China is attempting to cover up inexplicable delays in public reporting of high-risk software security holes by changing the dates of vulnerability-publication to its national vulnerability database so they match those in the U.S. database, according to new research by Recorded Future.
Vulnerabilities
Smartphone Users Tracked Even with GPS, WiFi Turned Off
A team of researchers from Princeton has demonstrated that they can track the location of smartphone users even when location services like GPS and WiFi are turned off.
Researchers Find More Connected Sex Toys Face Hacking Risk
Researchers have found that Vibratissimo sex toys manufactured by a German company are vulnerable to attacks that could expose sensitive user information and allow hackers to take remote control of someone’s sex toy.
Privacy Meltdown: Strava tricked into Revealing Soldiers’ Names
Days after Strava fitness heatmaps were shown to reveal the location of military bases, a Norwegian journalist fooled Strava into revealing the names of some of soldiers and other personnel on those bases.
New Rapidly-Spreading Hide and Seek IoT Botnet Identified by Bitdefender
BitDefender has identified a new fast-spreading IoT botnet called Hide and Seek that has the potential to perform information theft for espionage or extortion.