0 Commentarios
0 Acciones
151 Views
Directorio
Directorio
-
Please log in to like, share and comment!
-
WWW.CNET.COMHow to Find Out if Your Android Phone Is Being Tracked by an AirTagAirTags are a super easy way to to keep track of your items, like keys, luggage or anything else you don't want to lose. They're cheap, too, at $30 a pop. The value these tiny trackers bring to the table can be immense and can save you time, money and stress if you lose something important. The convenience of AirTags also comes with a dark side, as they're convenient for bad actors to track you, too.While iPhones have a built-in way to notify a user if they're being tracked by an unknown AirTag, people using Android phones were initially left in the dark. Luckily, Apple released an app to the Google Play Store to address this called Tracker Detect.Since then, Google has launched its own Find My Device network, which supports unknown tracker detection, though some may be more comfortable with having both apps working alongside each other. Below, we'll show you how to identify an unknown AirTag that's been tracking you and what you can do about it.For more, check out Apple's Find My vs Google's Find My Device network and 8 settings you should change after installing iOS 18.2.Use Tracker Detect on Android to scan for AirTags The Tracker Detect app, available in the Google Play Store for free, allows you to use your Android to search for and track items that work with Apple's Find My network, such as AirTags, and are separated from their owner for at least 15 minutes. No Apple ID account is required. Enlarge Image Just hit Scan and search for nearby AirTags. Nelson Aguilar/CNETAfter downloading Tracker Detect, turn on Bluetooth, open the application, agree to the terms and conditions, and tap the blue Scan button to search for nearby items. If this is your first time using Tracker Detect, you'll be prompted to give the app access to Bluetooth, which it needs to find any AirTags.Your Android phone will scan for up to a minute, and if it finds an AirTag near you, it will appear as "Unknown Airtag." If you don't find anything, you can try the scan again, especially because the tracker must be separated from its owner for at least 15 minutes to appear.What should I do if an AirTag is following me?If Tracker Detect notices an AirTag that's been following you for at least 10 minutes, the app will then allow you to play a sound from the AirTag so that you can more easily find the physical tracker.If you do find the AirTag, it's up to you on how you want to proceed. If the AirTag is with you by accident, meaning it's not being used to follow you, and "Lost Mode" is enabled, you can tap and hold your NFC-compatible Android to the white side of the tag to get more information on how to return it.However, if the AirTag is being used to track you, you can also view the serial number by tapping it with your phone, which might prove useful if you're considering contacting law enforcement and require ID proof of who might be stalking you. You can also take the back cover apart and look inside the AirTag to find the serial number. The AirTag can be disabled by removing the CR2032 battery. Patrick Holland/CNETHow do I disable an AirTag?If you want to shut down the AirTag and stop if from tracking you, Tracker Detect will provide a brief but concise summary on how to disable it:Press down on the stainless steel back cover of the AirTag.Rotate the cover counter-clockwise until it stops.Release your fingers and the cover will come off.Remove the button cell battery.Removing the battery will notify the owner that the AirTag has been disabled, so be warned.Unfortunately, Tracker Detect lacks some of the features that are available natively on the iPhone -- most importantly, automatic background scans. On Tracker Detect, you must manually scan for AirTags each time, which can be a nuisance if you're constantly worried about being tracked. But again, with Google's Find My Device network and Android's ability to do this now, it's a bit less of a worry.For more, don't miss how to download iOS 18.2 right now.0 Commentarios 0 Acciones 159 Views
-
