPOs), applying the principle of least privilege, and implementing secure administrative practices.
Tech Optimizer
December 17, 2024
Timescale has released its State of PostgreSQL 2024 Report, highlighting PostgreSQL's increasing importance as the preferred database for AI applications. Key findings include: - 78.6% of developers prefer PostgreSQL for its capability to manage various data types, including vectors. - 65% of developers reported an increase in PostgreSQL usage compared to the previous year, a 14-point rise from 2023. - 55.3% of PostgreSQL developers are using AI tools, reflecting a 55% year-over-year growth. - 60% of developers use PostgreSQL for both personal and professional projects, a 20% increase from last year. PostgreSQL is recognized for its stability, extensibility, and user-friendly SQL interface, making it a strong alternative to specialized databases. Developers value its data integration flexibility (78.6%) and ease of use (56%). The report indicates PostgreSQL's adoption across various industries, including finance, healthcare, and IoT, due to its ability to handle transactional and analytical workloads. Timescale is enhancing PostgreSQL's capabilities for AI with innovations like pgai and pgvectorscale.
AppWizard
December 17, 2024
Google has released Android 15 QPR2 Beta 2 for testers in the Android Beta Program, which includes bug fixes and new features. The update is available for devices such as Pixel 6, Pixel 7, Pixel 8, Pixel 9, Pixel Fold, and Pixel Tablet, with a build number of BP11.241121.010. Notable bug fixes include resolving access issues in developer settings, fixing connectivity problems with glucose sensors, addressing call placement delays, enabling charging optimization settings, correcting null pointer issues, improving responsiveness on the Pixel Fold, enhancing audio transitions, and resolving Bluetooth connection failures. The Linux Terminal app is now functional, allowing users to run Linux instances, and features like notification cooldowns have been introduced. Users can provide feedback through the Android Beta Feedback app or the official subreddit.
AppWizard
December 9, 2024
RaspController is an application that allows users to monitor, access, and control their Raspberry Pi over a network. It provides tools for file access, resource monitoring, and insights from connected sensors and cameras. Users can send wake-on-LAN packets, access pinouts and wiring diagrams, and execute shell commands directly on the Raspberry Pi. To set up RaspController, users need the IP address of their Raspberry Pi and must enable SSH in the Raspberry Pi Configuration. The app can be downloaded from the Google Play or App Store. Users can control their Raspberry Pi from their smartphone, utilizing features like File Manager, SSH Shell, and Custom commands. Custom code can be added for unsupported sensors, but RaspController does not include VNC functionality.
AppWizard
December 3, 2024
A recent investigation by McAfee identified 15 SpyLoan Android malware apps on Google Play, which collectively received over 8 million installs, mainly targeting users in South America, Southeast Asia, and Africa. These apps disguised themselves as legitimate financial tools, enticing users with false promises of quick loan approvals. Upon installation, users were required to validate their location and submit sensitive personal information. The malware harvested extensive data from users' devices, including SMS messages, GPS locations, and contact lists. Users who secured loans faced high-interest payments and harassment from the operators, who sometimes contacted the borrowers' family members. Notable apps included Préstamo Seguro-Rápido and Préstamo Rápido-Credit Easy, each with 1,000,000 downloads. Despite Google's app review processes, these malicious apps evaded detection. Users are advised to read reviews, check developer reputations, limit app permissions, and activate Google Play Protect.
AppWizard
December 3, 2024
Android users are facing a persistent threat from SpyLoan applications, which are malicious apps designed to deceive individuals into seeking quick loans. A recent investigation by McAfee identified fifteen new SpyLoan apps that have collectively been downloaded eight million times. Although Google has removed these apps from the Play Store, experts expect the threat to continue as cybercriminals adapt their tactics. These apps, categorized as potentially unwanted programs (PUPs), use social engineering to collect sensitive user information by presenting themselves as legitimate financial tools. Users often receive less than the promised loan amount while being required to repay the full sum along with additional fees. In December 2023, Google removed a previous batch of SpyLoan apps that had over twelve million downloads. The latest campaigns are targeting regions like Latin America, Southeast Asia, and Africa, using methods such as requiring a one-time password for download validation. Users are pressured to provide personal information, including identification, employment details, and banking data, which can then be used for harassment and blackmail.
