simontsui, to news

Citizen Lab along with Human Rights Watch, Access Now, Human Rights Watch and the Organized Crime and the Corruption Reporting Project confirmed Pegasus surveillance of individuals in Jordan working in media, activists, lawyers, and other fields.
🔗 https://citizenlab.ca/2024/02/confirming-large-scale-pegasus-surveillance-of-jordan-based-civil-society/

#Citizenlab #Pegasus #NSOGroup #news #privacy #surveillance #spyware #Jordan

simontsui,

See related Human Rights Watch reporting:

"Two Human Rights Watch staff members based in Jordan have been repeatedly targeted with advanced surveillance spyware, Human Rights Watch said today. The targeting, which violates their right to privacy, began in October 2022 and succeeded briefly in infecting one of their mobile phones.

The same spyware was also used to target the devices of at least 33 Jordanian and Jordan-based journalists, activists, and politicians between 2019 and September 2023, according to an Access Now report, released on February 1, 2024, that relied on a forensic investigation conducted jointly with the Canadian academic research center, Citizen Lab. The investigation found traces of Pegasus spyware in their mobile devices, with some devices infected multiple times. The analysis could not determine which government initiated the attacks."

🔗 https://www.hrw.org/news/2024/02/01/spyware-targets-human-rights-watch-staff-jordan

#CitizenLab #HumanRightsWatch #Pegasus #Jordan #News #privacy #surveillance #spyware

paninid, to journalism
@paninid@mastodon.world avatar
Snowshadow, to microsoft
@Snowshadow@mastodon.social avatar

Bada Bing, Bada Boom Microsoft Bing’s Chinese Political Censorship of Autosuggestions in North America
By Jeffrey Knockel and Lotus Ruan
May 19, 2022

#CitizenLab #Microsoft #Bing #computer #Cybersecurity
https://citizenlab.ca/2022/05/bada-bing-bada-boom-microsoft-bings-chinese-political-censorship-autosuggestions-north-america/

nikita, to random German
@nikita@social.tchncs.de avatar

Speaking Freely: #RonDeibert

Ron Deibert is a Canadian professor of political science, a philosopher, an author, and the founder of the renowned #CitizenLab, situated in the Munk School of Global Affairs at the University of Toronto.

He is perhaps best known to readers for his research on targeted surveillance, which won the Citizen Lab a 2015 EFF Award.

https://www.eff.org/deeplinks/2023/11/speaking-freely-ron-deibert

itnewsbot, to news

This Week in Security: Magic Packets, GPU.zip, and Enter the Sandman - Leading out the news this week is a report of “BlackTech”, an Advanced Persistent ... - https://hackaday.com/2023/09/29/this-week-in-security-magic-packets-gpu-zip-and-enter-the-sandman/ #0-day

deltatux, to infosec

The Citizen Lab (@citizenlab) & Google Threat Analysis Group has disclosed a new targeted spy campaign that utilizes newly disclosed zero day in iOS. These zero days contain a privilege escalation flaw in the OS kernel along with a WebKit flaw allows attackers to install spyware & snoop on victim devices.

Citizen Lab & Google urges iPhone & iPad users to update to iOS 17.0.1 as soon as possible.

https://citizenlab.ca/2023/09/predator-in-the-wires-ahmed-eltantawy-targeted-with-predator-spyware-after-announcing-presidential-ambitions/

https://support.apple.com/en-us/HT213926

#infosec #cybersecurity #cyberespionage #spyware #ios #zeroday #citizenlab #Google

briankrebs, to random

The commercial spyware industry is thriving. More 0days, y'all.

"Last week Google’s Threat Analysis Group (TAG), in partnership with The Citizen Lab, discovered an in-the-wild 0-day exploit chain for iPhones. Developed by the commercial surveillance vendor, Intellexa, this exploit chain is used to install its Predator spyware surreptitiously onto a device."