WWW.VIDEOGAMER.COMFortnite players surprised at new collab rumors with popular sport brandYou can trust VideoGamer. Our team of gaming experts spend hours testing and reviewing the latest games, to ensure you're reading the most comprehensive guide possible. Rest assured, all imagery and advice is unique and original. Check out how we test and review games hereFortnite has grown into a cultural phenomenon, thanks in large part to its iconic collaborations. Epic has perfectly integrated the worlds of gaming and comics, featuring Marvel superheroes such as Iron Man and Spider-Man, as well as DC icons like Batman and Wonder Woman. The cinematic universe followed suit, incorporating characters from major movies such as Star Wars, John Wick, and Dune. Building on this tradition, Fortnite has expanded into sports, teaming with renowned brands such as Nike, Puma, and NBA clubs, as well as legendary sportsmen like LeBron James and Neymar Jr. Its foray into wrestling began with WWE superstars such as Bianca Belair, Becky Lynch, and John Cena. Now, excitement is mounting as new teasers imply another WWE collaboration is coming, bringing users more exciting skins and emotes.Fortnite x WWE collab teased at latest SmackDown episode ring matA new rumor about the next major Fortnite collab has emerged as Epic is seemingly sponsoring WWEs ring mat. Right before the airing of this past weeks SmackDown episode, spectators noticed a black ring mat with several logos displayed on it.Fortnites logo was seen on the new WWE ring mat. Image by ShiinaBR.One logo that stood out and was at the absolute center was Fortnites logo. Since its known that Epic has collaborated with WWE before and fans have been asking for more such crossovers, like Call of Duty did with Cody Rhodes, Rhea Ripley, and Rey Mysterio, its clear a new wave is on the way.Alongside Fortnite, other prominent logos such as Snickers, Cricket, Netflix, and more were seen on the ring mat. Unfortunately, the mat did not make it to the airing of the actual live show and was rather replaced by a blue mat.Some fans who spotted the Fortnite logo were thrilled at the tease and turned in their excitement in ShiinaBRs post. One such user said, We already have John Cena, Becky Lynch, and Bianca Belair in the game. I think the next would be Cody Rhodes, Roman Reigns, Rhea Ripley, and The New Day!Another chimed in, WaitTravis Scott will be there and making his debut, hinting at another rumor of the return of Travis Scotts Fortnite skin. While rumors are underway about the next wave of WWE collabs, a forgotten stealth game may just be arriving in Fortnite as well. FortnitePlatform(s):Android, iOS, macOS, Nintendo Switch, PC, PlayStation 4, PlayStation 5, Xbox One, Xbox Series S/XGenre(s):Action, Massively Multiplayer, Shooter9VideoGamerRelated TopicsSubscribe to our newsletters!By subscribing, you agree to our Privacy Policy and may receive occasional deal communications; you can unsubscribe anytime.Share0 Commentarios 0 Acciones 155 Views
-
WWW.VG247.COMIf you're as sick of Batman's origin story as everyone else, don't worry, because James Gunn has no intention of putting it to screenCowabummer!If you're as sick of Batman's origin story as everyone else, don't worry, because James Gunn has no intention of putting it to screen"We dont need to hear the origin story again."Image credit: Warner Bros News by Oisin Kuhnke Contributor Published on Jan. 5, 2025 You're probably pretty familiar with Batman's origin story by now, so thankfully James Gunn has said there's no plans to show it in the new DCU.The problem with constant reboots and new takes on beloved characters, is that we've seen so much of it before. We all know that Superman crashes on a farm as a baby, we're all aware that Spider-Man gets bitten by a radioactive spider and gets super powers, and we've all seen Batman's parents being killed in front of him, setting him on a path of vigilantism. But whenever the caped crusader arrives on the big screen on DC Studios co-CEO James Gunn's new DCU, he won't be doing so in an origin story. Speaking to Rotten Tomatoes, Gunn explained that Batman "already exists in this universe, just like when we come to the Superman movie and we see that Superman already exists, he's already known by the people in Metropolis. We dont need to hear the origin story again."To see this content please enable targeting cookies. Batman has now technically arrived in the new DCU, as he made a cameo in a recent episode of Gunn's Creature Commandos, with the filmmaker explaining that it's "just a way to introduce that Batman is a part of this universe." Don't pay too much attention to the cameo though, as Gunn also noted that he really isn't ready to lock anything in about the character. "When they first showed the episode to me, there was a lot more Batman. And I said, 'Im not ready to commit to that... more silhouette!'" To see this content please enable targeting cookies.While there is a new Batman film on the way, there's currently no word on when we can expect to see it. That one's called The Brave and the Bold, and is set to be directed by The Flash director Andy Muschietti (certainly a choice), and while it won't be canon to the DCU, there's also The Batman: Part 2 - though that recently got another delay all the way into 2027.0 Commentarios 0 Acciones 145 Views
