The Insecurity Brief: Recent Episodes

Trip Elix

Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from a different point of view.

followthewhiterabbit

View Details

New exploit found that targets sys admin admins programmers and others that routinely copy and paste commands

Copy & Paste Exploit Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/copy-paste-exploit/

Youtube:

https://youtu.be/aAwa53GEbSw

Rumble:

https://rumble.com/vrylkt-copy-and-paste-exploit.html

iTunes:

ituneslink

Spotify:

spotifylink

Trip’s books

https://www.tripelix.com/merch

Do not copy-paste commands from webpages Developers, sysadmin, security researchers, and hobbyists who copy-paste commands from webpages into a console or terminal are warned that their system may be compromised.

https://en.secnews.gr/379042/min-kanete-copy-paste-commands-webpages/

View Details

Trip talks about virus detection and how to see if you are infected

How To Tell If Your Device Has A Virus Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/how-to-tell-if-your-device-has-a-virus/

Youtube:

https://youtu.be/AirdMI8C5mg

Rumble:

https://rumble.com/vru60p-how-to-tell-if-your-device-has-a-virus.html

iTunes:

ituneslink

Spotify:

spotifylink

Trip’s books

https://www.tripelix.com/merch

Hashtags go here

Security Onion 2 Peel back the layers of your enterprise with our newest and most powerful release yet.

https://download.securityonion.net/file/securityonion/securityonion-2.3.91.iso

https://securityonionsolutions.com/

View Details

An alert was made by many that Chinese bots are promoting its own form of democracy

Chinese Propaganda Targets Redefining Democracy Uses Bots To Spread Message Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/chinese-propaganda-targets-redefining-democracy-uses-bots-to-spread-message/

Youtube:

https://youtu.be/qttAxXMKacw

Rumble:

https://rumble.com/vr79j1-chinese-propaganda-targets-redefining-democracy-uses-bots-to-spread-message.html

iTunes:

ituneslink

Spotify:

spotifylink

Trip’s books

https://www.tripelix.com/merch

china #democracy

Report: Beijing unleashed a massive propaganda campaign to redefine democracy

Report: Beijing unleashed a massive propaganda campaign to redefine democracy

China has unleashed a massive propaganda campaign aimed at recreating democracy in its own image, according to a new report published Tuesday.

https://therecord.media/report-beijing-unleashed-a-massive-propaganda-campaign-to-redefine-democracy/

China’s Narrative War on Democracy China’s entire propaganda system is working at full force in the largest Chinese state-sponsored overt influence campaign to date observed by Recorded Future. The narrative warfare operation, which aims to reshape global definitions of democracy, criticize American democracy, and position China as a democracy itself, has been amplified by nearly every Chinese state-affiliated media

https://www.recordedfuture.com/chinas-narrative-war-democracy/

How Beijing Influences the Influencers Millions have watched Lee and Oli Barrett’s YouTube dispatches from China. The father and son duo visit hotels in exotic locales, tour out-of-the-way villages, sample delicacies in bustling markets and undergo traditional ear cleanings.

Warning visiting the times exposes your device to being tracked by media.net a Chinese tracking company https://www.nytimes.com/interactive/2021/12/13/technology/china-propaganda-youtube-influencers.html

View Details

Friday schools across the nation cancel classes over a viral threat of mass shooting on Ticktock the system found no credibility

Tiktok School Shooting Viral Threat Cancels Classes For Millions Of Children Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/tiktok-school-shooting-viral-threat-cancels-classes-for-millions-of-children/

Youtube:

https://youtu.be/pKKluUhmDjY

Rumble:

https://rumble.com/vr7788-tiktok-school-shooting-viral-threat-cancels-classes-for-millions-of-childre.html

iTunes:

https://podcasts.apple.com/us/podcast/tiktok-school-shooting-viral-threat-cancels-classes/id1583788677?i=1000545748027

Spotify:

https://open.spotify.com/episode/2oxFmEJwh4KcNAbwu9c6UC

Trip’s books

https://www.tripelix.com/merch

tiktock

Vague and viral TikTok warning of school violence is not credible but has schools and law enforcement on high alert

A vague and viral TikTok trend warning of nationwide school violence on Friday — which authorities have dismissed as not credible — has nevertheless prompted widespread school closures, stretched law enforcement resources and put families on edge ahead of a critical holiday travel season.

https://www.cnn.com/2021/12/17/tech/tiktok-school-threat-december-17/index.html

TikTok school shooting threat unfounded but Chicago area districts take precautions PARK RIDGE, Ill. (WLS) — An unfounded threat of school violence spreading on the social media app TikTok prompted several Chicago area school districts to respond Friday.

https://abc7chicago.com/tiktok-school-threat-december-17-shooting-bomb-social-media-to-schools/11351290/

View Details

Meta makes headlines blocking 5 paramilitary groups from its Facebook and Instagram platforms citing hypocrisy in its actions.

Paramilitary Groups Plant Malware It Makes The News But Spying On Us Doesn’t Matter Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/paramilitary-groups-plant-malware-it-makes-the-news-but-spying-on-us-doesnt-matter/

Youtube:

https://youtu.be/NW45f4rpH6s

Rumble:

https://rumble.com/vqxhuq-paramilitary-groups-plant-malware-it-makes-the-news-but-spying-on-us-doesnt.html

iTunes:

https://podcasts.apple.com/us/podcast/paramilitary-groups-plant-malware-it-makes-the-news/id1583788677?i=1000545252619

Spotify:

https://open.spotify.com/episode/072hzR7hR52Id53GB4yxNZ

Trip’s books

https://www.tripelix.com/merch

predator #hack #nso

A new spyware-for-hire, Predator, caught hacking phones of politicians and journalists While NSO Group was taking flak for hacking into the phones of journalists, activists and human rights defenders, an entire class of spyware makers and surveillance-for-hire outfits were operating as normal, largely unnoticed.

A new spyware-for-hire, Predator, caught hacking phones of politicians and journalists

Pegasus vs. Predator Dissident’s Doubly-Infected iPhone Reveals Cytrox Mercenary Spyware We confirmed the hacking of the devices of two individuals with Cytrox’s Predator spyware: Ayman Nour, a member of the Egyptian political opposition living in exile in Turkey, and an Egyptian exiled journalist who hosts a popular news program and wishes to remain anonymous.

https://citizenlab.ca/2021/12/pegasus-vs-predator-dissidents-doubly-infected-iphone-reveals-cytrox-mercenary-spyware/

View Details

From print to live television nearly every show has had some mention of this exploit but very few suggest what to do about it.

Log4j Exploit Its Been On The News But Does It Really Matter? Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/log4j-exploit-its-been-on-the-news-but-does-it-really-matter/

Youtube:

https://youtu.be/JTJssC8BJdE

Rumble:

https://rumble.com/vqv8f3-log4j-exploit-its-been-on-the-news-but-does-it-really-matter.html

iTunes:

https://podcasts.apple.com/us/podcast/log4j-exploit-its-been-on-the-news-but-does-it-really-matter/id1583788677?i=1000545128756

Spotify:

https://open.spotify.com/episode/4H2agmV9fxCkXDxJk6iOpP

Trip’s books

https://www.tripelix.com/merch

Apache Log4j Vulnerability Guidance CISA and its partners, through the Joint Cyber Defense Collaborative, are responding to active, widespread exploitation of a critical remote code execution (RCE) vulnerability (CVE-2021-44228) in Apache’s Log4j software library, versions 2.0-beta9 to 2.14.1, known as “Log4Shell” and “Logjam.” Log4j is very broadly used in a variety of consumer and enterprise services, websites, and applications—as well as in operational technology products—to log security and performance information. An unauthenticated remote actor could exploit this vulnerability to take control of an affected system.

https://www.cisa.gov/uscert/apache-log4j-vulnerability-guidance

View Details

Websites are under constant attack what you should do if you have a site upate as soon as possiable

WordPress Under Attack Over 16,000 Ip Addresses Used To Target Over 1.6 Million Sites Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/wordpress-under-attack-over-16000-ip-addresses-used-to-target-over-1-6-million-sites/

Youtube:

https://youtu.be/Tk8TW5PFia0

Rumble:

https://rumble.com/vqmdhy-wordpress-under-attack-over-16000-ip-addresses-used-to-target-over-1.6-mill.html

iTunes:

https://podcasts.apple.com/us/podcast/wordpress-under-attack-over-16-000-ip-addresses-used/id1583788677?i=1000545022394

Spotify:

https://open.spotify.com/episode/33gXTgy0D3KdPNGkZVlMuv

Trip’s books

https://www.tripelix.com/merch

Vulnerable Plugins

Activello (<=1.4.1)

Affluent (<1.1.0)

Allegiant (<=1.2.5)

Antreas (<=1.0.6)

Bonkers (<=1.0.5)

Brilliance (<=1.2.9)

Illdy (<=2.1.6)

MedZone Lite (<=1.2.5)

NatureMag Lite (no known patch available)

NewsMag (<=2.4.1)

Newspaper X (<=1.3.1)

Pixova Lite (<=2.0.6)

Regina Lite (<=2.0.5)

Shapely (<=1.2.8)

Transcend (<=1.1.9)

1.6 Million WordPress Sites Under Cyberattack From Over 16,000 IP Addresses As many as 1.6 million WordPress sites have been targeted by an active large-scale attack campaign originating from 16,000 IP addresses by exploiting weaknesses in four plugins and 15 Epsilon Framework themes.

https://thehackernews.com/2021/12/16-million-wordpress-sites-under.html

1.6 Million WordPress Sites Hit With 13.7 Million Attacks In 36 Hours From 16,000 IPs Today, on December 9, 2021, our Threat Intelligence team noticed a drastic uptick in attacks targeting vulnerabilities that make it possible for attackers to update arbitrary options on vulnerable sites. This led us into an investigation which uncovered an active attack targeting over a million WordPress sites. Over the past 36 hours, the Wordfence network has blocked over 13.7 million attacks targeting four different plugins and several Epsilon Framework theme

View Details

Both Facebook and Twitter released new programs to protect one sided speech treating to deplatform those who don’t comply

Social Media Censorship Programs Developed To Shield Elites And Protect Unlawfulness Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/social-media-censorship-programs-developed-to-shield-elites-and-protect-unlawfulness/

Youtube:

https://youtu.be/DyUJFwI2rPc

Rumble:

https://rumble.com/vqmcf3-social-media-censorship-programs-developed-to-shield-elites-and-protect-unl.html

iTunes:

https://podcasts.apple.com/us/podcast/social-media-censorship-programs-developed-to-shield/id1583788677?i=1000544905684

Spotify:

https://open.spotify.com/episode/7w8r9rI0K1fOHrSBKL2Ynw

Trip’s books

https://www.tripelix.com/merch

Hashtags go here

Twitter Bans Users From Posting ‘Private Media’ Without a Person’s Consent

Twitter on Tuesday announced an expansion to its private information policy to include private media, effectively prohibiting the sharing of photos and videos without express permission from the individuals depicted in them with an aim to curb doxxing and harassment.

https://thehackernews.com/2021/11/twitter-bans-users-from-posting-private.html

Meta Expands Facebook Protect Program to Activists, Journalists, Government Officials Meta, the company formerly known as Facebook, on Thursday announced an expansion of its Facebook Protect security program to include human rights defenders, activists, journalists, and government officials who are more likely to be targeted by bad actors across its social media platforms.

https://thehackernews.com/2021/12/meta-expands-facebook-protect-program.html

View Details

New exploit for DDE explained that bypasses antivirus with .ics links

New Windows Exploit Phishing Appointment Links Bypass Anti Virus Checks Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/new-windows-exploit-phishing-appointment-links-bypass-anti-virus-checks/

Youtube:

https://youtu.be/dbxiL_ptNcY

Rumble:

https://rumble.com/vqm7aw-new-windows-exploit-phishing-appointment-links-bypass-anti-virus-checks.html

iTunes:

https://podcasts.apple.com/us/podcast/new-windows-exploit-phishing-appointment-links-bypass/id1583788677?i=1000544780894

Spotify:

https://open.spotify.com/episode/6yFE2zXNZm0V8vlD9jK7Ri

Trip’s books

https://www.tripelix.com/merch

Hashtags go here

Attackers Disguise Malware as Calendar Invite Attachment Meeting invites are one of the most common types of emails sent today, so it should come as no surprise that attackers have found a way to manipulate them. Multiple organizations that utilize Abnormal Security recently received emails which contained a .ics attachment—an invitation file commonly used to populate online calendar applications with meeting and event information.

https://abnormalsecurity.com/blog/calendar-invite-malware-attack

View Details

“Facebook is like a robot programmed with a singular mission: to grow. And the undeniable reality is that Facebook’s growth, fueled by hate, division, and misinformation, has left hundreds of thousands of devastated Rohingya lives in its wake,” from the complaint

Meta Aka Facebook Sued For 150 Billion Claiming Algorithm Promoted Genocide Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/meta-aka-facebook-sued-for-150-billion-claiming-algorithm-promoted-genocide/

Youtube:

https://youtu.be/x0aa3at6lWs

Rumble:

https://rumble.com/vqiaje-meta-aka-facebook-sued-for-150-billion-claiming-algorithm-promoted-genocide.html

iTunes:

https://podcasts.apple.com/us/podcast/meta-aka-facebook-sued-for-150-billion-claiming-algorithm/id1583788677?i=1000544543140

Spotify:

https://open.spotify.com/episode/3pS1NoCgRDRrxTUD7BEVVj

Trip’s books

https://www.tripelix.com/merch

Hashtags go here

Rohingya refugees sue Facebook for $150 billion, alleging it helped perpetuate genocide in Myanmar Facebook failed to quickly stop the spread of hate speech and misinformation against the Rohingya people, in turn contributing to the persecution and alleged genocide of the minority community in Myanmar, according to a lawsuit filed Monday in a California court that asks for more than $150 billion in compensation.

https://www.washingtonpost.com/world/2021/12/07/facebook-rohingya-genocide-refugees-lawsuit/

How Facebook neglected the rest of the world, fueling hate speech and violence in India In February 2019, not long before India’s general election, a pair of Facebook employees set up a dummy account to better understand the experience of a new user in the company’s largest market. They made a profile of a 21-year-old woman, a resident of North India, and began to track what Facebook showed her.

https://www.washingtonpost.com/technology/2021/10/24/india-facebook-misinformation-hate-speech/

View Details

Apple last week notified 11 U.S. State Department employees in Uganda that their iPhones were hacked, and investigators have linked the attack to a tool developed by NSO Group, an Israeli technology company that was blacklisted by the Biden administration, according to a person familiar with the matter.

