Weekly Recap: iPhone Spyware, Microsoft 0-Day, TokenBreak Hack, AI Data Leaks and More
Briefly

The article discusses the increasing sophistication of cyber attackers who exploit subtle vulnerabilities without raising alerts. It emphasizes that attackers skillfully blend in, making it challenging to detect malicious activity. Highlights include a serious zero-click vulnerability in Apple's Messages app that was used to deploy Paragon spyware against journalists. Additionally, a zero-day bug in Microsoft’s WebDAV protocol was exploited by the threat actor Stealth Falcon to conduct targeted attacks with a new variant of the Horus Agent. The article urges a broader awareness of cybersecurity threats beyond obvious indicators.
Attackers now know how to stay hidden by blending in, making it difficult to detect when something wrong is happening, as many threats start quietly.
Apple disclosed that a security flaw in its Messages app was actively exploited in the wild to target civil society members in sophisticated cyber attacks.
Microsoft addressed a zero-day bug in WebDAV that was exploited by a threat actor known as Stealth Falcon as part of highly targeted attacks.
If we're only looking for the obvious signs, what are we missing right in front of us?
Read at The Hacker News
[
|
]