🚨 Watch out as the new #PS1Bot malware steals crypto wallets, passwords, and sensitive data, spreading through #malvertising while evading detection.
Read: https://hackread.com/malvertising-attack-crypto-stealing-ps1bot-malware/
On a recent engagement a USB #keylogger was found. My colleague Cass and I analyzed the key logger to find leads towards the threat actor. We have written down what we learned on our side quest:
https://research.hisolutions.com/2025/07/a-tale-of-practical-keylogger-forensics/
#DFIR #Forensics
📢New in our Research-Blog: A Tale of Practical Keylogger Forensics
On a recent engagement, an interesting hardware side quest popped up.
A client had found a #keylogger and, naturally, Cass Rebellin and @jrt wanted to know what the adversary had seen and if they could gather any useful traces towards the perpetrator.
The full story 👉https://research.hisolutions.com/2025/07/a-tale-of-practical-keylogger-forensics/
Il tuo partner ti spia il cellulare? Scopri la verità e agisci subito
Leggi articolo: https://www.tantilink.net/2025/06/Il-tuo-partner-ti-spia-il-cellulare.html
#smartphone #spyphone #telefono #cellulare #app #android #iphone #spyware #Stalkerware #keylogger #trojan
Il tuo partner ti spia il cellulare? Scopri la verità e agisci subito
Leggi articolo: https://www.tantilink.net/2025/06/Il-tuo-partner-ti-spia-il-cellulare.html
#smartphone #spyphone #telefono #cellulare #app #android #iphone #spyware #Stalkerware #keylogger #trojan
O que é keylogger? Veja como funciona e quais são as formas de proteção
https://fed.brid.gy/r/https://tecnoblog.net/responde/o-que-e-keylogger/
@GossiTheDog @signalapp it merely prevents #Screenshots by claiming it's #DRM'd content.
It's a mere ask and #Microsoft could specifically close that #API and make it subject to contractual agreements (as they did with their #Antivirus API calls to disable #WindowsDefender!) if they decide this is against their wishes.
It also doesn't prevent the #Keylogger nor works against the known #CryptoAPI #backdoor affecting all #Browsers (except #Firefox and @torproject / #TorBrowser) which can be triggered by a single #HTTPS request.
The correct solution for #Signal would be to alert all their users and specifically block #Windows in general or at least #Windows11 simply because it is a #Govware and empirically cannot be made private or secure.
But that would require them to actually give a shit, which thed don't, cuz otherwise they would've stopped demanding #PII like a #PhoneNumber and moved out of juristiction of #CloudAct.
Since they are highly centralized.they certainly are capable to comply with "#Sanctions" (or whatever bs he'll claim!)...
Fixes a critical backdoor in Windows' CryptoAPI, which allows to unconsenting Update of CA Certificates in the background. See https://www.heise.de/ct/ausgabe/2013-17-Zweifelhafte-Updates-gefae...