NSO Group Malware Caught Spying On American State Department Employees Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/nso-group-malware-caught-spying-on-american-state-department-employees/

Youtube:

https://youtu.be/dnJVhbL4PO8

Rumble:

https://rumble.com/vqgk0k-nso-group-malware-caught-spying-on-american-state-department-employees.html

iTunes:

https://podcasts.apple.com/us/podcast/nso-group-malware-caught-spying-on-american-state-department/id1583788677?i=1000544403171

Spotify:

https://open.spotify.com/episode/0TuJe90LSfkXdrkToa6eDp

Trip’s books

https://www.tripelix.com/merch

nsogroup

SS7 hack allows anyone to listen to your cell phone calls and more The SS7 hack is a reality. There are sites all over the internet that offer tracking the location of any cell phone user by just the phone number. Other services allow calls to recorded or eavesdropped and text messages to be read outside of the device.

https://www.tripelix.com/ss7-hack-allows-anyone-to-listen-to-your-cell-phone-calls-and-more/

Pegasus Spyware Reportedly Hacked iPhones of U.S. State Department and Diplomats Apple reportedly notified several U.S. Embassy and State Department employees that their iPhones may have been targeted by an unknown assailant using state-sponsored spyware created by the controversial Israeli company NSO Group, according to multiple reports from Reuters and The Washington Post.

https://thehackernews.com/2021/12/pegasus-spyware-reportedly-hacked.html

U.S. State Department phones hacked wi

View Details

In this episode Trip takes a new direction in his normal fare. Discover what you can do to change your outlook

Taking Back Control Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/taking-back-control/

Youtube:

https://youtu.be/Ydzd5mEYgZo

Rumble:

https://rumble.com/vqeix6-taking-back-control.html

iTunes:

https://podcasts.apple.com/us/podcast/taking-back-control/id1583788677?i=1000544293603

Spotify:

https://open.spotify.com/episode/3KNFOdljncuxqz3qPENG4i

Trip’s books

https://www.tripelix.com/merch

freedom

View Details

How to create not guessable passwords and how to store them,

Creating Passwords and Security Questions Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/creating-passwords-and-security-questions/

Youtube:

https://youtu.be/uP5lij5BO54

Rumble:

https://rumble.com/vqcgnu-creating-passwords-and-security-questions.html

iTunes:

https://podcasts.apple.com/us/podcast/creating-passwords-and-security-questions/id1583788677?i=1000544185469

Spotify:

https://open.spotify.com/episode/2tC456crp71b0pPisw66Xk

Trip’s books

https://www.tripelix.com/merch

password

AxCrypt Download for free for personal use Windows or Mac

https://www.axcrypt.net/download

View Details

Has someone been spying on everyone that uses Tor? Trip explains the network that so many should be using everyday

Tor Hacked Unknown Threat Actor Adds Hundreds Of Servers Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/tor-hacked-unknown-threat-actor-adds-hundreds-of-servers/

Youtube:

https://youtu.be/ejfiEGBP-Iw

Rumble:

https://rumble.com/vqb8no-tor-hacked-unknown-threat-actor-adds-hundreds-of-servers.html

iTunes:

https://podcasts.apple.com/us/podcast/tor-hacked-unknown-threat-actor-adds-hundreds-of-servers/id1583788677?i=1000544065599

Spotify:

https://open.spotify.com/episode/3w7KYUd4xIuwfEhKdrV8IQ

Trip’s books

https://www.tripelix.com/merch

tor #darknet

A mysterious threat actor is running hundreds of malicious Tor relays Since at least 2017, a mysterious threat actor has run thousands of malicious servers in entry, middle, and exit positions of the Tor network in what a security researcher has described as an attempt to deanonymize Tor users.

https://therecord.media/a-mysterious-threat-actor-is-running-hundreds-of-malicious-tor-relays/

View Details

After getting a renewal notice from my carrier i looked at plans again and thought i would share my pick with you so you can save money too. $15 per month unlimited calls and text 3gb data

Cell Phone Plans Compared Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Link to redpocket special deal https://www.redpocket.com/plans/annual?rfsn=6236351.bbd511

Our Website:

https://www.tripelix.com/insecurity/cell-phone-plans-compared/

Youtube:

https://youtu.be/3I_muoxg1s0

Rumble:

https://rumble.com/vqb8bq-cell-phone-plans-compared.html

iTunes:

https://podcasts.apple.com/us/podcast/cell-phone-plans-compared/id1583788677?i=1000543829502

Spotify:

https://open.spotify.com/episode/634xZJbRbwtmujJvQjYtlt

Trip’s books

https://www.tripelix.com/merch

cellphone

AT&T prices Find the right plan for everyone on your account

https://www.att.com/plans/unlimited-data-plans/

Use dual SIM devices

Learn how to manage calls, texts, and data use with your dual SIM device.

https://www.att.com/support/article/wireless/KM1288682

Verzon It’s Unlimited built right.

https://www.verizon.com/plans/unlimited/

$100 Billion Verizon is one of Country’s Most Aggressive Tax Dodgers A new report released today reveals how Verizon Communications achieves a negative federal tax rate to avoid paying its fair share of taxes, and aggressively uses tax loopholes and subsidies to cut its tax bills even more.

https://www.goodjobsfirst.org/100-billion-verizon-one-country%E2%80%99s-most-aggressive-tax-dodgers

View Details

Cellphones are the largest target for stealing money since so many have banking apps. Trip talks about alternatives

Financial FluBot Danger SMS Text Messages Trick Users To Install Malware Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/financial-flubot-danger-sms-text-messages-trick-users-to-install-malware/

Youtube:

https://youtu.be/HPgSe0Z5dNk

Rumble:

https://rumble.com/vqb7zr-financial-flubot-danger-sms-text-messages-trick-users-to-install-malware.html

iTunes:

https://podcasts.apple.com/us/podcast/financial-flubot-danger-sms-text-messages-trick-users/id1583788677?i=1000543710746

Spotify:

https://open.spotify.com/episode/3m5b7Ag82yYQxuoSYWEH9r

Trip’s books

https://www.tripelix.com/merch

cellphone #flubot

Your phone hit by DANGEROUS Flubot malware? Know how to fight hackers Have you received this message? It is shocking how cybercriminals have developed new tactics to trick users and steal their money. In fact, it has become extremely easy to infect users phones with malware. Flubot malware has been infecting users phones by tricking users into instal the malware themselves on their phones after alerting them that their handset is infected. Here’s what you need to know to stay safe.

https://tech.hindustantimes.com/mobile/news/your-phone-hit-by-dangerous-flubot-malware-know-how-to-fight-hackers-71633239605168.html

Finland Faces Blizzard of Flubot-Spreading Text Messages Millions of texts leading to the Flubot spyware/banking trojan are targeting everyone who uses Androids in the country, in an “exceptional” attack.

https://threatpost.com/finland-flubot-text-messages/176649/

Simjacker attack exploited in the wild to track users for at least two

View Details

All over social media are ads for con artists and employment scams. Trip talks about some of these and how it impacts all of us.

Social Media Promoting Fake and Misleading Employment and Investment Opportunity Scams Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/social-media-promoting-fake-and-misleading-employment-and-investment-opportunity-scams/

Youtube:

https://youtu.be/77KxWjlDZ3Q

Rumble:

https://rumble.com/vqb7hz-social-media-promoting-fake-and-misleading-employment-and-investment-opport.html

iTunes:

https://podcasts.apple.com/us/podcast/social-media-promoting-fake-misleading-employment-and/id1583788677?i=1000543593013

Spotify:

https://open.spotify.com/episode/6jrM8nlJbkk6ueifzuJgVY

Trip’s books

https://www.tripelix.com/merch

Hashtags go here

47 U.S. Code § 230 – Protection for private blocking and screening of offensive material

https://www.law.cornell.edu/uscode/text/47/230

Section 230 of the Communications Decency Act 47 U.S.C. § 230, a Provision of the Communication Decency Act Tucked inside the Communications Decency Act (CDA) of 1996 is one of the most valuable tools for protecting freedom of expression and innovation on the Internet: Section 230.

https://www.eff.org/issues/cda230

View Details

There has been a massive disinformation campaign going on for decades over violence. So many voices constantly overrun and shape what people believe. Trip examines one set of actors behind it

Violent Video Games Promote Aggressive Behavior Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/violent-video-games-promote-aggressive-behavior/

Youtube:

https://youtu.be/GDBfVnv3ny8

Rumble:

https://rumble.com/vqb744-violent-video-games-promote-aggressive-behavior.html

iTunes:

https://podcasts.apple.com/us/podcast/violent-video-games-promote-aggressive-behavior/id1583788677?i=1000543478213

Spotify:

https://open.spotify.com/episode/6q0vpzlrqiNrN2vlxIDcd9

Trip’s books

https://www.tripelix.com/merch

Hashtags go here

APA RESOLUTION on Violent Video Games APA’s governing Council of Representatives seated a task force to review its August 2015 resolution in light of many occasions in which members of the media or policymakers have cited that resolution as evidence that violent video games are the cause of violent behavior, including mass shootings.

https://www.apa.org/about/policy/resolution-violent-video-games.pdf

No, there’s still no link between video games and violence NEW YORK (AP) — Do video games trigger violent behavior? Scientific studies have found no link. But the persistent theory is back in the headlines following Saturday’s mass shooting in El Paso, Texas .

https://apnews.com/article/donald-trump-ap-top-news-games-tx-state-wire-shootings-4

Playing video games doesn’t lead to violent behaviour, study shows Video games do not lead to violence or aggression, according to a reanalysis of data gathered from more than 21,000 young people around the world.

The researchers, led by Aaron Drummond from New Zealand’s Massey University, re-examined 2

View Details

From simple bots to the Botnet Trip explains what is going on with the machines you trust

Bots Pose Hidden Dangers Machines Perform Identity Theft To Trick Humans Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/bots-pose-hidden-dangers-machines-perform-identity-theft-to-trick-humans/

Youtube:

https://youtu.be/MBXRWg2OG5k

Rumble:

https://rumble.com/vpzxh1-bots-pose-hidden-dangers-machines-perform-identity-theft-to-trick-humans.html

iTunes:

https://podcasts.apple.com/us/podcast/bots-pose-hidden-dangers-machines-perform-idenity-theft/id1583788677?i=1000543339264

Spotify:

https://open.spotify.com/episode/3lTxtjztIf6nrFAArzQsAH

Trip’s books

https://www.tripelix.com/merch

bot #Botnet

Every thing works better together Connect your apps and devices in new ways with powerful automations.

https://ifttt.com/

Unethical Artificial Intelligence A group of prolific spammers is reposting phishing links to unsuspecting users of social media. In an apparent elaborate effort to sway political opinion globally and targeting the unaware and the mentally ill in a clickbait scheme.

unethicalAI

View Details

Black Friday and Cyber Monday have rip offs and bait and switch schemes, Trip talk about security should be in your radar.

Fake Holiday Sales Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/fake-holiday-sales/

Youtube:

https://youtu.be/KXnpo-GZXco

Rumble:

https://rumble.com/vpzxb7-fake-holiday-sales.html

iTunes:

https://podcasts.apple.com/us/podcast/fake-holiday-sales/id1583788677?i=1000543185788

Spotify:

https://open.spotify.com/episode/4l0AHUsm3J4B6lmkUsil7j

Trip’s books

https://www.tripelix.com/merch

View Details

GoDaddy said in a statement to the SEC that the data of up to 1.2 million of its customers was exposed after hackers gained access to the company’s Managed WordPress hosting environment. The incident was discovered by GoDaddy on November 17, but the attackers had access to its network and the data contained on the breached systems since at least September 6, 2021.

GoDaddy Hacked And The Seedy And Hidden World Of Affiliate Marketing Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/godaddy-hacked-and-the-seedy-and-hidden-world-of-affiliate-marketing/

Youtube:

https://youtu.be/cOgF2g733Wc

Rumble:

https://rumble.com/vpp4j5-godaddy-hacked.html

iTunes:

https://podcasts.apple.com/us/podcast/godaddy-hacked-and-the-seedy-and-hidden/id1583788677?i=1000543032548

Spotify:

https://open.spotify.com/episode/0uPBaPxVBAW6uv7wAiFalT

Trip’s books

https://www.tripelix.com/merch

godaddy

GoDaddy hack causes data breach affecting 1.2 million customers In a data breach notification published today, GoDaddy said that the data of up to 1.2 million of its customers was exposed after hackers gained access to the company’s Managed WordPress hosting environment.

https://www.bleepingcomputer.com/news/security/godaddy-hack-causes-data-breach-affecting-12-million-customers/

GoDaddy Hacked: 5 Ways to Secure Your WordPress Site In a security disclosure published today, GoDaddy says that up to 1.2 million active and inactive customers have been exposed after hackers gained access to its managed WordPress hosting platform. The hack was first discovered by GoDaddy on November 17, 2021.

https://ithemes.com/blog/godaddy-hacked/

Link between data breaches and affiliate fraud Data breaches seem to be making headlines on a daily basis lately. The recent Equifax and Capital One hacks alone exposed the personal, financial, and contact information of more than 250 million Americans. Thousands of gigabytes of personal data are now exposed to the dark reaches of the internet. So what becomes of stolen data? Sometimes nothing, but i

View Details

Do you know how to protect your cell phone? Is it your personal bugging device? Trip goes though the steps to secure your device.

Basic Cellphone Security Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/basic-cellphone-security/

Youtube:

https://youtu.be/pH6DBAexyrM

Rumble:

https://rumble.com/vpp4aj-basic-cellphone-security.html

iTunes:

https://podcasts.apple.com/us/podcast/basic-cellphone-security/id1583788677?i=1000542922681

Spotify:

https://open.spotify.com/episode/7e7zwpLWQvxGIAYKTGMyIm

Trip’s books

https://www.tripelix.com/merch

cellphone #android #iphone

Amazon link Entwth Cell Phone Tempered Glass Privacy Screen Protector(Black,2 Pack),Compatible iPhone 11/XR 6.1″ Screen HD Clarity 3D Touch 9H Hardness Anti-Spy Anti-Scratch Anti-Glare,Easy Install Bubble Free

Amazon link USB Data Blocker, JSAUX (4-Pack) USB-A Defender Only for Quick Charge, Protect Against Juice Jacking, Refuse Hacking Provide Safe Charging- Red

View Details

Behind the radio ads lurks a devious plot to separate you from your money. Trip unfolds the murky world of Identity theft and title scams

Home Title Theft Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/home-title-theft/

Youtube:

https://youtu.be/UZLpGzWV_do

Rumble:

https://rumble.com/vpnj1x-home-title-theft.html

iTunes:

https://podcasts.apple.com/us/podcast/home-title-theft/id1583788677?i=1000542804664

Spotify:

https://open.spotify.com/episode/644jT3BtWreMyfjJ3vp3JV

Trip’s books

https://www.tripelix.com/merch

hometitletheft #scam

The Home Title Theft Baloney Ooooo, terrible things can happen. The latest, as you can hear on radio ads and other venues, is that no-good-niks can steal your home out from under you. But you can buy insurance against such a fate. Whew. But maybe this is a shuck, too. Rick Kahler, president of Kahler Financial Group in Rapid City, S. D, explains:

https://www.forbes.com/sites/lawrencelight/2021/09/11/the-home-title-theft-baloney/

Title theft is not the problem, despite ad claims The booming voice of Bill O’Reilly sounds pretty serious. He’s telling you that by using documents on the internet, title thieves can steal your home without you knowing, sell it or take out loans against it and stick you with the bill. Title theft sounds pretty ominous.

https://www.legalexaminer.com/home-family/title-theft-is-not-the-problem-despite-ad-claims/

Financial Institution/Mortgage Fraud The FBI is committed to aggressively pursuing those who endanger the stability of our banking system and the safety of assets and personal information the public has entrusted to its care. In financial institution fraud (FIF) investigations, the Bureau continues to concentrate its efforts on organized criminal groups that prey on banks and engage in patterns of activity that lead to large aggregate losses. When FIF schemes involve single actors, the FBI prioritizes cases with high losses or significant community impact.

https://www.f

View Details

From all the ads you would think that without one you are in danger. Most of it is hype to trick you into installing a device to track you even more thna your IsP.

Is Your Vpn Hacked Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/is-your-vpn-hacked/

Youtube:

https://youtu.be/om6t8xgJsLc

Rumble:

https://rumble.com/vpni0f-is-your-vpn-hacked.html

iTunes:

https://podcasts.apple.com/us/podcast/is-your-vpn-hacked/id1583788677?i=1000542681225

Spotify:

https://open.spotify.com/episode/3n4hN1eOPt1LDyIuYuIoQR

Trip’s books

https://www.tripelix.com/merch

VPN #Expresvpn #fortinet

ExpressVPN CIO Helped United Arab Emirates Hack Into Phones, Computers

The chief information officer for ExpressVPN once helped the United Arab Emirates orchestrate a massive cyberspying campaign on computers across the globe.

