Plus: 9.8 CVSS WordPress security flaw tracked
Part of Network | |
Presented by |
Meta has agreed to pay $725M to settle the Cambridge Analytica data leak case. The lawsuit has been ongoing since 2018 and has had severe consequences for the special media giant's reputation regarding privacy. More: - The lawsuit claimed that Facebook allowed third-party apps used by Cambridge Analytica to access users' personal information without their consent for political advertising.
- The data leak was first reported in 2018. The way this data was extracted was through a personality quiz app called "thisisyourdigitallife," which collected users' public profiles, page likes, dates of birth, genders, locations, and even messages to build their psychographic profiles.
- The app was used only by 30,000 users, but the dataset was found to contain information on 87 million Facebook users.
- This campaign was infamously involved in the 2016 presidential elections and became the center of discussion regarding the manipulation of the U.S. voter base by Russia.
- Cambridge Analytica has since declared bankruptcy and is now defunct.
| |
Piers Morgan's Twitter account was hacked yesterday as breachers tweeted offensive content from his account. Twitter deleted all of his posts since the account's inception. More: - The incident was first noticed by other journalists, who posted screenshots of racist tweets that were written by his account.
- The hackers not only posted racist tweets but also changed the account name to numerous offensive names and titles.
- This news was confirmed by the Instagram account of his Sky TV show, which tweeted at Elon Musk, asking him if there was any chance of getting the account back.
- Morgan is known for his controversial comments and has invited several guests to his show that have been deemed inappropriate by a number of pundits and media critics.
| |
A message from PENDULUM THERAPEUTICS The next-generation probiotic associated with a healthy weight, metabolism, and gut lining… Meet Pendulum Akkermansia, the probiotic that doctors, scientists, and even Halle Berry is talking about. This keystone strain strengthens the gut lining and boosts GLP-1 production, which is associated with managing weight. It also helps promote a healthier gut microbiome and improved GI function. Founded by PhD scientists, Pendulum is the first and only company to manufacture this novel strain and sell it in the form of a daily probiotic capsule. They are now offering Inside readers 20% off their first month of Pendulum with code INSIDE20 at Pendulumlife.com Claim 20% off now | |
North Korean hackers tried to breach almost 1,000 South Korean foreign policy experts in a recent hacking campaign that was tracked by researchers. The hacking campaign is believed to have had limited success for the group, breaching around 50 individuals. More: - The unknown North Korean threat actor used phishing to convince individuals and companies to click on malicious links.
- Once the individuals clicked on the links, they were redirected to fake websites that required them to use their real login credentials. After doing so, they were asked for a $1,980 ransom.
- Law authorities stated that initial reports show a low number of those that were breached but claim that it is still too early to understand the full scope of this hacking campaign and that these figures may change later on.
Zoom Out: - North Korean hackers have consistently targeted South Korean organizations and individuals. The country operates hacker groups that are supported by government finances and tools. It is estimated that North Korea-based hackers have stolen $1.72B worth of cryptocurrency since 2017.
| |
Researchers have found a severe security flaw in WooCommerce's gift card premium WordPress plugins. The bug has a 9.8 CVSS ranking. More: - This security flaw could allow hackers to deploy remote payloads and create a backdoor. By doing so, a threat actor could gain control over the entire website.
- The attacks came from hundreds of IP addresses, but only two IPs were responsible for the majority of exploitation attempts.
- YITH WooCommerce Gift Cards allow WordPress website administrations to create gift cards that their customers can purchase.
- Considering that the plugin has over 50,000 users, security researchers have recommended that users update to YITH WooCommerce Gift Cards premium version 3.20.0 or newer.
| |
A message from ARRIVED Unbelievable: a must-see real estate investing hack. We know real estate has outperformed the S&P500 over the past 20 years as an asset class. Plus, it's tangible. But most don’t do it. You need massive upfront capital, it takes a ton of setup & expertise, and then you have to manage it. Exhausting. Here's that secret hack: Arrived. Arrived is an easy-to-use real estate investment platform offering SEC-qualified investments, and it’s backed by world-class investors like Jeff Bezos and Marc Benioff. In a few clicks, you can: - Browse properties (<1% make it through vetting): AirBnBs, long-term rentals, and more coming soon.
- Pick your favorites: invest anywhere between $100 to $50K per property.
- Boom: you're officially earning income and appreciation while Arrived manages your properties.
Both first-time investors and long-time real estate millionaires are flocking to Arrived, funding over 200 properties and $75M of property value since last year. Demand is high. What’s holding you back? Browse Properties | |
Lazarus Group branch BlueNoroff APT has been tracked, bypassing Windows' Mark of the Web security protocols. The group uses fake domains that use the identities of companies such as Mitsubishi UFJ Financial Group and ABF Capital. More: - The group is also tracked as APT38, Nickel Gladstone, and Stardust Chollima.
- BlueNoroff is known to breach targets in North and South America, Europe, Africa, and Asia.
- Like its main branch Lazarus, the group is using mainly cryptocurrency attacks. Its most known method is swapping Microsoft Word document attachments for ISO files that are sent through phishing emails.
- The image files contain a Microsoft PowerPoint slide show (.PPSX) and a Visual Basic Script (VBScript) that is automatically deployed into the victims' devices once they click on it.
| |
Quick Hits: - Jamf Now is helping businesses set up and secure Apple devices with no IT experience necessary. Manage up to 3 devices for free.*
- According to a memo that describes the attack, hackers stole data belonging to multiple electric utilities during the October ransomware attack on a U.S. government contractor, CNN reports.
- The financial sector was one of the most targeted verticals by hackers in 2022, leading to 254 million leaked records.
- A recent investigation revealed that hackers planted fake evidence in the computers of two Indian human rights activists to blame them for crimes they didn't commit.
- Real estate has outperformed the S&P500 (20+ years). Arrived, a Bezos-backed company, finally lets everyone take advantage of it.*
*This is sponsored content. | |
Upcoming events at Inside: - January 05 - AMA with Gun.io - Building and managing software development teams w/ Deividi Silva (Watch On Demand)
- January 06 - AMA with LinearB - Improving workflow for developers w/ Ori Keren (Watch On Demand)
- January 10 - Inside Startups Coffee Break (Register Here)
- January 17 - Inside Marketing Coffee Break (Register Here)
- January 31 - Growth Summit 2023 (Register Here)
| |
| | Arbër is an Inside writer who also has experience in entrepreneurship. He has experience covering Consumer Tech, Venture Capital, NFTs, Crypto, etc. Arbër holds a Bachelor's degree in Business from XAMK University in Finland. When he is not reading(and writing) business news, he chooses to watch sports or anime...and then read news about sports or anime. | | Editor | Aaron Crutchfield is based in the high desert of California. Over the last two decades, he has spent time writing and editing at various local newspapers and defense contractors in California. When he's not working, he can often be found looking at the latest memes with his kids or working on his 1962 and 1972 Fords. | |
Pendulum is now offering Inside readers 20% off their first month with code INSIDE20. | |
|
767 Bryant St. #203, San Francisco, CA 94107 Copyright © 2022 Inside.com | |
|