-
WWW.VG247.COMThere's no denying Stardew Valley's popularity, as its latest sales figure milestone puts it above titles like Super Smash Bros. Ultimate and Zelda: Breath of the WildIf you thought Stardew Valley was popular, you probably didn't realise just how popular, as the indie game hits a pretty massive sales milestone. Read more0 Commentarios 0 Acciones 151 Views
-
3DPRINTINGINDUSTRY.COMNovember 2024 3D Printing Industry Review: Key Updates and BreakthroughsNovember 2024 was a transformative month in the 3D printing industry, marked by significant product launches, strategic corporate acquisitions, insightful market analyses, and noteworthy industry collaborations. Formnext Frankfurt 2024 served as a central stage for unveiling cutting-edge technologies, while data from CONTEXT highlighted a stark contrast between the booming entry-level 3D printer segment and a subdued industrial market. This review is a rundown of the months notable happenings.Formnext 2024: Defining Innovations in Additive ManufacturingIn November, Formnext attendees were introduced to the CBAM 25 from Impossible Objects, marking its European commercial debut after a global unveiling in June. Built on Composite-Based Additive Manufacturing (CBAM), the system offers speeds up to fifteen times faster than certain existing polymer 3D printing technologies. Company founder Robert Swartz indicated that the CBAM 25 printed a 60-micron layer every four seconds, targeting high-throughput markets like aerospace. CEO Steve Hoover reported strong interest from manufacturers seeking to produce high-strength parts without the warping or shrinkage challenges found in conventional methods.A composite part 3D printed using the CBAM 25 in just 10 seconds. Photo via Impossible Objects.November also saw Prusa Research launch the CORE One, a fully enclosed CoreXY 3D printer featuring active chamber temperature control of up to 55C. Designed to handle materials such as PLA and PETG behind a closed enclosure, the system integrated a 250220270 mm build volume with an exoskeleton design for increased rigidity. Josef Prusa emphasized the CORE Ones all-in-one versatility, which aimed to reduce the need for multiple specialized machines. Prusa Research planned to begin shipping in January 2025, with a conversion kit for MK4S owners following in March 2025.The new Prusa Core One. Photo via Prusa Research.At Formnext, nLight unveiled the Corona AFX-2000 beam-shaping laser intended to significantly enhance laser powder bed fusion (LPBF) 3D printing. According to nLight, one aerospace and defense client had already used the AFX-2000 to 3D print aluminum components at three times the speed of typical large-format 3D printers. The lasers dynamic beam-shaping technology allowed for ring-shaped profiles, which reportedly enabled high build rates while maintaining precision in the melt pool.A render of a ring-shaped laser beam profile. Image via nLight.Visitors exploring high-performance materials encountered Fiberthrees F3 PA ESD filament. Developed through more than thirty formulations, it boasted a surface resistance of 1010/cmmeeting DIN EN 61340-5 requirementswhile delivering an 84MPa tensile strength. The filaments electrostatic discharge capabilities were expected to serve industries needing both conductivity and mechanical durability.3D printed tray using F3 PA ESD filament. Image via Fiberthree.Formlabs introduced its Creator Series, a safer, more affordable resin line for hobbyist LCD and DLP 3D printers. Priced at $45/kg, these resins avoided ACMO, a chemical often linked to harmful odors in budget photopolymer materials. The initial offerings, Tough Resin and Super Clear Resin, were validated for machines from Elegoo, Anycubic, and other desktop brands. This launch sought to give cost-conscious users