According to the Justice Department, ExpressVPN CIO Daniel Gericke and two others worked as hackers for hire for the UAE to develop “zero-click” attacks capable of breaking into internet accounts and devices, including those in the US.

https://www.pcmag.com/news/expressvpn-cio-helped-united-arab-of-emirates-hack-into-phones-computers

LimeVPN Backup Database Hacked Further discussions with LimeVPN have revealed the claim of 69,000 users being affected was actually an activity log total, with the number of live user accounts closer to 800. LimeVPN also confirmed their website has not been hacked and the claim of all private keys being leaked is false. In reality, 25 WireGuard keys used for beta testing were taken. LimeVPN says, “We have reset all access credentials, shut down wire guard servers and separating our billing infra from marketing info.”

https://www.pcmag.com/news/limevpn-suffers-major-data-breach-over-69k-users-at-risk

Hackers leak passwords for 500,000 Fortinet VPN accounts A threat actor has leaked a list of almost 500,000 Fortinet VPN login names and passwords that were allegedly scraped from exploitable devices last summer.

View Details

from web pages to the dark net what is this place we call the internet?

Internet Basics Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/internet-basics/

Youtube:

https://youtu.be/6P4CMiA_kwE

Rumble:

https://rumble.com/vpl62t-internet-basics.html

iTunes:

https://podcasts.apple.com/us/podcast/internet-basics/id1583788677?i=1000542439381

Spotify:

https://open.spotify.com/episode/2aYKgkjlhKqrnuaHXGQ9ts

Trip’s books

https://www.tripelix.com/merch

tor #internet #bots

The Internet’s Own Boy: The Story of Aaron Swartz (Must Watch Documentary 2014) The Internet’s Own Boy: The Story of Aaron Swartz (Must Watch Documentary 2014)

https://www.youtube.com/watch?v=3Q6Fzbgs_Lg&t=3796s

Tor browser Privacy is a human right

Browse Privately.

Explore Freely.

Defend yourself against tracking and surveillance. Circumvent censorship.

https://www.torproject.org/download/

Bot Attacks Are Increasingly Targeting Businesses. How to Stay Safe Businesses are becoming increasingly aware of the cyber-threat represented by bot attacks. In fact, over 70% of organizations in the e-commerce, entertainment, travel, and financial services sectors display a common understanding of the most common types of operations, such as card cracking or credentials stuffing. What is more, 76% of them state that they have been attacked by bots in the past.

https://heimdalsecurity.com/blog/bot-attacks/

View Details

Stalkerware is a term now in use officially recognized as a thing. Scary but there are tricks and thing i discuss in the cast that others don’t talk about.

Dealing With Stalkers Stalkerware And Location Tracking Avoidance Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/dealing-with-stalkers-stalkerware-and-location-tracking-avoidance/

Youtube:

https://youtu.be/NGwoNfzv_xk

Rumble:

https://rumble.com/vpev97-dealing-with-stalkers-stalkerware-and-location-tracking-prevention.html

iTunes:

https://podcasts.apple.com/us/podcast/dealing-with-stalkers-stalkerware-and-location/id1583788677?i=1000542311458

Spotify:

https://open.spotify.com/episode/2exFBTRmvvedQwMkHSoMqo

Trip’s books

https://www.tripelix.com/merch

View Details

Websites are requiring that you provide a text message for a false sense of security. Two methods of defeating 2nd auth are explained in this episode and a strategy for security that you should adopt.

Problems Plague Second Auth Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/problems-plague-second-auth/

Youtube:

https://youtu.be/g24m8t57QpE

Rumble:

https://rumble.com/vpc44m-problems-plague-second-auth.html

iTunes:

https://podcasts.apple.com/us/podcast/problems-plague-second-auth/id1583788677?i=1000542311339

Spotify:

https://open.spotify.com/episode/7BPLVDdbMK2KgHQ9GqsxJ8

2fa #phishing #2ndauth

A New Phone Scam Bypasses Two-Factor Security Codes ThioJoe

Know about it so you won’t get tricked!

Join the fight against phishing https://phishtank.org/

Timely. Accurate. Relevant Phishing Intelligence. https://openphish.com/

Catching Transparent Phish: Analyzing and Detecting MITM Phishing Toolkits For over a decade, phishing toolkits have been helping attackers automate and streamline their phishing campaigns. Man-in-the- Middle (MITM) phishing toolkits are the latest evolution in this space, where toolkits act as malicious reverse proxy servers of online services, mirroring live content to users while extracting credentials and session cookies in transit. These tools further reduce the work required by attackers, automate the harvesting of 2FA-authenticated sessions, and substantially increase the believability of phishing web pages.

https://catching-transparent-phish.github.io/

View Details

Skimmers are not new, they have existed for years. First introduced using magnetic strips new technology has changed them to be ultra thin and much smarter.

Skimmers Used To Steal Money How It’s Done And What To Watch For Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/skimmers-used-to-steal-money-how-its-done-and-what-to-watch-for/

Youtube:

https://youtu.be/LaOqyTkRGWI

Rumble:

https://rumble.com/vp9o4u-skimmers-used-to-steal-money-how-its-done-and-what-to-watch-for.html

iTunes:

https://podcasts.apple.com/us/podcast/skimmers-used-to-steal-money-how-its-done-and-what-to/id1583788677?i=1000542069434

Spotify:

https://open.spotify.com/episode/2jiTiy1UBUNqK3n9GfBgHQ

Trip’s books

https://www.tripelix.com/merch

Hashtags go here

Costco says card skimmers were found at Chicago-area warehouses, less than 500 people affected The skimmers could read card information from the magnetic stripe of a payment card. In August, Costco found five skimmers on payment card devices in four of their warehouses.

https://www.zdnet.com/article/costco-says-card-skimmers-were-found-at-chicago-area-warehouses-less-than-500-people-affected/

CREDIT CARD SKIMMER Credit cards are loaded with security features, but the game of cat and mouse goes on. Nefarious syndicates continue to develop technology to steal data in new and innovate ways. After SparkFun did a teardown on some illicit hardware, they were visited by local law enforcement, who requested their help once more.

https://hackaday.com/tag/credit-card-skimmer/

All About Skimmers The series I’ve written about ATM skimmers, gas pump skimmers and other related fraud devices have become by far the most-read posts on this blog. I put this gallery together to showcase the entire series, and to give others a handy place to reference all of these stories in one place. Click the headline or the image associated with each blurb for the full story.

https://krebsonsecurity.com/all-about-skimmers/

View Details

The FBI web portal sent a fake cyber alert to thousands and to Brian Krebs who interviewed the hacker

FBI Hacked Spams Thousands Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/fbi-hacked-spams-thousands/

Youtube:

https://youtu.be/fWAfn3_27D4

Rumble:

https://rumble.com/vp89q3-fbi-hacked-spams-thousands.html

iTunes:

https://podcasts.apple.com/us/podcast/fbi-hacked-spams-thousands/id1583788677?i=1000541925215

Spotify:

https://open.spotify.com/episode/78CXjIhF6xrAZMC2jZfLgY

Trip’s books

https://www.tripelix.com/merch

Hashtags go here

Hoax Email Blast Abused Poor Coding in FBI Website The Federal Bureau of Investigation (FBI) confirmed today that its fbi.gov domain name and Internet address were used to blast out thousands of fake emails about a cybercrime investigation. According to an interview with the person who claimed responsibility for the hoax, the spam messages were sent by abusing insecure code in an FBI online portal designed to share information with state and local law enforcement authorities.

https://krebsonsecurity.com/2021/11/hoax-email-blast-abused-poor-coding-in-fbi-website/oo4DhrIcZ+Xx+0UUAfT0jxpFFECbhOtxiigCiiigH/2Q==

FBI messaging system hacked to send fake cybersecurity warnings Hackers have targeted Federal Bureau of Investigation (FBI) mail servers, sending thousands of fake messages saying their recipients have become the victims of a “sophisticated chain attack,” first reported by Beeping computer. The emails were originally discovered by The Spamhaus Project, a nonprofit organization that investigates email spammers.

https://goodwordnews.com/fbi-messaging-system-hacked-to-send-fake-cybersecurity-warnings/

ABOUT EMAIL HEADERS This tool will make email headers human readable by parsing them according to RFC 822. Email headers are present on every email you receive via the Internet and can provide valuable diagnostic information like hop delays, anti-spam results and more. If you need help getting copies of your email headers, just read this tutorial.<!--

-->

View Details

TrickBot, is a financial Trojan first detected in 2016, has been traditionally a Windows-based crimeware solution, employing different modules to perform a wide range of malicious activities on target networks, including credential theft and perpetrating ransomware attacks.

Trickbot Still Infecting Despite Government And Microsoft’s Best Efforts Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/trickbot-still-infecting-despite-government-and-microsofts-best-efforts/

Youtube:

https://youtu.be/A-qoZDCD9f8

Rumble:

rumblelink

iTunes:

ituneslink

Spotify:

spotifylink

Trip’s books

https://www.tripelix.com/merch

trickbot #malware #windows #microsoft #ransomware

2021-03-29 BazaCall (BazarCall) Example “BazaCall” or “BazarCall” is a support scam that entices victims to download and run a malicious Excel spreadsheet that infects a vulnerable Windows computer with BazaLoader (also called BazarLoader) malware. This infection process involves a fake support center and support person who guides you through the process. This video shows an example of how someone might get infected.

Trickbot Rising — Gang Doubles Down on Infection Efforts to Amass Network Footholds IBM X-Force has been tracking the activity of ITG23, a prominent cybercrime gang also known as the TrickBot Gang and Wizard Spider. Researchers are seeing an aggressive expansion of the gang’s malware distribution channels, infecting enterprise users with Trickbot and BazarLoader. This move is leading to more ransomware attacks — particularly ones using the Conti ransomware.

https://securityintelligence.com/posts/trickbot-gang-doubles-down-enterprise-infection/

TrickBot Linux Variants Active in the Wild Despite Recent Takedown Efforts to disrupt TrickBot may have shut down most of its critical infrastructure, but the operators behind the notorious malware aren’t sitting idle. According to new findings shared by cybersecurity firm Netscout, TrickBot’s authors have moved portions of their code to Linux in an attempt to widen the scope of victims that could be targeted

View Details

Bitcoin is slowly being introduced to consumers despite a massive disinformation campaign being waged by credit card companies big data, banks, and a host of others that don’t want a monetary system they cant track.

BitCoin ATMS Part 2 Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/bitcoin-atms-part-2/

Youtube:

https://youtu.be/J0V-X8oodk8

Rumble:

https://rumble.com/vp3d8j-bitcoin-atms-part-2.html

iTunes:

https://podcasts.apple.com/us/podcast/bitcoin-atms-2/id1583788677?i=1000541465414

Spotify:

https://open.spotify.com/episode/5iEVFkHhRdddRebUhEYS6k

Trip’s books

https://www.tripelix.com/merch

bitcoin

View Details

The Social Credit System will be coming to America. I predict it will be shortly after social media is regulated. Government then will then allow it to replace what is used now.

Social Credit Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/social-credit/

Youtube:

https://youtu.be/iftJq0IRSTA

Rumble:

https://rumble.com/vp3fff-social-credit.html

iTunes:

https://podcasts.apple.com/us/podcast/social-credit-revolution-will-you-sit-by-and-be/id1583788677?i=1000541465512

Spotify:

https://open.spotify.com/episode/6e1l0qNOJIRHgRIqd9nKIt

Trip’s books

https://www.tripelix.com/merch

socialcredit

The complicated truth about China’s social credit system China’s social credit system has been compared to Black Mirror, Big Brother and every other dystopian future sci-fi writers can think up. The reality is more complicated — and in some ways, worse.

https://wired.co.uk/article/china-social-credit-system-explained

China’s ‘social credit’ system ranks citizens and punishes them with throttled internet speeds and flight bans if the Communist Party deems them untrustworthy

China has been rolling out a system that ranks its citizens based on their “social credit.”

People can be punished if they drive badly, buy too many video games, or steal.

It’s not yet a unified, nationwide system, but China plans on eventually making it mandatory for everyone.

https://www.businessinsider.com/china-social-credit-system-punishments-and-rewards-explained-2018-4

View Details

Bitcoin is slowly being introduced to consumers despite a massive disinformation campaign being waged by credit card companies big data, banks, and a host of others that don’t want a monetary system they cant track.

BitCoin ATMS Are Coming To Stores And Banks Near Where You Live Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/bitcoin-atms-are-coming-to-stores-and-banks-near-where-you-live/

Youtube:

https://youtu.be/Tl9JMGJI5O8

Rumble:

https://rumble.com/voxsrt-bitcoin-atms.html

iTunes:

https://podcasts.apple.com/us/podcast/bitcoin-atms/id1583788677?i=1000541205975

Spotify:

https://open.spotify.com/episode/4VSzTTPETz2eVhiAjks7Sf

Trip’s books

https://www.tripelix.com/merch

bitcoin #ATM #BITCOINATM

Walmart Has Quietly Begun Hosting Bitcoin ATMs Walmart, the world’s largest company by revenue, is letting customers buy bitcoin at dozens of its U.S. stores.

Shoppers can purchase the cryptocurrency at Coinstar machines inside the retailer’s cavernous big box stores. A CoinDesk editor verified that the service works, buying a small amount of BTC at a Pennsylvania Walmart on Oct. 12.

https://www.coindesk.com/business/2021/10/21/walmart-has-quietly-begun-hosting-bitcoin-atms/

What is a Bitcoin ATM?

Bitcoin ATM (abbreviated as BATM) is a kiosk that allows a person to buy Bitcoin using an automatic teller machine. Some Bitcoin ATMs offer bi-directional functionality enabling both the purchase of Bitcoin as well as the sale of Bitcoin for cash. Bitcoin machines are not exactly the same as traditional ATMs but work in a similar fashion.

https://www.bitcoin.com/bitcoin-atm/

ALEN ŠALAMUN

BC Wallet

World’s Safest

Hardware Crypto Wallet

https://www.tripelix.com/create/2021/05/20/alen-salamun-msc-it-security-bcvault/

View Details

Encrypting your communication is not about hiding from anyone. It is taking back what is yours in the first place, no one has the right to monitor every aspect of your life. Big data and its cohorts have violated our trust so now, it’s for us to secure ourselves.

Encrypting Your Communications Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Encrypting Your Communications Links

Our Website:

https://www.tripelix.com/insecurity/encrypting-your-communications/(

Youtube:

https://youtu.be/bAzafxb_YOw

Rumble:

https://rumble.com/vov8jt-encrypting-your-communications.html

iTunes:

https://podcasts.apple.com/us/podcast/encrypting-your-communications/id1583788677?i=1000541083257

Spotify:

https://open.spotify.com/episode/2vsTY7XoKg8NEhsjqbKqhV

Trip’s books

https://www.tripelix.com/merch

encryption

Viber Free and secure calls and messages to anyone, anywhere

https://www.viber.com/en/

Signal Speak Freely

Say “hello” to a different messaging experience. An unexpected focus on privacy, combined with all of the features you expect.

https://signal.org/en/

Telegram a new era of messaging

https://telegram.org/

Paranoia Works Mobile Secret Space Encryptor

Android

Paranoia Text Encryption

iOS (iPhone/iPad/iPod)

https://paranoiaworks.mobi/

View Details

US corporations spying operations are not acceptable in some parts of the globe. now there is push back from many to curb invasions including recording cell phone calls, reading emails, and text messages

Global Call To End Spyware Used To Facilitate Human Rights Violations Around The World Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/global-call-to-end-spyware-used-to-facilitate-human-rights-violations-around-the-world/

Youtube:

https://youtu.be/lpyYV7nQvmE

Rumble:

https://rumble.com/voqcs1-global-call-to-end-spyware-used-to-facilitate-human-rights-violations-aroun.html

iTunes:

https://podcasts.apple.com/us/podcast/global-call-to-end-spyware-used-to-facilitate-human/id1583788677?i=1000540851329

Spotify:

https://open.spotify.com/episode/6WVMbQMuZWiVoAH1yAe3o5

Trip’s books

https://www.tripelix.com/merch

spyware

US Sanctions Pegasus-maker NSO Group and 3 Others For Selling Spyware The U.S. Commerce Department on Wednesday added four companies, including Israel-based spyware companies NSO Group and Candiru, to a list of entities engaging in “malicious cyber activities.”

https://thehackernews.com/2021/11/us-sanctions-pegasus-maker-nso-group.html

U.S. Department of Commerce Commerce Adds NSO Group and Other Foreign Companies to Entity List for Malicious Cyber Activities The Commerce Department’s Bureau of Industry and Security (BIS) has released a final rule adding four foreign companies to the Entity List for engaging in activities that are contrary to the national security or foreign policy interests of the United States. The four entities are located in Israel, Russia, and Singapore.

https://www.commerce.gov/news/press-releases/2021/11/commerce-adds-nso-group-and-other-foreign-companies-entity-list

View Details

Ransomware as a service (RaaS) is a subscription-based model that enables affiliates to use already-developed ransomware tools to execute ransomware attacks. Affiliates earn a percentage of each successful ransom payment. Ransomware as a Service (RaaS) is an adoption of the Software as a Service (SaaS) business model.