AppWizard
November 30, 2024
A recent investigation by McAfee revealed the existence of 15 SpyLoan applications on Google Play, which have collectively received over 8 million installs, primarily targeting users in South America, Southeast Asia, and Africa. These apps were removed from the Play Store following their discovery, but they highlight ongoing challenges in addressing digital threats. The last significant cleanup of similar SpyLoan applications occurred in December 2023, when over a dozen apps with 12 million downloads were taken down. SpyLoan applications pose as legitimate financial tools, offering misleading loan approvals and coercing users to provide sensitive personal information after validating their identity through a one-time password. They exploit device permissions to access extensive sensitive information, including contact lists, SMS messages, and location data, which are used in extortion schemes. Users who secure loans often face high-interest repayments and harassment from operators, with some scammers contacting borrowers' family members for further pressure. The eight most popular SpyLoan applications include: - Préstamo Seguro-Rápido, Seguro - 1,000,000 downloads (Mexico) - Préstamo Rápido-Credit Easy - 1,000,000 downloads (Colombia) - ได้บาทง่ายๆ-สินเชื่อด่วน - 1,000,000 downloads (Senegal) - RupiahKilat-Dana cair - 1,000,000 downloads (Senegal) - ยืมอย่างมีความสุข – เงินกู้ - 1,000,000 downloads (Thailand) - เงินมีความสุข – สินเชื่อด่วน - 1,000,000 downloads (Thailand) - KreditKu-Uang Online - 500,000 downloads (Indonesia) - Dana Kilat-Pinjaman kecil - 500,000 downloads (Indonesia) Despite Google's app review mechanisms, SpyLoan applications continue to evade detection. Users are advised to read reviews, check the developer's reputation, limit app permissions, and activate Google Play Protect to mitigate risks.
AppWizard
November 28, 2024
Android emulators for Mac allow users to experience the Android environment, bridging the gap for Mac users who face limitations with mobile gaming and Android-exclusive applications. The top Android emulators for Mac include: 1. BlueStacks: Widely used, supports both Intel and M-series Macs, free, features native gamepad support and impressive FPS capabilities. Currently available as BlueStacks 4, with BlueStacks 5 anticipated. 2. NoxPlayer: Lightweight design, operates on Android 9, supports Intel Macs only, free, features script recording and gamepad support, but does not support M1 or later chips. 3. Genymotion: Primarily for developers, supports both Intel and M-series Macs, offers cloud-based or desktop application options, free and paid versions, features ADB access and sensor simulation. 4. MuMuPlayer Pro: Supports M-series Macs only, paid with a 7-day trial, operates on Android 12, allows multiple instances for gameplay, but lacks extensive customization options. 5. Android Studio: Integrated development environment for Android app development, supports both Intel and M-series Macs, free, offers debugging tools and hardware/software simulation capabilities. Emulators serve various purposes, including gaming, app testing, and managing social media accounts.
Winsage
November 19, 2024
Microsoft is introducing a feature called "Quick Machine Recovery" to help IT administrators remotely fix unbootable systems via Windows Update, following a significant outage in July 2024 caused by a problematic update to the CrowdStrike Falcon software. This outage affected various critical sectors globally, leading to issues like boot loops and the Blue Screen of Death for users. The Quick Machine Recovery feature will allow targeted fixes without physical access to the machines and is expected to roll out in early 2025 for Windows 11 Insider Program participants. Additionally, Microsoft is working with security vendors on the Microsoft Virus Initiative (MVI) to develop tools that allow security software to operate outside the Windows kernel, reducing risks associated with kernel-level access. This initiative includes adopting Safe Deployment Practices for gradual and monitored updates. A private preview of these developments will be available in July 2025. Microsoft has also launched a new Windows 11 administrator protection feature and is focusing significant resources on security challenges through its Secure Future Initiative (SFI).
Search