greater material quality without incurring health or safety trade-offs.Another highlight at Formnext was Renishaws updated RenAM500 series metal AM system, augmented by TEMPUS technology. By allowing multiple lasers to operate simultaneously across the entire powder bed, build times could drop by up to 50%. Renishaw aimed these improvements at manufacturers in aerospace and automotive seeking higher throughput without sacrificing part integrity.Renishaw has expanded its RenAM 500 series with the RenAM 500 Ultra. Photo via Renishaw.Wayland Additive featured its NeuBeam process via the Calibur3 machine. Operating with a stabilized electron beam, NeuBeam minimized residual stress through a hot-part approach, simplifying powder removal. Waylands Head of New Technologies, Martyn Hussey, presented advancements in speed, stability, and powder morphology, emphasizing how these improvements could benefit industrial customers requiring consistent metallurgical properties.The Calibur3s powder bed. Photo via Wayland Additive.Lastly, Sheffield-based Fyous demonstrated its PolyMorphic 28K, a mold-making system using 28,000 adjustable pins that formed custom molds in about 20 minutes. The company claimed this technique was up to fourteen times faster than using conventional 3D printing to fabricate molds, reducing both cost and storage overhead for applications such as vacuum forming, composite layup, or polyurethane molding.Strategic Developments and Market DynamicsAmid the flurry of Formnext news, Siemens announced the planned acquisition of Altair Engineering Inc. for approximately $10 billion in November 2024. CEO Roland Busch stated that the merger aims to integrate Altairs advanced simulation and AI-driven computational tools with Siemens Xcelerator platform, creating the worlds most complete AI-powered design and simulation portfolio. Founder James Scapa highlighted the complementary strengths of both companies, emphasizing the enhancement of digital twin technologies and AI-based optimization for defense and industrial applications. Siemens projected an 8% increase in its digital business revenue, adding around 600 million to the 7.3 billion reported in FY 2023, and anticipated cost synergies of $150 million in EBITDA within two years post-acquisition. The deal is expected to close in the second half of 2025, subject to customary conditions.Siemens Munich-based corporate headquarters. Photo via Siemens.On the materials front, KIMYA, the additive manufacturing materials subsidiary of the ARMOR GROUP, ceased filament production and withdrew from the 3D printing market in November 2024. Hubert de Boisredon, Chairman and CEO of ARMOR GROUP, announced the closure, citing weaker-than-expected market growth and the economic crisis, which led to declining sales of new machines. KIMYA had invested around 15 million since its 2017 launch and supplied high-performance filaments to companies like Stratasys, Ultimaker, and AON3D. The exit affected 15 employees, who would receive support to transition to new opportunities; The decision followed similar strategic withdrawals by companies such as BASF.Close up of Kimyas PEKK filament next to 3D printed PEKK object. Photo via 3DGence.Novembers market data from CONTEXT revealed an explosive 65% year-over-year growth in shipments of entry-level 3D printers for Q2 2024, now accounting for 48% of global 3D printer revenues. This surge was predominantly driven by Chinese manufacturers, with Creality, Bambu Lab, AnyCubic, and Elegoo collectively representing 94% of all sub-$2,500 3D printer shipments. Bambu Lab achieved an unprecedented 336% shipment growth, securing 26% of the global entry-level market share, while Creality maintained the largest share at 47%. In contrast, the industrial 3D printer segment experienced a 25% year-over-year decline, marking the fourth consecutive quarter of reduced shipments. CONTEXT attributed this stagnation to high interest rates and delayed capital expenditures, which hampered investments in large-scale additive manufacturing systems. Chris Connery, VP of Global Analysis at CONTEXT, noted that affordability and advanced features fueled consumer-level adoption, while industrial segments awaited more favorable economic conditions for a rebound in 2025.3D printer system revenues and growth by price class. Image via Context.Recognizing Leadership and CollaborationIn November, Joe Allison, Principal of 3D Ventures and