Ransomware Group Quits International Feds Going After Renting Ransomware Attacks Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/ransomware-group-quits-international-feds-going-after-renting-ransomware-attacks/

Youtube:

https://youtu.be/Wr_4zFKFxI8

Rumble:

https://rumble.com/vooxnh-ransomware-group-quits-international-feds-going-after-renting-ransomware-at.html

iTunes:

https://podcasts.apple.com/us/podcast/ransomware-group-quits-international-feds-going-after/id1583788677?i=1000540718566

Spotify:

https://open.spotify.com/episode/5J56Z3RQyTyQlTKDkEndDC

Trip’s books

https://www.tripelix.com/merch

Ransomware

BlackMatter Ransomware Reportedly Shutting Down; Latest Analysis Released An analysis of new samples of BlackMatter ransomware for Windows and Linux has revealed the extent to which the operators have continually added new features and encryption capabilities in successive iterations over a three-month period. No fewer than 10 Windows and two Linux versions of the ransomware have been observed in the wild to date, Group-IB threat researcher Andrei Zhdanov said in a report shared with The Hacker News, pointing out the changes in the implementation of the ChaCha20 encryption algorithm used to encrypt the contents of the files.

https://thehackernews.com/2021/11/blackmatter-ransomware-reportedly.html

RANSOMWARE AS A SERVICE (RAAS) EXPLAINED Ransomware as a Service (RaaS) is a business model used by ransomware developers, in which they lease ransomware variants in the same way that legitimate software developers lease SaaS products. RaaS gives everyone, even people without much technical knowledge, the ability to launch ransomware attacks just by signing up for a se

View Details

US games developer Epic Games announced on Monday that it would end its three-year “testing” of Fortnite, its massively-popular shooting game, in China on November 15.

China Boots Fortnite Over Concerns Limiting Childrens Time To Play Games Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/china-boots-fortnite-over-concerns-limiting-childrens-time-to-play-games/

Youtube:

https://youtu.be/P5i70sKyGpg

Rumble:

https://rumble.com/vonuvf-china-boots-fortnite-over-concerns-limiting-childrens-time-to-play-games.html

iTunes:

https://podcasts.apple.com/us/podcast/china-boots-fortnite-over-concerns-limiting-childrens/id1583788677?i=1000540593472

Spotify:

spotifylinkhttps://open.spotify.com/episode/1TIVy2A983WRZNA2dVgWvt

Trip’s books

https://www.tripelix.com/merch

Hashtags go here#fortnite #china #google #chrome #update

Google Releases Urgent Chrome Update to Patch 2 Actively Exploited 0-Day Bugs Google on Thursday rolled out an emergency update for its Chrome web browser, including fixes for two zero-day vulnerabilities that it says are being actively exploited in the wild.

https://thehackernews.com/2021/10/google-releases-urgent-chrome-update-to.html

Hit titles Fortnite and DnF pause on China amid Beijing’s regulatory crackdown on gaming industry Global hit games Fortnite and the Dungeon & Fighter (DnF) Mobile have hit the pause button on China, the world’s largest gaming market, as it has become increasingly hard to get Beijing’s approval for their release in the country.

https://www.scmp.com/tech/policy/article/3154611/hit-titles-fortnite-and-dnf-pause-china-amid-beijings-regulatory

View Details

A man got caught streaming MLB NBA NFL NHL networks and offering them cheaper than the sports networks. The Domain still exists in a pool of others the question is what does the MPAA have up its sleeve?

Pirate Website Streaming MLB NBA NFL NHL Sized What The MPAA And Amazon Have To Do With Enforcing Sports Streaming Services Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/pirate-website-streaming-mlb-nba-nfl-nhl-sized-what-the-mpaa-and-amazon-have-to-do-with-enforcing-sports-streaming-services/

Youtube:

https://youtu.be/qJOB_NRVUjc

Rumble:

https://rumble.com/vonuld-pirate-website-streaming-mlb-nba-nfl-nhl-sized.html

iTunes:

https://podcasts.apple.com/us/podcast/pirate-website-streaming-mlb-nba-nfl-nhl-sized/id1583788677?i=1000540479022

Spotify:

https://open.spotify.com/episode/14yLjfLELLcldPa7oSUj5J

Trip’s books

https://www.tripelix.com/merch

Streaming #mpaa #NHL MLB #NBA #NFL

Financial Times The FT Group, part of Nikkei Inc., provides a broad range of information, news and services to ambitious individuals and organisations

https://aboutus.ft.com/company

RIAA v. The People: Five Years Later September 2008

I. Prelude: Sue The Technology

II. Phase One: DMCA Subpoenas by the Thousands

III. Phase Two: Mass John Doe Lawsuits

IV. Personal Effects = Devastating

V. Fighting Back

VI. Phase Three: Targeting Higher Education

VII. Is it Working?

What to Do Instea

https://www.eff.org/wp/riaa-v-people-five-years-later#5

Six Alleged Piracy Sites Shuttered After MPAA Files Lawsuit A lawsuit filed last month by the MPPA and the major Hollywood studios against operators of an alleged ring of piracy sites has been unsealed, showing that those sites have been shut down by a judge’s order.

https://deadline.com/2017/03/movie-piracy-lawsuit-pubfilm-mpaa-1202041391/

View Details

A victory is being heralded around the world for bringing down the Darkmarket but there is more to the story. The operation dubbed Dark HunTOR was after the Darkmarket consisted of a series of separate complementary actions in Australia, Bulgaria, France, Germany, Italy, the Netherlands, Switzerland, the United Kingdom, and the United States.

International DarkMarket Seized Police Arrest 150 And Miss Thousands Of Users & Vendors Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/international-darkmarket-seized-police-arrest-150-and-miss-thousands-of-users-vendors/

Youtube:

https://youtu.be/5RlGijuHUqo

Rumble:

https://rumble.com/vontrz-international-darkmarket-seized-police-arrest-150-and-miss-thousands-of-use.html

iTunes:

https://podcasts.apple.com/us/podcast/international-darkmarket-seized-police-arrest-150-and/id1583788677?i=1000540351865

Spotify:

https://open.spotify.com/episode/565iVxTsvGMXGzxoeMa21p

Trip’s books

https://www.tripelix.com/merch

DARKMARKET #drugbust #tor #darknet

Dark Web Drug Busts Lead to 150 Arrests WHEN GERMAN POLICE took down the dark web marketplace DarkMarket in January, they did more than shutter the largest underground online drug bazaar operating at that time. They also nabbed more than 20 servers in Moldova and Ukraine, infrastructure that contained a host of information about the site’s buyers and sellers

https://www.wired.com/story/dark-web-drug-takedown-operation-dark-huntor/

“Operation Dark HunTOR”, a global puncture wound on the “Dark Web”, puts 150 suspects online

According to Europol, police around the world have arrested 150 suspects involved in the online sale of illegal goods in one of the largest puncture wounds in history targeting the dark web. Operation DarkHunTOR also recovered millions of euros in cash and bitcoins, as well as drugs and guns. The bust is due to German-led police destroying the “world’s largest” darknet marketplace earlier this year.

https://eminetra.com/operation-dark-huntor-a-global-puncture-wound-on-the-dark-web-

View Details

Understanding the risks of internet security is the first part of creating a plan for securing your own personal devices. Trip Elix has years in the industry and has been using the internet, since the second day it was available to the public. A lot has changed since then. News other organizations lied about needing basic internet security. Back then people often had no firewall and when it was introduced another lie was made of what a firewall was. Nat -Network Address Translation was never meant to offer security but that is what most so-called firewalls are. Security has been left to you to perform with your own devices before becoming another unwitting victim of technological collateral damage.

Basic Internet Security For more internet security tips reach out to me on Twitter

Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/basic-internet-security/(opens in a new tab)

Youtube:

https://youtu.be/zxk5e1GMGRQ

Rumble:

https://rumble.com/vont2d-basic-internet-security.html

iTunes:

https://podcasts.apple.com/us/podcast/basic-internet-security/id1583788677?i=1000540079216

Spotify:

https://open.spotify.com/episode/4tL64OWeBU2JlizGdWZlC5

Trip’s books

https://www.tripelix.com/merch

router #wifi #phone #iphone

View Details

The Federal Trade Commission released a report on what internet service providers know about you. The report discloses that all, track and record much more than you may realize.

FTC Report: Your ISP is Spying On You And Your Entire Family Every Action Location And More. Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from

Links

Our Website:

https://www.tripelix.com/insecurity/ftc-report-your-isp-is-spying-on-you-and-your-entire-family-every-action-location-and-more/

Youtube:

https://youtu.be/G94rrsjiZgs

Rumble:

https://rumble.com/vonsn5-ftc-report-your-isp-is-spying-on-you-and-your-entire-family-every-action-lo.html

iTunes:

https://podcasts.apple.com/us/podcast/ftc-report-your-isp-is-spying-on-you-and-your-entire/id1583788677?i=1000539976606

Spotify:

https://open.spotify.com/episode/67De0EOEos5QptjoyPxrYz

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Trip’s books

https://www.tripelix.com/merch

FTC #AT&TMobility #Veizon #Xfinity #Charter #Tmobile #googlefiber

FTC Staff Report Finds Many Internet Service Providers Collect Troves of Personal Data, Users Have Few Options to Restrict Use October 21, 2021

Report finds many ISPs use web browsing data and group consumers using sensitive characteristics such as race and sexual orientation

https://www.ftc.gov/system/files/documents/reports/look-what-isps-know-about-you-examining-privacy-practices-six-major-internet-service-providers/p195402_isp_6b_staff_report.pdf

View Details

Suspected Russian spies have continued targeting and aiming to compromise 140 technology service providers in recent months, according to Microsoft.

Microsoft Alert!! Russians Attempt Hacking 140 Technology Providers to Access It’s Customer’s Data Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hope to give information and provide insights from

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/microsoft-warns-russians-attempt-hacking-140-technolgy-providers-to-access-to-its-customers-data/

Youtube:

https://youtu.be/nQwHqjlJ8Mw

Rumble:

https://rumble.com/vobj45-microsoft-alert-russians-attempt-hacking-140-technology-providers-to-access.html

iTunes:

https://podcasts.apple.com/us/podcast/microsoft-warns-russians-attempt-hacking-140-technology/id1583788677?i=1000539857335

Spotify:

https://open.spotify.com/episode/5qrrP2IE7vGq8OvJpr11af

Trip’s books

https://www.tripelix.com/merch

Hashtags go here

Russian spies compromised 14 tech providers, aiming to ‘piggyback’ on customer access, Microsoft says Suspected Russian spies who exploited a federal contractor to breach nine U.S. government agencies last year have continued targeting technology supply chains, aiming to compromise 140 technology service providers in recent months, according to Microsoft.

https://www.cyberscoop.com/russian-hackers-microsoft-government-breach/

Russian government hackers are behind a broad espionage campaign that has compromised U.S. agencies, including Treasury and Commerce Russian government hackers breached the Treasury and Commerce departments, along with other U.S. government agencies, as part of a global espionage campaign that stretches back months, according to people familiar with the matter.

https://www.washingtonpost.com/national-security/russian-government-spies-are-behind-a-broad-hacking-campaign-that-has-breached-us-agencies-and-a-top-cyber-firm/2020/12/13/d5a53b88-3d7d-11eb-9453-fc36ba051781_story.html

View Details

Facebook attempts to make headlines filing law suits while whistle blower pushes Parliament and other governments to regulate the global company

Facebook Whistleblower Testifies With UK Parliament Pushing Global Regulation Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. The suppression of information is a danger to all of us. Social media attempts to shape news and information by over-amplification of disinformation. This podcast hopes to give information and provide insights from a different point of view.

followthewhiterabbit

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/facebook-whistleblower-testifies-with-uk-parliament-pushing-global-regulation/

Youtube:

https://youtu.be/H0V7nVLY4u0

Rumble:

https://rumble.com/vo8gxp-facebook-whistleblower-testifies-with-uk-parliament-pushing-global-regulati.html

iTunes:

https://podcasts.apple.com/us/podcast/facebook-whistleblower-testifies-with-uk-parliament/id1583788677?i=1000539735126

Spotify:

https://open.spotify.com/episode/2ivwF4kKEu4o2PefekJ6wC

Trip’s books

https://www.tripelix.com/merch

Facebook #whistelblower #scrape @arrest

Facebook sues Ukrainian who scraped the data of 178 million users Facebook has filed a lawsuit on Friday against a Ukrainian national for allegedly scraping its website and selling the personal data of more than 178 million users on an underground cybercrime forum.

https://therecord.media/facebook-sues-ukrainian-who-scraped-the-data-of-178-million-users/

Facebook sues two companies engaged in data scraping operations Facebook today says it has filed a lawsuit in the U.S. against two companies that had engaged in an international “data scraping” operation. The operation extended across Facebook properties, including both Facebook and Instagram, as well as other large websites and services, including Twitter, Amazon, LinkedIn and YouTube. The companies, which gathered the data of Facebook users for “marketing intelligence” purposes, did so in violation of Facebook’s Terms of Service, says Facebook.

https://techcrunch.com/2020/10/01/facebook-sues-two-companies-engaged-in-data-scraping-operations/

View Details

The Hacker News Website Deleted By Google & Left With No Back Up Reaches Google Mgt On Twitter Episode 31 Last Friday Google erased The Hacker News Website leaving the company with no web presence. It reversed its decision and reinstated the website after The Hacker News staff reached out to Google employees on Twitter.

Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. Honey Beez and Trip Elix have unique experiences to share in an unpaired podcast experience.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow me on Twitter

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/the-hacker-news-website-deleted-by-google-left-with-no-back-up-reaches-google-mgt-on-twitter/

Youtube:

https://youtu.be/32DmQhlYd6E

Rumble

https://rumble.com/vo6q7z-the-hacker-news-website-deleted-by-google-and-left-with-no-back-up-reaches-.html

iTunes:

https://podcasts.apple.com/us/podcast/the-hacker-news-website-deleted-by-google-left-with/id1583788677?i=1000539601482

Spotify:

https://open.spotify.com/episode/7EnFiWWhtyVgwMaqWED7Z4

Trip’s books

https://www.tripelix.com/merch

twtter #twittersupport #google #thehackernews #phishing #winrar

WinRAR’s vulnerable trialware: when free software isn’t free In this article we discuss a vulnerability in the trial version of WinRAR which has significant consequences for the management of third-party software. This vulnerability allows an attacker to intercept and modify requests sent to the user of the application.

https://swarm.ptsecurity.com/winrars-vulnerable-trialware-when-free-software-isnt-free/

Google unmasks two-year-old phishing & malware campaign targeting YouTube users Almost two years after a wave of complaints flooded Google’s support forums about YouTube accounts getting hijacked even if users had two-factor authentication enabled, Google’s security team has finally tracked down the root cause of these attacks.

https://therecord.media/google-unmasks-two-year-old-phishing-malware-campaign-targeting-youtube-users/

“URGENT HELP REQUIRED (from Google’s Blogger Team) Google, for unknown reasons, has deleted http://thehackernews.com website from its servi

View Details

A new email extortion scam (bomb threat hoax) is finding its way to the inboxes of businesses, namely financial institutions. The sender suggests an accomplice has planted a bomb within the recipient’s building that will be detonated if a bitcoin ransom is not paid by the end of the workday.

Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. Honey Beez and Trip Elix have unique experiences to share in an unpaired podcast experience.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow us on Twitter

@HoneyBeez0x

@trip_elix

Links

Oracle Quarterly Critical Patches Issued October 19, 2021

OVERVIEW:

Multiple vulnerabilities have been discovered in Oracle products, which could allow for remote code execution.

SYSTEMS AFFECTED:

•Affected Products and Versions

•Enterprise Manager Base Platform, versions 13.4.0.0, 13.5.0.0

•Enterprise Manager for Oracle Database, version 13.4.0.0

•Enterprise Manager Ops Center, version 12.4.0.0

•Essbase Administration Services, versions prior to 11.1.2.4.46

•Hyperion Financial Management, versions 11.1.2.4, 11.2.6.0

•Hyperion Financial Reporting, versions 11.1.2.4, 11.2.6.0

•Hyperion Infrastructure Technology, version 11.2.6.0

•Hyperion Planning, versions 11.1.2.4, 11.2.6.0

•Instantis EnterpriseTrack, versions 17.1, 17.2, 17.3

•JD Edwards EnterpriseOne Orchestrator, versions prior to 9.2.6.0

•JD Edwards EnterpriseOne Tools, versions prior to 9.2.6.0

•JD Edwards World Security, version A9.4

•MySQL Client, versions 8.0.26 and prior

•MySQL Cluster, versions 7.4.33 and prior, 7.5.23 and prior, 7.6.19 and prior, 8.0.26 and prior

•MySQL Connectors, versions 8.0.26 and prior

•MySQL Enterprise Monitor, versions 8.0.25 and prior

•MySQL Server, versions 5.7.35 and prior, 8.0.26 and prior

•MySQL Workbench, versions 8.0.26 and prior

•Oracle Agile PLM, versions 9.3.3, 9.3.6

•Oracle Application Express, versions prior to 21.1.0

•Oracle Application Testing Suite, version 13.3.0.1

•Oracle Autovue for Agile Product Lifecycle Management, version 21.0.2

•Oracle Banking Cash Management, versions 14.2, 14.3, 14.5

•Oracle Banking Corporate Lending Process Management, versions 14.2, 14.3, 14.5

•Oracle Banking Credit Facilities Process Management, versions 14.2, 14.3, 14.5

•Oracle Banking Enterprise Default Management, versions 2.10.0, 2.12.0

•Oracle Banking Extensibility Workbench, versions 14.2, 14.3, 14.5

•Oracle Banking Platform, versions 2.6.2, 2.7.1, 2.9.0, 2.12.0

•Oracle Banking Supply Chain Finance, versions 14.2, 14.3, 14.5

•Oracle Banking Trade Finance Process Management, versions 14.2, 14.3, 14.5

•Oracle Banking Virtual Account Management, versions 14.2, 14.3, 14.5

•Oracle Business Activity Monitoring, versions 11.1.1.9.0, 12.2.1.3.0, 12.2.1.4.0

•Oracle Business Intelligence Enterprise Edition, versions 5.5.0.0.0, 12.2.1.3.0, 12.2.1.4.0

•Oracle Commerce Guided Search, version 11.3.2

•Oracle Commerce Merchandising, version 11.3.2

•Oracle Communications Application Session Controller, version 3.9

•Oracle Communications Billing and Revenue Management, versions 7.5.0.0.0, 12.0.0.3.0

•Oracle Communications BRM – Elastic Charging Engine, version 12.0.0.3

•Oracle Communications Calendar Server, version 8.0.0.6.0

•Oracle Communications Cloud Native Core Network Repository Function, version 1.14.0

•Oracle Communications Cloud Native Core Policy, version 1.11.0

•Oracle Communications Control Plane Monitor, versions 3.4, 4.2, 4.3, 4.4

•Oracle Communications Converged Application Server – Service Controller, version 6.2

•Oracle

View Details

Artificial intelligence is sexist to credit scoring, racist to sick African American patients, and became a jerk not on Twitter. A new ethical AI company tries to tackle the problem.

Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. Honey Beez and Trip Elix have unique experiences to share in an unpaired podcast experience.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow us on Twitter

@HoneyBeez0x

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/artificial-intelligence-ethics-questioned-a-demand-for-accountability-set-by-new-venture/

Youtube:

https://youtu.be/2dwJz8cUoLU"

iTunes:

https://podcasts.apple.com/us/podcast/artificial-intelligence-ethics-questioned-a-demand/id1583788677?i=1000539257721

Spotify:

https://open.spotify.com/episode/0jA8aZJxCd1Z1n0AvFFpxi

Trip’s books

https://www.tripelix.com/merch

Honey’s books

https://beedefense.net

unethicalAi #Ransomware #Stalkerware #AI #Ethics

Over 30 Countries Pledge to Fight Ransomware Attacks in US-led Global Meeting Representatives from the U.S., the European Union, and 30 other countries pledged to mitigate the risk of ransomware and harden the financial system from exploitation with the goal of disrupting the ecosystem, calling it an “escalating global security threat with serious economic and security consequences.”

https://thehackernews.com/2021/10/over-30-countries-pledge-to-fight.html

A massive ‘stalkerware’ leak puts the phone data of thousands at risk The private phone data of hundreds of thousands of people are at risk. Call records, text messages, photos, browsing history, precise geolocations and call recordings can all be pulled from a person’s phone because of a security issue in widely used consumer-grade spyware.

https://techcrunch.com/2021/10/19/stalkerware-security-phone-data-thousands/

Credo AI launches backed by $5.5 million to help companies with ‘ethical AI’ There are many in the world of AI who worry about its implications. One of those people is Navrina Singh, a former product manager for Qualcomm, then Microsoft, who saw firsthand at Microsoft how a Twitter bot it developed in 2016 as an experiment in “conversational understanding,” was, to quote The Verge, “taught to be a racist asshole in less than a day.

View Details

A joint alert issued by federal agencies warns organizations involved in the water and wastewater management sector to remain on high alert. Threat actors with unauthorized access may manipulate systems so as to prevent the provisioning of clean water to America’s communities.

Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. Honey Beez and Trip Elix have unique experiences to share in an unpaired podcast experience.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow us on Twitter

@HoneyBeez0x

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/fbi-cisa-nsa-and-epa-warn-cyber-criminals-targeting-water-control-systems/

Youtube:

https://youtu.be/UdM19BH9ais

iTunes:

https://podcasts.apple.com/us/podcast/fbi-cisa-nsa-and-epa-warn-cyber-criminals-targeting/id1583788677?i=1000539146007

Spotify:

https://open.spotify.com/episode/239zX7BZ8nEfR0QlxDnP2m

Trip’s books

https://www.tripelix.com/merch

Honey’s books

https://beedefense.net

infrastructure #google #amazon #zoox #google

FBI, CISA warn water facility operators of ongoing malicious cyber activity Ransomware attackers are continuing to target water and wastewater facilities, U.S. intelligence and law enforcement officials warned in a bulletin based on incidents in five states.

https://www.cyberscoop.com/fbi-cisa-ransomware-hacking-warning/

Amazon’s Zoox is expanding autonomous vehicle operations, testing to Seattle Zoox, the autonomous vehicle startup acquired last year by Amazon, is expanding to Seattle. The company plans to open in 2022 an engineering office and operations facility, which will act as a base for its autonomous vehicle testing,

Amazon’s Zoox is expanding autonomous vehicle operations, testing to Seattle

Google: We’re Tracking 270 State-Sponsored Hacker Groups From Over 50 Countries Google’s Threat Analysis Group (TAG) on Thursday said it’s tracking more than 270 government-backed threat actors from more than 50 countries, adding it has approximately sent 50,000 alerts of state-sponsored phishing or malware attempts to customers since the start of 2021.

View Details

Microsoft’s record of abysmal response times to remove malware from its 365 one drive product, is furthering risks of malware and ransomware by allowing further infection through inaction.

Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. Honey Beez and Trip Elix have unique experiences to share in an unpaired podcast experience.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow us on Twitter

@HoneyBeez0x

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/microsoft-serves-malware-slow-response-time-furthers-risks-to-entire-internet/

Youtube:

https://youtu.be/I37E_oWtA14

iTunes:

https://podcasts.apple.com/us/podcast/microsoft-serves-malware-slow-response-time-furthers/id1583788677?i=1000539031310

Spotify:

https://open.spotify.com/episode/7uPb9mhncVdxGaH5yiYIu4

Trip’s books

https://www.tripelix.com/merch

Honey’s books

https://beedefense.net

microsoft #malware #Amazon #VPN

Home Ministry Proposes Ban on VPN Services: Should You Be Worried? At the beginning of this month, the Indian Home Ministry made a startling proposal to ban VPN services such as NordVPN, ExpressVPN, etc., which sent shock waves across the digital community.

https://cloudsek.com/home-ministry-proposes-ban-on-vpn-services-should-you-be-worried/

Former Microsoft Analyst: Office 365 has been knowingly hosting malware for years Malware on Windows devices has become a real problem in recent years, specifically due to a recent increase in ransomware. It seems that Microsoft is trying to address this issue but what if Microsoft is part of the problem?

https://en.secnews.gr/370066/prwin-analitis-microsoft-office-365-filoksenouse-en-gnwsi-tou-malware-xronia/

Kevin Beaumont @GossiTheDog Before the train of MS employees arrive saying ‘just report it’, try getting them and future ones taken down yourselves. I did. It was a disaster.

Check out Microsoft’s average reaction time (to abuse reports). They’re world’s best malware hoster for about a decade, due to O365.

https://twitter.com/GossiTheDog/status/1449094895298392067

TheAnalyst @ffforward L

View Details

A report by Sophos reviled a dating app scam that led to the theft of millions of dollars from people on Tinder, Bumble, Facebook Dating and similar apps. Scammers convinced victims to download fake crypto apps, where they duped them into investing money before freezing the accounts.

Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. Honey Beez and Trip Elix have unique experiences to share in an unpaired podcast experience.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow us on Twitter

@HoneyBeez0x

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/tinder-and-bumble-scams-rake-in-millions-in-bitcoin-abusing-iphone-victims/

Youtube:

https://youtu.be/JSp-VUhFY1I

iTunes:

https://podcasts.apple.com/us/podcast/tinder-and-bumble-scams-rake-in-millions-in-bitcoin/id1583788677?i=1000538897964

Spotify:

https://open.spotify.com/episode/709GyHWXQi7giaF4rfrOFD

Trip’s books

https://www.tripelix.com/merch

Honey’s books

https://beedefense.net

LinkedIn #Apple #Dating #iPhone

Daily Crunch: Citing regulatory restrictions, Microsoft shuts down LinkedIn in China Microsoft made waves in technology, regulatory and international domains today by announcing the eventual end of its LinkedIn service in China. The company had previously made certain profiles unavailable in the country due to regulatory pressure.

Daily Crunch: Citing regulatory restrictions, Microsoft shuts down LinkedIn in China

iPhone users ripped off at least $1.4 million through Bumble and Tinder scams Cybersecurity company Sophos has released new insight on international cryptocurrency trading scam targeting iPhone users through popular dating apps. Researchers claim that attackers have expanded from targeting people in Asia to including users in the US and Europe.

https://cybernews.com/news/iphone-users-ripped-off-at-least-1-4-million-through-bumble-and-tinder-scams/

Worried Over Antitrust Debate, Apple Talks Sideloading Dangers Apple released a position paper on Oct. 13, arguing that forcing the company to open its App Store software-distribution platform to allow third-party software sellers to install software — a process often called “sideloading” — would undermine the security of iOS devices.

https://www.darkreading.com/application-security/worried-over-anti-trust-debate-apple-talks-

View Details

Customers were forced to rant on social media, many had lost control of their accounts, passwords and addresses had been changed in the system leaving them with no way to contact the company for support.

Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. Honey Beez and Trip Elix have unique experiences to share in an unpaired podcast experience.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow us on Twitter

@HoneyBeez0x

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/verizon-accounts-hijacked-unauthorized-iphone-purchases-changed-password-no-support/

Youtube:

https://youtu.be/NDYXgMnOBRQ

iTunes:

https://podcasts.apple.com/us/podcast/verizon-accounts-hijacked-unauthorized-iphone-purchases/id1583788677

Spotify:

https://open.spotify.com/episode/2gnYx95uMCzgva9uKPxb80

Trip’s books

https://www.tripelix.com/merch

Honey’s books

https://beedefense.net

Hashtags go here

Robot Dogs Now Have Assault Rifles Mounted On Their Backs Ghost Robotics and SWORD International have teamed up to create a rifle-toting “robot dog.” Called the Special Purpose Unmanned Rifle, or SPUR, the system adds a 6.5mm Creedmoor rifle from SWORD to one of Ghost Robotics’ quadrupedal unmanned ground vehicles, or Q-UGVs.

https://www.thedrive.com/the-war-zone/42717/robot-dogs-can-now-have-6-5mm-assault-rifles-mounted-on-their-backs

Microsoft stops record-breaking 2.4 Tbps DDoS attack In a Monday blog post, Microsoft said that an undisclosed European Azure cloud platform customer suffered a record-breaking 2.4 Tbps (terabytes per second) distributed denial-of-service (DDoS) attack. Thankfully, it was mitigated by Azure’s DDoS protection platform.

https://cybernews.com/news/microsoft-stops-record-breaking-ddos-attack/

Verizon’s Visible Wireless Carrier Confirms Credential-Stuffing Attack On Wednesday, Verizon’s Visible – an all-digital, uber-cheap wireless carrier – confirmed what customers have been complaining about on Reddit and Twitter all week: They lost control of their accounts; had their passwords and shipping addresses changed; and some got stuck with bills for pricey new iPhones.

https://threatpost.com/verizon-visible-wireless-credential-stuffing/175483/

View Details

A Company that routes SMS for global telecom carriers admitted that it was hacked for five years. In May 2021, Syniverse became aware of unauthorized access to its operational and information technology systems by an unknown individual or organization.

Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. Honey Beez and Trip Elix have unique experiences to share in an unpaired podcast experience.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow us on Twitter

@HoneyBeez0x

@trip_elix

inks

Our Website: https://www.tripelix.com/insecurity/sms-message-backend-hacked-potentially-affecting-millions-of-cellphone-users-worldwide

Youtube https://youtu.be/T6eyyCFgmUM

the link to the podcast itunes:https://podcasts.apple.com/us/podcast/sms-message-backend-hacked-potentially-affecting-millions/id1583788677

Spotify:https://open.spotify.com/episode/3ly8Nw6w3YrBdv4ZtfCoIS

Trip’s books

https://www.tripelix.com/merch

Honey’s books

https://beedefense.net

Biometric #SMS #hack #trump

Fingerprint cloning: Myth or reality?

