Connect with us

Tech-Film

This malware can steal passwords, credit card info in Chrome, Safari

The Kashmir Monitor

Published

🕒

on

IST

Global cybersecurity company Palo Alto Networks has discovered a malware that is capable of stealing saved usernames and passwords in Google Chrome, saved credit card credentials in Chrome and iPhones text messages if backed up to a Mac.

The malware named “CookieMiner” is capable of stealing browser cookies associated with mainstream cryptocurrency exchanges and wallet service websites visited by the victims, said Unit 42, an arm of Palo Alto Networks.

It steals saved passwords in Chrome and iPhone text messages from iTunes backups on the tethered Mac.

 

“By leveraging the combination of stolen login credentials, web cookies and SMS data, based on past attacks like this, we believe the bad actors could bypass multi-factor authentication for these sites,” the researchers noted.

If successful, the attackers would have full access to the victim’s exchange account and/or wallet and be able to use those funds as if they were the user themselves.

The malware also configures the system to load coinmining software on the system.

Web cookies are widely used for authentication. Once a user logs into a website, its cookies are stored for the web server to know the login status.

If the cookies are stolen, the attacker could potentially sign into the website to use the victim’s account.

“Stealing cookies is an important step to bypass login anomaly detection. If only the username and password are stolen and used by a bad actor, the website may issue an alert or request additional authentication for a new login,” said Unit 42 in a blog post on Thursday.

However, if an authentication cookie is also provided along with the user name and password, the website might believe the session is associated with a previously authenticated system host and not issue an alert or request additional authentication methods.

Most modern cryptocurrency exchanges and online wallet services have multi-factor authentication.

“CookieMiner” tries to navigate past the authentication process by stealing a combination of the login credentials, text messages and web cookies.

“If the bad actors successfully enter the websites using the victim’s identity, they could perform fund withdrawals,” said the researchers.

Apple’s Safari is not the only web browser targeted. Google Chrome also attracts the threat actors’ attention due to its popularity.

“Cryptocurrency owners should keep an eye on their security settings and digital assets to prevent compromise and leakage,” the report suggested.


The Kashmir Monitor is the fastest growing newspaper as well as digitial platform covering news from all angles.

Advertisement
Loading...
Comments

Tech-Film

Bose Frames AR Audio Sunglasses Launched in India, Priced at Rs. 21,900

The Kashmir Monitor

Published

on

Over a year after originally showcasing its audio AR sunglasses, Bose is bringing them to the Indian market. The company on Thursday announced that the sunglasses, which are simply known as Bose Frames, will go on sale beginning next week in the country alongside Bose Frames Lens Collection. The Bose Frames combine three functionalities into one device – premium sunglasses, wireless headphones, and audio AR features. The Bose Frames are the company’s first product to be based on the company’s AR platform.

The Bose Frames carry a price tag of Rs. 21,900 and will be offered in two universal styles – the larger Alto and the smaller Rondo. The Bose Frames Lens Collection of non-polarised and polarised lenses will retail at Rs. 1,990 and Rs. 2,990, respectively. The sales open June 20 via select resellers and Bose stores in the country.

The Bose Frames are essentially a pair of sunglasses that pack a tiny Bose audio system in the temples. This audio system effectively turns them into a wireless pair of headphones. The Bose Frames also include a microphone and multi-function button on the right temple for power and pairing, Siri and Google Assistant, calls and commands, or to pause and skip songs.

 

“With a proprietary open-ear design, they [Bose Frames] take micro-acoustics, voice control, and personal audio to an entirely new level, so users can stream music and information, take and make calls, and access virtual assistants from — while keeping playlists, entertainment, and conversations private,” Bose said in a statement.

Like many wearable devices, the Bose Frames act as a companion device to your smartphone and need the same for processing the information and connecting to the Web.

As we mentioned earlier, the Bose Frames will be released in two designs – Alto and Rondo. Alto is square and angled, whereas Rondo is round and smaller. Both can block up to 99 percent of UVA/UVB rays and weigh just 45 grams. The lenses can be easily popped out and replaced.

Apart from the audio capabilities, the Frames are also compatible with Bose’s AR platform. The Bose Frames don’t include any visual AR capabilities, but they can provide audio AR input to enhance your experience.

“[Bose Frames] knows where you are and what you’re facing using a 9-axis head motion sensor and the GPS from your iOS or Android device — and automatically adds a layer of audio through Bose AR apps, connecting that place and time to endless possibilities for travel, learning, entertainment, gaming, and more,” Bose explained.

Bose AR apps can be downloaded using Bose Connect app and are only available for iOS right now. Android apps are being developed, according to the company’s website.

The company claims that onboard battery can last up to 3.5 hours for playback and up to 12 hours on standby. It can be fully recharged in less than two hours.

Continue Reading

Tech-Film

Novel device can quickly detect strokes

The Kashmir Monitor

Published

on

Scientists have developed a device that can monitor blood flow and help quickly diagnose and treat strokes.

A stroke, one of the leading causes of death worldwide, occurs due to poor blood flow to the brain — a condition known as cerebral ischemia.

Its diagnosis must be done within the first few hours for treatment to be effective, researchers said.

 

The hybrid device, developed by researchers at the China Academy of Engineering Physics and Army Medical University in China, relies on a combination of to light measuring techniques which could diagnose cerebral ischemia non-invasively and faster than the techniques used currently.

“We can measure blood volume, blood oxygenation and blood flow using suitable near-infrared techniques,” said Liguo Zhu, from China Academy of Engineering Physics.

Zhu said that “near-infrared light penetrates one to three centimetres and allows researchers to probe under the skin.”

The working of the instrument relies on the combination of the near-infrared diffuse optical spectroscopy, which analyses the light scattered from the tissues to calculate the amount of oxygen and blood within an area, and the diffuse correlation spectroscopy, which analyses fluctuation in the tissue-scattered lights to measure blood flow.

“Both techniques share the same detectors, which decreases the number of detectors compared to other instruments,” said Zhu.

“The team’s device can record a comprehensive profile of a body part’s hemodynamics, or blood circulation. Devices should measure as many ‘hemodynamic parameters’ as necessary to obtain an accurate diagnosis, as ‘the hemodynamics of stroke is complex’,” said Hua Feng, from Army Medical University.

Another advantage of the device is that it is cheap and compact, which would make more accessible to the people, and hence, help treatment, diagnosis and chances of stroke, researchers said.

Continue Reading

Tech-Film

Parineeti ‘still learning’ to play badminton

The Kashmir Monitor

Published

on

Actress Parineeti Chopra has not started shooting for ‘Saina’ yet and says she is still learning how to play badminton.

Parineeti on Thursday said that the shooting for the biopic will commence in October.

“Hi everyone, we have not started the shoot of ‘Saina’ yet. I am still learning how to play Badminton! We will start in October once I get better at it! Four months to go,” she tweeted.

 

Parineeti had replaced actress Shraddha Kapoor in the Saina Nehwal biopic, which is being directed by Amole Gupte.

She will next be seen in ‘Jabariya Jodi’ along with actor Sidharth Malhotra. The film is scheduled for release on August 2. Directed by Prashant Singh, ‘Jabariya Jodi’ is based on ‘Pakadwa Vivah’ (forced marriage), which was once rampant in Bihar.

Continue Reading
Advertisement

Latest News

Subscribe to The Kashmir Monitor via Email

Enter your email address to subscribe to The Kashmir Monitor and receive notifications of new stories by email.

Join 1,011,223 other subscribers

Archives

June 2019
M T W T F S S
« May    
 12
3456789
10111213141516
17181920212223
24252627282930
Advertisement