CEO of Gentle Giant Studios, was awarded the AMUG Innovators Award in November 2024, recognizing his 34-year career in additive manufacturing. Allisons contributions include leading significant advancements in stereolithography and selective laser sintering through his roles at Solid Concepts and Stratasys Direct Manufacturing. Under his leadership, Solid Concepts became the first third-party supplier to Boeing for flight-certified SLS parts and promoted Direct Metal Laser Sintering (DMLS) for prototyping and production. AMUG President Shannon VanDeren praised Allisons impact on the industry, while Bruce LeMaster, AMUGs Director at Large, highlighted Allisons mentorship and pioneering efforts in developing automated support generation software. Joe Allison, CEO of Gentle Giant Studios and recipient of the 2025 AMUG Innovators Award. Photo via AMUG.Meanwhile, SME and America Makes announced their strategic partnership to co-locate the Spring Technical Review and Exchange (TRX) with RAPID + TCT 2025 in Detroit, scheduled for April 8-10, 2025. This collaboration aims to unite key leaders and stakeholders from aerospace, defense, and consumer goods sectors, fostering deeper connections and accelerating the adoption of next-generation additive manufacturing technologies. John Wilczynski, Executive Director of America Makes, emphasized the partnerships role in driving innovation by bringing together industry experts, researchers, and practitioners under one roof. Steve Prahalis, COO of SME, highlighted the benefits of consolidating these events to facilitate the exchange of ideas and exposure to diverse additive manufacturing applications. This strategic move leverages Detroits strong manufacturing heritage, aiming to enhance the defense sectors manufacturing capabilities through additive technologies.America Makes and SME logos. Photo via SME.Conversely, Formnext Chicago 2025 was postponed due to scheduling conflicts with RAPID + TCT 2025 and the AMUG Conference, along with ongoing economic and geopolitical uncertainties. Sascha Wenzler, Vice President at Mesago Messe Frankfurt GmbH, explained that the decision aimed to avoid the clash of major industry events, ensuring better alignment with exhibitors commitments and market needs.Leading Formnext Chicago organizers on the Formnext Stage at IMTS 2024. Image via Mesago Messe Frankfurt GmbH.Global Trends and Emerging ChallengesNovember also underscored Chinas growing role in AM, as consultant Dirk Simon presented insights on Chinas globalization of additive manufacturing at the Mobility Goes Additive Annual Meeting. Simon, with extensive experience working with Chinese AM companies like Farsoon Technologies, Bambu Lab, and Bright Laser Technologies (BLT), highlighted Chinas significant advancements in reducing AM part costs through innovations such as multi-laser setups, closed-loop powder handling, and user-friendly machine designs. He noted that Chinese firms are now entering large-scale series production, with companies like BLT exporting metal parts to major aerospace firms like Airbus. Simon emphasized the importance of Western companies forming partnerships with Chinese AM firms to leverage their cost-effective production capabilities while navigating cultural and technical challenges. He recommended robust purchasing processes, including benchmarking, acceptance tests, and comprehensive contract clauses, to mitigate risks associated with supply chain interruptions and intellectual property concerns.Dirk Simon Presentation at Mobility Goes Additive 2024. Photo via Dirk SimonReady to discover who won the 20243D Printing Industry Awards?What will the future of 3D printing look like?Which recent trends are driving the 3D printing industry, as highlighted by experts?Subscribe to the 3D Printing Industry newsletter to stay updated with the latest news and insights.Stay connected with the latest in 3D printing by following us on Twitter and Facebook, and dont forget to subscribe to the 3D Printing Industry YouTube channel for more exclusive content.Featured image shows the new Prusa Core One. Photo via Prusa Research.0 Commentarios 0 Acciones 166 Views
-