Passwords are the traditional authentication methods for computers and networks. But passwords can be stolen. Biometric authentication seems the perfect solution for that problem. There are several kinds of biometric authentication, including retina scanning, facial recognition and fingerprint authentication, the most common one. Everyone’s fingerprints are unique, and it is commonly accepted that they can identify a person without being reproduced.

https://blog.talosintelligence.com/2020/04/fingerprint-research.html

Company That Routes Billions of Text Messages Quietly Says It Was Hacked A company that is a critical part of the global telecommunications infrastructure used by AT&T, T-Mobile, Verizon and several others around the world such as Vodafone and China Mobile, quietly disclosed that hackers were inside its systems for years, impacting more than 200 of its clients and potentially millions of cellphone users worldwide.

https://www.vice.com/en/article/z3xpm8/company-that-routes-billions-of-text-messages-quietly-says-it-was-hacked

Donald Trump hacked site by the Turkish RootAyyildiz and the 1877 Team

The well-known Turkish hacker RootAyyildiz Turkish Defacer, the “

View Details

Instagram initiates a response to criticism of teen users and its platform and now will tell children to “take a break”, will “push” users to watch less violent videos that regularly delivered content and will allow adults to monitor teen's accounts.

Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. Honey Beez and Trip Elix have unique experiences to share in an unpaired podcast experience.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow us on Twitter

@HoneyBeez0x

@trip_elix

Links

Our Website: https://www.tripelix.com/insecurity/instagram-new-behavior-control-openly-manipulates-children-to-obey-ai-computer-messages/

Youtube https://youtu.be/neuHApVEr-A

the link to the podcast itunes:https://podcasts.apple.com/us/podcast/instagram-new-behavior-control-openly-manipulates-children/id1583788677?i=1000538427054

Spotify:

Trip’s books

https://www.tripelix.com/merch

Honey’s books

https://beedefense.net

Android #google #Gamil #outlook #instagram #navy #facebook

Gmail and Outlook users should delete these emails immediately According to experts, consumers are targeted through its e-mail service Google, as well as Outlook, with emails falsely claiming to offer free gift cards to those who complete a survey. The alarming warning comes through Which?, which urged anyone receiving such emails to delete them immediately.

https://en.secnews.gr/369056/xrhstes-gmail-outlook-prepei-diagrapsoun-amesa-email/

Navy Warship’s Facebook Page Hacked to Stream ‘Age of Empires’ Gaming

The official Facebook page of a destroyer-class Navy warship, the USS Kidd, has gone rogue: Someone has taken over the page in order to…stream Age of Empires play.

https://threatpost.com/navy-warships-facebook-age-empires-gaming/175409/

Instagram will ask teens to take a break!

In an interview with CNN’s State of the Union, Nick Clegg, vice president of global affairs, said Sunday that Facebook will implement three new measures to improve the teen experience on Instagram. The company will allow adults to monitor what teens do online (if they choose to), “push” users who see very harmful content to watch something different, and ask teens to “take a break” from Instagram.

h

View Details

A big win for citizens of the European Union as the European Parliament safeguards the use of artificial intelligence and mass surveillance as allowed by law enforcement. AI systems have been deemed discriminatory and now must have human oversight.

Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. Honey Beez and Trip Elix have unique experiences to share in an unpaired podcast experience.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow us on Twitter

@HoneyBeez0x

@trip_elix

Links

Our Website: https://www.tripelix.com/insecurity/european-parliament-bans-remote-facial-recognition-identification-systems/

Youtube https://youtu.be/5BBn2_d35RE

the link to the podcast itunes:https://podcasts.apple.com/us/podcast/european-parliament-bans-remote-facial-recognition/id1583788677?i=1000538307611

Spotify:https://open.spotify.com/episode/26hCu1ELpXbf39IVUpAB24

Soundcloud:https://soundcloud.com/user-841713900/european-parliament-bans-remote-facial-recognition-identification-systems?si=9d9ccb449fa9442a85d3544d20cc301f

Trip’s books

https://www.tripelix.com/merch

Honey’s books

https://beedefense.net

Google #Phish #scammer #privacy

Google to soon remove climate change misinformation on its platform. Tech giant Google aims to prevent misinformation related to climate change from spreading on Google platforms.

This is not the first time that Google has taken such a step, Google has also removed millions of videos containing misinformation related to Coronavirus from its video streaming platform YouTube.

https://thedigitalhacker.com/google-to-soon-remove-climate-change-misinformation-on-its-platform/

Former TD Bank, Bank of America employee allegedly helped email scammers launder money

An accused money launderer allegedly used his positions as an employee at Bank of America and TD Bank to aid an email fraud scheme that scammed five businesses out of more than $1 million.

https://www.cyberscoop.com/email-fraud-business-email-compromise-td-bank-america/

European Parliament oppose automated recognition, behavioral policing and citizen scoring

“Fundamental rights are unconditional. For the first time ever, we are calling for a moratorium on the deployment of facial recognition systems for law enforcement purposes, as the technology has proven to b

View Details

Three separate security vulnerabilities in Axis video products could open up the door to a variety of cyberattacks on businesses.

Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. Honey Beez and Trip Elix have unique experiences to share in an unpaired podcast experience.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow us on Twitter

@HoneyBeez0x

@trip_elix

Links

Our Website: https://www.tripelix.com/insecurity/axis-gear-ip-camera-vulnerabilities-opens-doors-to-attackers-for-total-network-take-over/

Youtube https://youtu.be/LOr43RZ7ZrM

the link to the podcast itunes:https://podcasts.apple.com/us/podcast/axis-gear-ip-camera-vulnerabilities-opens-doors-to/id1583788677?i=1000538182240

Spotify:https://open.spotify.com/episode/1ymaAqUs1IjvsZek9EJQLP

Soundcloud:https://soundcloud.com/user-841713900/axis-gear-ip-camera-vulnerabilities-opens-doors-to-attackers-for-total-network-take-over?si=c28ccd976b314204a6132583200c2547

Trip’s books

https://www.tripelix.com/merch

Honey’s books

https://beedefense.net

Android #google #GiftHorse #Malware #Tojan #UEFI #Chrome

Twitter will warn you before engaging in a heated conversation

In its battle to add more “social privacy” upgrades to its platform and make Twitter a better place, the company has announced a new feature they are testing and will let people know if they are going to engage in a conversation that can become “intense”

https://en.secnews.gr/368682/twitter-sas-proeidopoiei-prin-simmetasxete-se-mia-entoni-sinomilia/

Operation GhostShell: Novel RAT Targets Global Aerospace and Telecoms Firms In July 2021, the Cybereason Nocturnus and Incident Response Teams responded to Operation GhostShell, a highly-targeted cyber espionage campaign targeting the Aerospace and Telecommunications industries mainly in the Middle East, with additional victims in the U.S., Russia and Europe.

https://www.cybereason.com/blog/operation-ghostshell-novel-rat-targets-global-aerospace-and-telecoms-firms

IP Surveillance Bugs in Axis Gear Allow RCE, Data Theft Three security vulnerabilities in Axis video products could open up the door to a bevy of different cyberattacks on businesses. IP

View Details

An anonymous hacker posted a link on 4chan to a torrent link to 125 GB of data that contained the entire source code and user data of the twitch

Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. Honey Beez and Trip Elix have unique experiences to share in an unpaired podcast experience.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow us on Twitter

@HoneyBeez0x

@trip_elix

Links

Our Website: https://www.tripelix.com/insecurity/twitch-stripped-naked-hack-exposes-source-code-and-user-data-posted-online-for-free

Youtube

https://youtu.be/7LJPAqotpLQ

the link to the podcast itunes:https://podcasts.apple.com/us/podcast/twitch-stripped-naked-hack-exposes-source-code-and/id1583788677?i=1000537946666 

Spotify:https://open.spotify.com/episode/48uO6yIhYZftRVWBgYSOMZ 

Soundcloud:https://soundcloud.com/user-841713900/twitch-striped-naked-hack-exposes-source-code-and-user-data-posted-online-for-free?si=580370a3abcb4e04aec42a7c436215d5

Trip’s books

https://www.tripelix.com/merch Honey’s books

https://beedefense.net

Twitch #Apple #Apache #Hack #privacy #zeroday #exploit

Apple now requires all apps to make it easy for users to delete their accounts All third-party iOS, iPadOS, and macOS apps that allow users to create an account should also provide a method for terminating their accounts from within the apps beginning next year, Apple said on Wednesday.

https://thehackernews.com/2021/10/apple-requires-devs-to-make-it-easy-for.html

Twitch Suffers Massive 125GB Data and Source Code Leak Due to Server Misconfiguration Interactive livestreaming platform Twitch acknowledged a “breach” after an anonymous poster on the 4chan messaging board leaked its source code, an unreleased Steam competitor from Amazon Game Studios, details of creator payouts, proprietary software development kits, and other internal tools.

https://thehackernews.com/2021/10/twitch-suffers-massive-125gb-data-and.html

The entirety of Twitch has reportedly been leaked The user posted a 125GB torrent link to 4chan on Wednesday,

View Details

A data scientist who was revealed Sunday on CBS 60 Minutes as the Facebook whistleblower says that whenever there was a conflict between the public good and what benefited the company, the social media giant would choose its own profits over the public good.

Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. Honey Beez and Trip Elix have unique experiences to share in an unpaired podcast experience.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow us on Twitter

@HoneyBeez0x

@trip_elix

Links

Our Website: https://www.tripelix.com/insecurity/facebook-whistleblower-reveals-platform-causes-racial-and-civil-divide-across-globe/

Youtube https://youtu.be/hhcdz8CF3qc

the link to the podcast itunes:https://podcasts.apple.com/us/podcast/facebook-whistleblower-reviles-platform-causes-racial/id1583788677?i=1000537817337

Spotify:https://open.spotify.com/episode/46xFZzFSMEx6R5QVwSdmgS

Soundcloud:https://soundcloud.com/user-841713900/facebook-whistleblower-reviels-platfom-causes-racial-and-civil-divide-across-globe?si=580370a3abcb4e04aec42a7c436215d5

Trip’s books

https://www.tripelix.com/merch

Honey’s books

https://beedefense.net

Facebook #spy #China #airgap #phone

Facebook whistleblower reveals identity, says company ‘chooses profits over safety’

Internal documents published by the Wall Street Journal (WSJ) recently revealed that Facebook allowed VIPs to break its rules and that it was aware of how Instagram affected the mental health of teens. Now, the whistleblower who brought that information to light has revealed herself as Frances Haugen in an interview with 60 Minutes, the New York Times has reported.

https://www.engadget.com/facebook-whistleblower-reveals-identity-says-company-chooses-profits-over-safety-062311634.html

Lithuanian cybersecurity agency finds Chinese phones risk personal data leakage | #cybersecurity | #cyberattack Nobody would have imagined in his/her wildest dreams that the technologically most advanced, economically and militarily most powerful nation on the earth that had recently claimed the status of being the sole superpower in the world after the collapse of the USSR, could be attacked at home by a group of 16-17 fanatic Saudi Arabian citizens that were members of a non-state entity, the al-Quida, led by another Saudi Arabian Islamic fundamentalist, Osama bin-Laden based in Afghanistan, one of the most backward an

View Details

Mo Gawdat, formerly the Chief Business Officer for Google’s moonshot organization, issued his warning in a new interview with The Times. AI seen in science fiction like Skynet from “The Terminator,” is inevitable —

Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. Honey Beez and Trip Elix have unique experiences to share in an unpaired podcast experience.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow us on Twitter

@HoneyBeez0x

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/ex-google-executive-warns-singularity-is-coming-and-that-it-poses-a-major-threat-to-humanity/

Youtube

https://youtu.be/xZddLec7jKU

the link to the podcast itunes:https://podcasts.apple.com/us/podcast/ex-google-executive-warns-singularity-is-coming-and/id1583788677?i=1000537701939

Spotify:https://open.spotify.com/episode/5uInjUJmaYIchitB1fdwON

Soundcloud:https://soundcloud.com/user-841713900/ex-google-executive-warns-singularity-is-coming-and-that-it-poses-a-major-threat-to-humanity?si=5ede05d480514d779d60d766e2f20a59

Trip’s books

https://www.tripelix.com/merch

Honey’s books

https://beedefense.net

Amazon #Google #Astro #SSD #AI

Amazon Astro: Experts are concerned about security issues The new Amazon robot is designed to roam your home and promises to do everything. Named Astro, the bot will

watch an elderly family member and warn you if you accidentally forgot to open the stove.

With large round blinking eyes, the Astro is reminiscent of Pixar Wall-E and just as cute. But privacy experts say consumers should be aware that these eyes may not be real, but they will always watch.

https://en.secnews.gr/368202/amazon-astro-eidikoi-anisixoun-idiwtikotita/

Backblaze: The failures of SSDs are the same as those of HDDs Solid state drives (SSDs) have become the preferred choice over hard drives (HDDs) due to their lack of moving components, their inherent magnetic resistance, their ability to withstand vibration and their overall strength. However, a recent post by cloud storage provider Backblaze reveals that SSD failures are the same as those on hard drives.

https://en.secnews.gr/368174/backblaze-failures-ssds-antistoixa-hdds/

View Details

One of the largest providers of HTTPS certificates, Let’s Encrypt, saw its root certificate expire this week affecting many of the devices lose the ability to use certificate services Let’s Encrypt, is a free-to-use nonprofit, issues certificates that encrypt the connections between your devices and the wider internet, ensuring that nobody can intercept and steal your data in transit.

Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. Honey Beez and Trip Elix have unique experiences to share in an unpaired podcast experience.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow us on Twitter

@HoneyBeez0x

@trip_elix

Links

Our Website:

https://www.tripelix.com/insecurity/lets-encrypt-breaks-the-internet-millions-loose-access-to-websites/

Youtube https://youtu.be/qnRB_-hxiMw

the link to the podcast itunes:https://podcasts.apple.com/us/podcast/lets-encrypt-breaks-the-internet-millions-loose/id1583788677?i=1000537583742

Spotify:https://open.spotify.com/episode/3sQeLPWdMUf1pxicGV50Ru

Soundcloud:https://soundcloud.com/user-841713900/lets-encrypt-breaks-the-internet-millions-loose-access-to-websites?si=5ede05d480514d779d60d766e2f20a59

Trip’s books

https://www.tripelix.com/merch

Honey’s books

https://beedefense.net

Android #google #GiftHorse #Malware #Tojan #UEFI #Chrome

Washington Examiner Internet goes down for millions, tech companies scramble as key encryption service expires The expiration of a key digital encryption service on Thursday sent major tech companies nationwide scrambling to deal with internet outages that affected millions of online users.

https://news.yahoo.com/internet-goes-down-millions-tech-021400230.html

Certificate Compatibility The main determining factor for whether a platform can validate Let’s Encrypt certificates is whether that platform trusts ISRG’s “ISRG Root X1” certificate. Prior to September 2021, some platforms could validate our certificates even though they don’t include ISRG Root X1, because they trusted IdenTrust’s “DST Root CA X3” certificate. From October 2021 onwards, only those platforms that trust ISRG Root X1 will validate Let’s Encrypt certificates (with the exception of Android).

https://letsencrypt.org/docs/certificate-compatibility/

View Details

A fake antivirus program along with a website proclaiming detecting Pegasus targeting supporters of Amnesty international is infecting computers with malware

Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. Honey Beez and Trip Elix have unique experiences to share in an unpaired podcast experience.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow us on Twitter

@HoneyBeez0x

@trip_elix

inks

Our Website:

https://www.tripelix.com/insecurity/fake-antivirus-and-website-trick-users-to-install-surveillance-malware

Youtube

https://youtu.be/nyGx-y8EGmc

the link to the podcast itunes:https://podcasts.apple.com/us/podcast/fake-antivirus-and-website-trick-users-to-install/id1583788677?i=1000537443666

Spotify:https://open.spotify.com/episode/4kK8nBVEQHkPlJtKnNyNda

Soundcloud:https://soundcloud.com/user-841713900/fake-antivirus-and-website-trick-users-to-install-surveillance-malware?si=bb9d4ff8a7514c1c87b0325f7472b931

Trip’s books

https://www.tripelix.com/merch

Honey’s books

https://beedefense.net

Android #microsoft #malware #Google #phishing

Baby’s Death Alleged to Be Linked to Ransomware Access to heart monitors disabled by the attack allegedly kept staff from spotting blood & oxygen deprivation that led to the baby’s death.

https://threatpost.com/babys-death-linked-ransomware/175232/

A wolf in sheep’s clothing: Actors spread malware by leveraging trust in Amnesty International and fear of Pegasus Threat actors are impersonating the group Amnesty International and promising to protect against the Pegasus spyware as part of a scheme to deliver malware. Amnesty International recently made international headlines when it released a groundbreaking report on the widespread use of Pegasus to target international journalists and activists.

https://blog.talosintelligence.com/2021/09/fakeantipegasusamnesty.html

Beware of Fake Amnesty International Antivirus for Pegasus that Hacks PCs with Malware In yet another indicator of how hacking groups are quick to capitalize on world events and improvise their attack campaigns for maximum impact, threat ac

View Details

Malicious Android applications appear harmless when looking at the store description and requested permissions, but this false sense of confidence changes when users get charged month over month for the premium service they get subscribed to without their knowledge and consent.

Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. Honey Beez and Trip Elix have unique experiences to share in an unpaired podcast experience.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow us on Twitter

@HoneyBeez0x

@trip_elix

inks

Our Website:

https://www.tripelix.com/insecurity/trojan-gifthorse-infected-tens-of-millions-android-devices-racking-millions/

Youtube https://youtu.be/uoVYh67aoFs

the link to the podcast itunes:https://podcasts.apple.com/us/podcast/trojan-gifthorse-infected-tens-of-millions-android/id1583788677?i=1000537203216

Spoify:https://open.spotify.com/episode/0deJi48dJFU5zOJygLvWCg

Soundcloud:https://soundcloud.com/user-841713900/trojan-gifthorse-infected-tens-of-millions-android-devices-racking-millions?si=ef0e0c4cd9d14f2297d0b254906dae82

Trip’s books

https://www.tripelix.com/merch

Honey’s books

https://beedefense.net

Android #google #GiftHorse #Malware #Tojan #UEFI #Chrome

Update Google Chrome ASAP to Patch 2 New Actively Exploited Zero-Day Flaws Google on Thursday pushed urgent security fixes for its Chrome browser, including a pair of new security weaknesses that the company said are being exploited in the wild, making them the fourth and fifth actively zero-days plugged this month alone.

https://thehackernews.com/2021/09/update-google-chrome-asap-to-patch-2.html

GriftHorse Android Trojan Steals Millions from Over 10 Million Victims Globally These malicious Android applications appear harmless when looking at the store description and requested permissions, but this false sense of confidence changes when users get charged month over month for the premium service they get subscribed to without their knowledge and consent.

https://blog.zimperium.com/grifthorse-android-trojan-steals-millions-from-over-10-million-victims-globally/

FinSpy: unseen findings FinSpy, also known as FinFisher or Wingbir

View Details

Cybercriminals are using Telegram bots to steal one-time passwords and defrauding people through banks and online payment systems, including PayPal, Apple Pay and Google Pay

Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. Honey Beez and Trip Elix have unique experiences to share in an unpaired podcast experience.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow us on Twitter

@HoneyBeez0x

@trip_elix

inks

Our Website: https://www.tripelix.com/insecurity/cybercriminals-conquer-bank-security-with-telegram-powered-bots

Youtube https://youtu.be/9svjjzRG-Po

the link to the podcast itunes:https://podcasts.apple.com/us/podcast/cyber-criminals-conquer-bank-security-with-telegram/id1583788677?i=1000537076545

Spoify:https://open.spotify.com/episode/5Vi2S9POXFZgbBG6k4rUoK

Soundcloud:https://soundcloud.com/user-841713900/cybercriminals-conquer-bank-security-with-telegram-powered-bots?si=ef0e0c4cd9d14f2297d0b254906dae82

Trip’s books

https://www.tripelix.com/merch

Honey’s books

https://beedefense.net

zoho #eset #FBI #telegram #paypal #applepay #googlepay @ATM #bot

FamousSparrow: A suspicious hotel guest ESET researchers have uncovered a new cyberespionage group targeting hotels, governments, and private companies worldwide. We have named this group FamousSparrow and we believe it has been active since at least 2019.

https://www.welivesecurity.com/2021/09/23/famoussparrow-suspicious-hotel-guest/

FBI and CISA: Hackers exploit a critical Zoho bug The FBI, CISA and the Coast Guard (CGCYBER) warned today that state-backed persistent threat (APT) groups have been exploiting a critical bug in a Zoho system since early August 2021.

https://en.secnews.gr/366332/fbi-cisa-hacker-ekmetallevontai-ena-krisimo-bug-zoho/

Cybercriminals going after one-time passwords with Telegram-powered bots All the services Intel 471 has observed, which have only been in operation since June, either operate via a Telegram bot or provide support for customers via a Telegram channel. Two-factor authentication is one of the easiest ways for people to protect any online account. So, of course criminals are trying to circumvent that protection.

https://

View Details

Microsoft Edge is a Chromium based internet browser made by Microsoft, which is installed by default on all new Windows computers. This browser has several critical vulnerabilities that need to be patched immediately

Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. Honey Beez and Trip Elix have unique experiences to share in an unpaired podcast experience.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow us on Twitter

@HoneyBeez0x

@trip_elix

inks

Our Website:

https://www.tripelix.com/insecurity/multiple-vulnerabilities-in-microsoft-edge-web-browser-patch-now/

Youtube https://youtu.be/epXh4cLrtcA

the link to the podcast itunes:https://podcasts.apple.com/us/podcast/multiple-vulnerabilities-in-microsoft-edge-web-browser/id1583788677?i=1000536961219

Spotify:https://open.spotify.com/episode/7GQQbngLkccmCHGVnFu8cb

Soundcloud:https://soundcloud.com/user-841713900/multiple-vulnerabilities-in-microsoft-edge-web-browser-patch-now?si=ad80e8f173fa43efa97d4789c8197304

Trip’s books

https://www.tripelix.com/merch

Honey’s books

https://beedefense.net

Edge #Microsoft #Google #Android #Facebook #scrape #clubhouse

Multiple Vulnerabilities in Microsoft Edge Could Allow for Arbitrary Code Execution Multiple vulnerabilities have been discovered in Microsoft Edge, the most severe of which could result in remote code execution. Microsoft Edge is a Chromium based internet browser made by Microsoft, which is installed by default on all new Windows computers.

https://www.cisecurity.org/advisory/multiple-vulnerabilities-in-microsoft-edge-could-allow-for-arbitrary-code-execution_2021-123/

Android users without access to Google Maps, YouTube and Gmail from today Millions of Android phones will be blocked from using popular apps, such as Google Maps, YouTube and Gmail, from today.

https://en.secnews.gr/367302/android-xristes-xoris-prosvasi-google-maps-gmail-youtube/

3.8 billion Clubhouse and Facebook user records allegedly scraped and merged, put for sale online A user on a popular hacker forum is selling a database that purportedly contains 3.8 billion user records.

The database was allegedly compiled by combining 3.8 billio

View Details

Microsoft uncovered a large-scale organization and phishing-as-a-service operation. The turnkey platform budding criminals to create customized campaigns and develop their own phishing schemes complete with phishing kits, email templates, and hosting services needed to launch attacks.

Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. Honey Beez and Trip Elix have unique experiences to share in an unpaired podcast experience.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow us on Twitter

@HoneyBeez0x

@trip_elix

inks

Our Website: https://www.tripelix.com/insecurity/microsoft-uncovers-phishing-as-a-service-includes-easy-to-use-templates-just-add-domain/

Youtube: https://youtu.be/4BNqBdtFjuQ

the link to the podcast itunes:https://podcasts.apple.com/us/podcast/microsoft-uncovers-phishing-as-a-service-includes/id1583788677?i=1000536840309

Spoify:https://open.spotify.com/episode/6b4XeV3PNKto3U1lqx6XZG

Soundcloud:https://soundcloud.com/user-841713900/microsoft-uncovers-phishing-as-a-service-includes-easy-to-use-templates-just-add-domain?si=46bf561030cb41d89f0c0a215c6f8c51

Trip’s books

https://www.tripelix.com/merch

Honey’s books

https://beedefense.net

Android #apple #malware #hack#Covid19 #icloud #tanglebot #cyberattack #sms

Google releases emergency fix to plug zero‑day hole in Chrome Google has released an emergency update for its Chrome web browser to fix a zero-day vulnerability that is known to be actively exploited in the wild by malicious actors. The security loophole affects the Windows, macOS, and Linux versions of the popular browser.

https://www.welivesecurity.com/2021/09/27/google-releases-emergency-fix-plug-zero-day-hole-chrome/

Large-Scale Phishing-as-a-Service Operation Exposed Microsoft uncovered a large-scale, well-organization and sophisticated phishing-as-a-service (PhaaS) operation. The turnkey platform allows users to customize campaigns and develop their own phishing ploys so they can then use the PhaaS platform to help with phishing kits, email templates and hosting services needed to launch attacks.

https://threatpost.com/phishing-as-a-service-exposed/174932/

View Details

This malware, coined TangleBot, can directly obtain personal information, control device interaction with apps and overlay screens, and steal account information from financial activities initiated on the device.

Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. Honey Beez and Trip Elix have unique experiences to share in an unpaired podcast experience.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow us on Twitter

@HoneyBeez0x

@trip_elix

inks

Our Website: https://www.tripelix.com/insecurity/covid-19-text-message-malware-targets-android-users-across-u-s-and-canada/

Youtube https://youtu.be/RSV881Tp6yU

the link to the podcast itunes:https://podcasts.apple.com/us/podcast/covid-19-text-message-malware-targets-android-users/id1583788677?i=1000536712774

Spoify:https://open.spotify.com/episode/34aA8rRGfZYeDDxVI04PFF

Soundcloud:https://soundcloud.com/user-841713900/covid-19-text-message-malware-targets-android-users-across-us-and-canada

100,000,000 Android phone owners for sale

https://lists.nextmark.com/market?page=order/online/datacard&id=578695

Trip’s books

https://www.tripelix.com/merch

Honey’s books

https://beedefense.net

Android #apple #malware #hack#Covid19 #icloud #tanglebot #cyberattack #sms

TangleBot: New Advanced SMS Malware Targets Mobile Users Across U.S. and Canada with COVID-19 Lures Cloudmark threat analysts have discovered a new piece of mobile malware spreading via SMS and currently targeting Android mobile users in the United States and Canada.TangleBot uses SMS text message lures with content about COVID regulations

https://www.cloudmark.com/en/blog/mobile/tanglebot-new-advanced-sms-malware-targets-mobile-users-across-us-and-canada-covid-19

iCloud Private Relay flaw leaks users’ IP addresses A flaw discovered in Apple’s new iCloud Private Relay defeats the feature’s raison d’etre by exposing a user’s IP address when certain conditions are met.

https://appleinsider.com/articles/21/09/25/icloud-private-relay-flaw-leaks-users-ip-addresses

Port of Houston target of suspected nation-state hack The Port of Houston, a critical piece of infrastructure along the Gulf Coast, issued a statement Thurs

View Details

An unpatched design flaw in the implementation of Microsoft Exchange’s Autodiscover protocol has resulted in the leak of tens of thousands of login names and passwords for Windows domains worldwide.

Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. Honey Beez and Trip Elix have unique experiences to share in an unpaired podcast experience.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow us on Twitter

@HoneyBeez0x

@trip_elix

Links

Our Website: https://www.tripelix.com/insecurity/microsoft-exchange-flaw-leeks-login-credentials-across-the-internet/

Youtube :https://youtu.be/SZgwCeN1bpwthe link to the podcast
itunes: https://podcasts.apple.com/us/podcast/microsoft-exchange-flaw-leeks-login-credentials-across/id1583788677?i=1000536475650
Spoify:https://open.spotify.com/episode/1CukwWBT9pyH4yEVJ1xiad
Soundcloud: https://soundcloud.com/user-841713900/microsoft-exchange-flaw-leeks-login-credentials-across-the-internet
Trip’s books

https://www.tripelix.com/merch
Honey’s books

https://beedefense.net

windows #Exchange #microsoft #scam #zoho #hackers

Autodiscovering the Great Leak

As a part of the ongoing security research efforts by the Guardicore Labs team, we have discovered an interesting case of credential leak affecting a large number of people and organizations worldwide. The credentials that are being leaked are valid Windows domain credentials used to authenticate to Microsoft Exchange servers.https://www.guardicore.com/labs/autodiscovering-the-great-leak/

Microsoft Exchange Bug Exposes ~100,000 Windows Domain Credentials

An unpatched design flaw in the implementation of Microsoft Exchange’s Autodiscover protocol has resulted in the leak of approximately 100,000 login names and passwords for Windows domains worldwide.https://thehackernews.com/2021/09/microsoft-exchange-bug-exposes-100000.html

FBI: $ 113 million lost online romantic scams this year

The FBI warned today that a huge increase in online romance scams has caused Americans to lose more than $ 113 million since the beginning of 2021.https://en.secnews.gr/366350/fbi-fetos-xathikan-113-ekatommuria-dolaria-diadiktuakes-romantikes-apates/

View Details

Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. Honey Beez and Trip Elix have unique experiences to share in an unpaired podcast experience.

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow us on Twitter

@HoneyBeez0x

@trip_elix

links

https://www.tripelix.com/insecurity/new-windows-malware-targets-linux-subsystem-to-evade-detection/

Itunes: https://podcasts.apple.com/us/podcast/new-windows-malware-targets-linux-subsystem-to-evade/id1583788677?i=1000536364061

Youtube: https://youtu.be/dxw2cXD0pcw

Spoify: https://open.spotify.com/episode/1PJigJfGDHvsEduIRORo9k

Soundcloud: https://soundcloud.com/user-841713900/new-windows-malware-targets-linux-subsystem-to-evade-detection

Trip’s books

https://www.tripelix.com/merch

Honey’s books

https://beedefense.net

windows #python #linux #repulican #openbox #windows11 #microsoft #malware

New Python Based Malware Attack Windows Subsystem for Linux To Evade Detection

The Lumen Black Lotus Labs has identified Linux binaries or Python Based Malware built for the Windows Subsystem for Linux (WSL) to evade detection. The threat actors are seeking new techniques to stealthily compromise Windows computers.https://cybersecuritynews.com/new-python-based-malware-attack-windows-subsystem-for-linux/

Republican Governors Association email server breached by state hackers

The Republican Governors Association (RGA) revealed in data breach notification letters sent last week that its servers were breached during an extensive Microsoft Exchange hacking campaign that hit organizations worldwide in March 2021.https://www.bleepingcomputer.com/news/security/republican-governors-association-email-server-breached-by-state-hackers/

Windows 11 is no longer compatible with Oracle VirtualBox VMs

Windows 11 is no longer compatible with the immensely popular Oracle VirtualBox virtualization platform after Microsoft changed its hardware requirement policies for virtual machines.https://www.bleepingcomputer.com/news/microsoft/windows-11-is-no-longer-compatible-with-oracle-virtualbox-vms/

View Details

Every day Big Tech and Mass Media make it hard to find out what is going on with the internet. Honey Beez and Trip Elix have unique experiences to share in an unpaired podcast experience.
Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find
Follow us on Twitter

@HoneyBeez0x

@trip_elix
linksOur Website: https://www.tripelix.com/insecurity/apple-devices-vulnerable-the-entire-suite-of-devices-and-operating-systems/

