Malware

Ian Beer publishes extensive write-up on FORCEDENTRY zero-click iMessage exploit used by NSO Group in Pegasus spyware

iPhone hacked matrix.

The iOS & iPadOS 14.8 update that Apple launched in mid-September was more than just a feature update. It also encompassed a fix for a considerably dangerous zero-click iMessage exploit dubbed FORCEDENTRY (CVE-2021-30860) that was being actively exploited by Israel’s NSO Group to target and surveil activists, journalists, and other high-profile occupations.

Protect your identity on the internet like never before with Guardian Firewall

A VPN (Virtual Private Network) is often your best bet when you want to browse the internet privately. Not only do most VPNs offer end-to-end encryption for secure data transmission, but they will also cloak your true location from prying eyes.

Many VPN services work in the same way, but Guardian Firewall by Sudo Security Group is a completely different type of VPN that aims to clamp down on user privacy even further by filtering outgoing data transmissions that could potentially expose personal information about you.

What you need to know about OSX/Dok malware

A new type of man-in-the-middle attack has been detected in the wild, targeting Apple's Mac. Dubbed OSX/DOK, it relies on a new strain of macOS malware which leverages a bogus security certificate to bypass Apple's Gatekeeper protection. Popular anti-virus programs are currently unable to detect OSX/DOK.

The Hacker News and researches at CheckPoint explain that the malware affects all versions of macOS by using a valid developer certificate signed by Apple. Here's what OSX/DOK does, how it works, how to tell if you're affected and what you can do to protect yourself and avoid these kinds of attacks in the future.