"In response, yesterday, Apple patched the bugs in iOS 16.7 and iOS 17.0.1 as CVE-2023-41991, CVE-2023-41992, CVE-2023-41993. This quick patching from Apple helps to better protect users and we encourage all iOS users to install them as soon as possible."

https://blog.google/threat-analysis-group/0-days-exploited-by-commercial-surveillance-vendor-in-egypt/

simontsui,

@briankrebs Please note that The Citizen Lab published a separate blog detailing how former Egyptian MP Ahmed Eltantawy was targeted with Cytrox’s Predator spyware via links sent on SMS and WhatsApp. They attribute the network injection attack to the Egyptian government with high confidence.
Link: https://citizenlab.ca/2023/09/predator-in-the-wires-ahmed-eltantawy-targeted-with-predator-spyware-after-announcing-presidential-ambitions/

#freethewhales #citizenlab #CVE202341991 #CVE202341992 #CVE202341993 #Cytrox #predator #spyware #Egypt

br00t4c, to random
@br00t4c@mastodon.social avatar
happygeek, to infosec

I'm not a huge believer in coincidence to this degree. Obviously only speculation at this point, but would be interesting to know what you think, fam.




https://www.forbes.com/sites/daveywinder/2023/09/12/new-emergency-chrome-security-update-after-critical-ios-1661-release/

RTP, to infosec
@RTP@fosstodon.org avatar
pluralistic, to random
@pluralistic@mamot.fr avatar

I usually write this blog 5-6 days/week, but every now and again, I take a break, and when I do, I get massive link backlogs of stuff I want to write about, but lack the time to address in depth. When that happens, I turn my Saturday edition into a . Today, I present the sixth in the series - here's the other five:

https://pluralistic.net/tag/linkdump/

1/

pluralistic,
@pluralistic@mamot.fr avatar

Which is all to say: I have tickets for the Talking Heads event at TIFF and I could not be more excited.

Continuing on the Canadian theme, one of the annual highlights of Canadian media is the #MasseyLectures, a series of public lectures given around the country and rebroadcast on #CBC. These are always great, but recent years have been superb - @rondeibert's 2020 series was unmissable:

https://pluralistic.net/2020/11/10/dark-matter/#citizenlab

12/

persagen, to security
@persagen@mastodon.social avatar

BLASTPASS NSO Group iPhone Zero-Click, Zero-Day Exploit Captured in Wild
https://citizenlab.ca/2023/09/blastpass-nso-group-iphone-zero-click-zero-day-exploit-captured-in-the-wild
Discussion: https://news.ycombinator.com/item?id=37425007

Awesome group /work (here/historically)! 👍️
@jsrailton | @billrobinson | @tek

  • Citizen Lab found actively exploited zero-click vulnerability
  • delivers NSO Group’s Pegasus mercenary spyware

#CitizenLab #MunkSchool #NSO #NSOgroup #exploits #CellPhones #security #surveillance #spyware #Pegasus #BLASTPASS

itnewsbot, to internet

Russia’s Online Censorship Has Surged During Ukraine War - A report from Citizen Lab laid out how much online censorship has increased on one of Rus... - https://www.nytimes.com/2023/07/26/technology/russia-censorship-ukraine-war.html #russianinvasionofukraine(2022) #computersandtheinternet #politicsandgovernment #putinvladimirv #vkontakteltd #socialmedia #censorship #citizenlab #propaganda #russia

pluralistic, to random
@pluralistic@mamot.fr avatar

Today's threads (a thread)

Inside: Revenge of the Linkdumps; and more!

Archived at: https://pluralistic.net/2023/05/13/four-bar-linkage/

#Pluralistic

1/

pluralistic,
@pluralistic@mamot.fr avatar

Next Saturday (May 20), I'll be at the #Gaithersburg Book Festival with my novel Red Team Blues:

https://www.gaithersburgbookfestival.org/featured_author/cory-doctorow/

On May 22, I'm keynoting #PublicKnowledge's Emerging Tech conference in #DC:

https://www.eventbrite.com/e/emerging-tech-tickets-600582126307

On May 23, I'll be in #Toronto for a book launch that's part of #WEPFest, a benefit for the #WestEndPhoenix, onstage with #DaveBidini (The #Rheostatics), Ron Diebert (#CitizenLab) and the #whistleblower Dr #NancyOlivieri:

https://www.westendphoenix.com/shop/wepfest-spring-fundraiser

2/

  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • mdbf
  • everett
  • osvaldo12
  • magazineikmin
  • thenastyranch
  • rosin
  • normalnudes
  • Youngstown
  • Durango
  • slotface
  • ngwrru68w68
  • kavyap
  • DreamBathrooms
  • tester
  • InstantRegret
  • ethstaker
  • GTA5RPClips
  • tacticalgear
  • Leos
  • anitta
  • modclub
  • khanakhh
  • cubers
  • cisconetworking
  • megavids
  • provamag3
  • lostlight
  • All magazines