Youtube :https://youtu.be/mk5MhvPHfIo

The link to the podcast itunes: https://podcasts.apple.com/us/podcast/apple-devices-vulnerable-ios-ipados-watchos-tvos-xcode/id1583788677?i=1000536243269
Spoify: https://open.spotify.com/episode/5POIA9UuoYUAtEWnhyUbYK
Soundcloud:https://soundcloud.com/user-841713900/apple-devices-vulnerable-iosipados-watchostvosxcodesafari-itunes
Trip’s books

https://www.tripelix.com/merchHoney’s books

https://beedefense.net#windows #azure #microsoft #bluetooth #ransomware #exploit

NSO’s Pegasus spyware: here’s what we know

Pegasus is spyware developed by a private contractor for use by government agencies. The program infects a target’s phone and sends back data, including photos, messages, and audio / video recordings. Pegasus’ developer, an Israeli company called NSO Group,https://www.theverge.com/22589942/nso-group-pegasus-project-amnesty-investigation-journalists-activists-targeted

Multiple Vulnerabilities in Apple Products Could Allow for Arbitrary Code Execution

Multiple vulnerabilities have been discovered in Apple Products, the most severe of which could allow for arbitrary code execution in the context of the affected user.https://www.cisecurity.org/advisory/multiple-vulnerabilities-in-apple-products-could-allow-for-arbitrary-code-execution_2021-116/

IoT ‘Nutrition’ Labels Aim to Put Security on Display

An all-out effort to develop a consumer-focused security labeling program will likely initially focus on Internet of Things (IoT) devices and could include many technology products used by small businesses as well.https://www.darkreading.com/endpoint/iot-nutrition-labels-aim-to-put-security-on-display

View Details

Trip and Honey discuss tech like no one else

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow us on Twitter

@HoneyBeez0x

@trip_elix

links

Our Website: https://www.tripelix.com/insecurity/massive-bluetooth-exploit-affects-billions-of-devices-worldwide/

Youtube :https://youtu.be/0WpTVrxvUTMthe link to the podcast

itunes:https://podcasts.apple.com/us/podcast/massive-bluetooth-exploit-affects-billions-of/id1583788677?i=1000536112924

Spoify:https://open.spotify.com/episode/79agFyHbs52mtdjXad9hAe

Soundcloud:https://soundcloud.com/user-841713900/massive-bluetooth-exploit-affects-billions-of-devices-worldwide

Trip’s books

https://www.tripelix.com/merchHoney’s books

https://beedefense.net#windows #azure #microsoft #bluetooth #ransomware #exploit

Misconfiguration in EventBuilder exposes 100K event registrants’ personal information

EventBuilder allows by providing pre-registration and attendee-only content, Microsoft Teams and Skype for Business can work together seamlessly. More than one million CSV/JSON files containing the personal information of people who registered for events via Microsoft Teams https://thedigitalhacker.com/misconfiguration-in-eventbuilder-exposes-100k-event-registrants-personal-information/

Billions of devices impacted by new BrakTooth Bluetooth vulnerabilities

A team of security researchers has published details this week about a suite of 16 vulnerabilities that impact the Bluetooth software stack that ships with System-on-Chip (SoC) boards from several popular vendors. The vulnerabilities, collectively known as BrakTooth, allow attackers to crash or freeze devices or, in the worst-case scenarios, execute malicious code and take over entire systems.https://therecord.media/billions-of-devices-impacted-by-new-braktooth-bluetooth-vulnerabilities/

South Africa Ransomware Attacks Go On with One More Hit: the Whole Network of the Department of Justice Affected

On the 6th of September, South Africa’s Department of Justice was hit by a ransomware attack that targeted its network and managed to encrypt its entire systems, thus electronic services were not available anymore, neither internally, nor to the public.https://heimdalsecurity.com/blog/south-africa-ransomware-attack-department-of-justice/

View Details

Trip and Honey discuss tech like no one else

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow us on Twitter @HoneyBeez0x @trip_elixlinks .Gov compromises hosting online Pharmacy content w/ obfuscation https://www.youtube.com/watch?v=7T1HBpO_Xlw&t=1s Our Website:https://www.tripelix.com/insecurity/netgear-complete-compromise-researcher-reveiles-dos-password-bypass/ Youtube : https://youtu.be/Bvsa7cYcius The link to the podcast itunes: https://podcasts.apple.com/us/podcast/netgear-complete-compromise-researcher-reveiles-dos/id1583788677?i=1000535978646 Spoify: https://open.spotify.com/episode/3aiMoHdgBMmQ1CuSriwER2 Soundcloud: https://soundcloud.com/user-841713900/netgear-complete-compromise-researcher-reveiles-dos-password-bypass Trip’s books https://www.tripelix.com/merch Honey’s books https://beedefense.net

windows #azure #microsoft #kali #zeroday #exploit#At&t #iphone #android #netgear #exploit #compromise #DOS #porn #viagra

AT&T lost $200M in seven years to illegal phone unlocking scheme

A Pakistani fraudster was sentenced to 12 years in prison earlier this week after AT&T, the world’s largest telecommunications company, lost over $200 million after he and his co-conspirators coordinated a seven-year scheme that led to the fraudulent unlocking of almost 2 million phones.https://www.bleepingcomputer.com/news/security/atandt-lost-200m-in-seven-years-to-illegal-phone-unlocking-scheme/

Third Critical Bug Affects Netgear Smart Switches — Details and PoC Released

New details have been revealed about a recently remediated critical vulnerability in Netgear smart switches that could be leveraged by an attacker to potentially execute malicious code and take control of vulnerable devices.https://thehackernews.com/2021/09/third-critical-bug-affects-netgear.html

USA: Government websites display porn and Viagra ads

Security researcher Zach Edwards has identified the issue in these .gov and .mil domains and is using a common product provided by Laserfiche. Laserfiche provides services to the FBI, the CIA, the Ministry of Finance of USA, the army and many other government bodies.

View Details

Honey discuss tech like no one else

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow us on Twitter

@HoneyBeez0x

@trip_elix

links

Our Website: https://www.tripelix.com/insecurity/microsoft-ditches-passwords-in-favor-of-software-apps-what-could-go-wrong

Youtube :https://youtu.be/D9kkRu22PEk

the link to the podcast

itunes:https://podcasts.apple.com/us/podcast/microsoft-ditches-passwords-in-favor-of-software/id1583788677?i=1000535616634

Spoify:https://open.spotify.com/episode/3URoxZPiMtXZ5DnioSM8Jn

Soundcloud:https://soundcloud.com/user-841713900/insecurity-brief-ep5-microsoft-ditches-passwords-in-favor-of-software-apps-what-could-go-wrong

Trip’s books

https://www.tripelix.com/merchHoney’s books

https://beedefense.net

windows #azure #microsoft #kali #zeroday #exploit

“Secret” Agent Exposes Azure Customers To Unauthorized Code Execution

Wiz’s research team recently discovered a series of alarming vulnerabilities that highlight the supply chain risk of open source code, particularly for customers of cloud computing services.

https://www.wiz.io/blog/secret-agent-exposes-azure-customers-to-unauthorized-code-execution

You Can Now Sign-in to Your Microsoft Accounts Without a Password

Microsoft on Wednesday announced a new passwordless mechanism that allows users to access their accounts without a password by using Microsoft Authenticator, Windows Hello, a security key, or a verification code sent via SMS or email.https://thehackernews.com/2021/09/you-can-now-sign-in-to-you-microsoft.html

The Most Advanced Penetration Testing Distribution

Kali Linux is an open-source, Debian-based Linux distribution geared towards various information security tasks, such as Penetration Testing, Security Research, Computer Forensics and Reverse Engineering.https://www.kali.org/

View Details

Trip and Honey discuss tech like no one else

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can findFollow us on Twitter

@HoneyBeez0x

@trip_elix
links
Israeli malware companyNSO GROUP
https://en.wikipedia.org/wiki/NSO_Group
Our Website:https://www.tripelix.com/insecurity/tech-giants-respond-to-zero-day-exploits-emergency-update-for-google-and-apple/
Youtube : https://youtu.be/KSuBbSQBTsI
Itunes: https://podcasts.apple.com/us/podcast/tech-giants-respond-to-zero-day-exploits-emergency/id1583788677?i=1000535504275
Spoify:https://open.spotify.com/episode/0f6fDRLZpvXiFvss83ngRU
Soundcloud:https://soundcloud.com/user-841713900/insecurity-bried-ep4-tech-giants-respond-to-zero-day-exploits-emergency-update
Trip’s books

https://www.tripelix.com/merch
Honey’s books

https://beedefense.net

windows #hack #zeroday #apple #google #malware #update #ddost

Private Israeli spyware used

to hack cellphones of

journalists, activists worldwide

NSO Group’s Pegasus spyware, licensed to governments

around the globe, can infect phones without a click

https://www.washingtonpost.com/investigations/interactive/2021/nso-spyware-pegasus-cellphones/

Update now! Chrome fix patches in-the-wild zero-day

The Microsoft Browser Vulnerability Research team has found and reported a vulnerability in the audio component of Google Chrome. Google has fixed this high-severity vulnerabilityhttps://blog.malwarebytes.com/exploits-and-vulnerabilities/2021/03/update-now-chrome-fix-patches-in-the-wild-zero-day/

About the security content of iOS 14.8 and iPadOS 14.8

For our customers’ protection, Apple doesn’t disclose, discuss, or confirm security issues until an investigation has occurred and patches or releases are available. Recent releases are listed on the Apple security updates page.https://support.apple.com/en-us/HT212807

New Mēris botnet breaks DDoS record with 21.8 million RPS attack

A new distributed denial-of-service (DDoS) botnet that kept growing over the summer has been hammering Russian internet giant Yandex for the past month, the attack peaking at the unprecedented rate of 21.8 million requests per second.https://www.bleepingcomputer.com/news/security/new-m-ris-botnet-breaks-ddos-record-with-218-million-rps-attack/

Microsoft fixes bug letting hackers take over Azure containers

Microsoft has fixed a vulnerability in Azure Container Instances called Azurescape that allowed a malici

View Details

Episode 3

Millions of WIFI devices made vulnerable from Realteks SDK

Trip and Honey discuss tech like no one else Join our community!! Subscribe to the Insecurity Brief podcast now on every platform we can find Follow us on Twitter @HoneyBeez0x @trip_elix

links

Our Website:https://www.tripelix.com/insecurity/millions-of-wifi-devices-made-vulnerable-from-realteks-sdk

Youtube : https://www.youtube.com/watch?v=P6UpwSVD5BY

Itunes: https://podcasts.apple.com/us/podcast/millions-of-wifi-devices-made-vulnerable-from-realteks-sdk/id1583788677?i=1000535386017

Soundcloud: https://soundcloud.com/user-841713900/episode-3the-insecurity-brief-millions-of-wifi-devices-made-vulnerable-from-realteks-sdk

Spotify : https://open.spotify.com/episode/6VBqEZYiwtYdRhS7iYqBoN

Trip’s books https://www.tripelix.com/merch

Honey’s books https://beedefense.net

realtek #Talos #zeroday #wifi # Bladehawk #android #facebook

Taiwanese chip designer Realtek is warning of four security vulnerabilities in three software development kits (SDKs) accompanying its WiFi modules, which are used in almost 200 IoT devices made by at least 65 vendors https://thehackernews.com/2021/08/multiple-flaws-affecting-realtek-wi-fi.html threatpost.comMultiple Flaws Affecting Realtek Wi-Fi SDKs Impact Nearly a Million IoT Devices

Talos release protection against zero-day vulnerability in Microsoft MSHTMLCisco Talos released new SNORT® rules Thursday to protect against the exploitation of a zero-day vulnerability in Microsoft MSHTML that the company warns is being actively exploited in the wild.

https://blog.talosintelligence.com/2021/09/talos-release-protection-against-zero.html

talosintelligence.com

BladeHawk group: Android espionage against Kurdish ethnic groupESET researchers have investigated a targeted mobile espionage campaign against the Kurdish ethnic group. This campaign has been active since at least March 2020, distributing (via dedicated Facebook profiles) two Android backdoors known as 888 RAT and SpyNote, disguised as legitimate apps.

https://www.welivesecurity.com/2021/09/07/bladehawk-android-espionage-kurdish/

welivesecur

View Details

Protronmail logs IP Addresses for French government targeting activists

Trip and Honey discuss tech like no one else

Join our community!!

Subscribe to the Insecurity Brief podcast now on evey platform we can findFollow us on Twitter

@HoneyBeez0x

@trip_elixlinksOur Website: https://www.tripelix.com/insecurity/protronmail-logs-ip-addresses-for-french-government-targeting-activists

Youtube : https://youtu.be/BRCWn1gTE1I

the link to the podcast

the link to soundcloudTrip’s books

https://www.tripelix.com/merchHoney’s books

https://beedefense.net#polynetwork #money #protonmail #french #swiss #secuirty

The attacker returned the loot after being offered a gig as chief security advisor with Poly Network.A threat actor called “Mr. White Hat” has returned the $610 million they stole from the decentralized finance platform Poly Network. The breached company did everything from threaten to sic law enforcement on the attacker on up to its ultimate offer: the position of chief security officer in exchange for getting its money back

https://threatpost.com/poly-network-recoups-610m-stolen-from-defi-platform/168906/

threatpost.com

ProtonMail Logs Activist’s IP Address With Authorities After Swiss Court OrderEnd-to-end encrypted email service provider ProtonMail has drawn criticism after it ceded to a legal request and shared the IP address of anti-gentrification activists with law enforcement authorities, leading to their arrests in France.

https://thehackernews.com/2021/06/chinese-hackers-believed-to-be-behind.html

thehackernews.com

View Details

Episode 1

Windows Easily hacked by simply plugging in a mouse or keyboard

Razer is a very popular computer peripherals manufacturer known for its gaming mice and keyboards. A Razer Synapse zero-day vulnerability has been disclosed on Twitter, allowing you to gain Windows admin privileges simply by plugging in a Razer mouse or keyboard.

Trip and Honey discuss tech like no one else

Join our community!!

Subscribe to the Insecurity Brief podcast now on every platform we can find

Follow us on Twitter

@HoneyBeez0x

@trip_elix

link to the apt names

https://docs.google.com/spreadsheets/d/1H9_xaxQHpWaa4O_Son4Gx0YOIzlcBWMsdvePFX68EKU/htmlview#

Links

Our Website:

https://www.tripelix.com/insecurity/windows-easily-hacked-by-simply-plugging-in-a-mouse-or-keyboard/

Youtube:

https://youtu.be/8Np8QKw7koI

iTunes:

https://podcasts.apple.com/us/podcast/windows-easily-hacked-by-simply-plugging-in-a-mouse/id1583788677?i=1000535137047

Spotify:

https://open.spotify.com/episode/0zaxX9x9ZpLQj9H3NJOnsD

Trip’s books

https://www.tripelix.com/merch

Honey’s books

https://beedefense.net

#windows #hack #zeroday #keyboard #mouse #usb #exploit

Razer bug lets you become a Windows 10 admin by plugging in a mouse

A Razer Synapse zero-day vulnerability has been disclosed on Twitter, allowing you to gain Windows admin privileges simply by plugging in a Razer mouse or keyboard.

https://www.bleepingcomputer.com/news/security/razer-bug-lets-you-become-a-windows-10-admin-by-plugging-in-a-mouse/

bleepingcomputer.com

The SideWalk may be as dangerous as the CROSSWALK

SideWalk is a modular backdoor that can dynamically load additional modules sent from its C&C server, makes use of Google Docs as a dead drop resolver, and uses Cloudflare workers as a C&C server. It can also properly handle communication behind a proxy.

https://www.welivesecurity.com/2021/08/24/sidewalk-may-be-as-dangerous-as-crosswalk/

welivesecurity.com

New 0-Day Attack Targeting Windows Users With Microsoft Office Documents

Microsoft on Tuesday warned of an actively exploited zero-day flaw impacting Internet Explorer that’s being used to hijack vulnerable Windows systems by leveraging weaponized Office documents.

https://thehackernews.com/2021/09/new-0-day-attack-targeting-windows.html

thehackernews.com

View Details

This is a test episode