REALTIMEVFX.COMCareer change Archviz to VFXSigu90 January 5, 2025, 11:22am 1Hi, Im new to this forum. So, hello!I am here because Id like to ask for advice on switching careers from archviz to real-time VFX. Im 34 and have been working as a 3D artist for archviz for about 5 years. The problem is that I dont like my job; maybe because I never studied to become an architect and I never really felt like one. But at that time, I didnt know how much there was to the world of 3D, and every day I want to quit my job because I cant stand it anymore. During my spare time, I try to study other things because I thought I wanted to learn FX for film, but after discovering real-time VFX, I fell in love with it.Honestly, I have the idea to start investing time in studying full-time and doing a mentorship because I want to learn not only how to create effects in general but also how game studios work.However, I want to learn real-time VFX in depth, and Im comfortable with the idea of spending at least 1 year to have the best chance of entering the industry. But that means Ill probably finish when Im 35.I read a post on Reddit that said there is massive ageism in the game industry. Is that true? Does age matter more than skill? It seems theres a lot of pessimism in that forum, but I prefer to ask people who are working in this industry (and in this specialization).For me, its not about money or rewards; its about doing something I enjoy out of passion (games, not only). Mostly i wont to do this for personal satisfaction. Any advice is welcome.Thank you for your attention.1 LikeManus January 5, 2025, 12:03pm 2I have a good friend that is 30 and also worked in Archviz for past 6 years or so. He started learning vfx in a free time for past year and did amazing progress! https://www.artstation.com/gabiruvfxAnd hes planning to start applying to studios soon. Though Im sure he will get it easily.I personally didnt meet with any ageism, its just a lot of people consider themselves too old to change, which is not true. I know also a VFX Artist that started at the age of 45 and got a job, so give it a try Just keep in mind its relatively hard now due to all layoffs and not as many studios hiring, but if you just learn in your free time while having other job, then you are safe! All the best to you0 Commentarios 0 Acciones 163 Views
-
WWW.FOXNEWS.COMCreate custom visuals on your iPhone with Image Playground in iOS 18.2close Create custom visuals on your iPhone with Image Playground in iOS 18.2 Tool transforms simple text prompts into images or animations in seconds. Apple's new Image Playground feature is an excellent addition to the iPhone, allowing you to easily create custom visuals.This innovative tool transforms simple text prompts into images or animations in seconds, opening up a world of creativity right at your fingertips. Image Playground feature on iPhone (Apple)Ensure compatibility before you startBefore diving in, ensure your iPhone is compatible. Image Playground works on:iPhone 15 Pro and Pro MaxAll iPhone 16 models Image Playground feature on iPhone (Apple)How to update software to 18.2 or later on iPhoneTo access Image Playground, update to iOS 18.2 or later:OpenSettingsTapGeneralSelectSoftware UpdateTap Update NowEnter your passcode and agree to termsWait for theinstallation to complete Steps to update iPhone software (Kurt "CyberGuy" Knutsson)How to use Image PlaygroundOnce updated, locate the Image Playground app icon on your home screen. It looks like a cute animal in a soap bubble. The app uses Apple Intelligence to combine concepts, text descriptions and people from your photo library to create stylized images. Here's how to use it:Open theImage Playground appWhere it says "Describe an image," go ahead andtype a prompt describing the image you want (e.g., "A cat wearing sunglasses") or add a suggestion from the listHitEnter and watch as Image Playground generates your imageSwipe through toselect the image you want to use Steps to use Image Playground feature on iPhone (Kurt "CyberGuy" Knutsson)You can click thethree horizontal dots in the circle in the upper right of the screen tocopy,duplicate or add captionTapDone when satisfiedClick the share icon (up arrow in the square) in the bottom left to shareYou can share viaAirDrop,Message orEmail, orcopy orsaveimage to your iPhone. Steps to use Image Playground feature on iPhone (Kurt "CyberGuy" Knutsson)Want to make it even more special?You can create images based on your contacts. Heres how:Open theImage Playground appClick the plus sign in the app.Tap"Choose Photo."Click on thephoto you want to use.Customize it by typingwhat you want to add (like adding a hat) in the "Describe an image" field.Tap theup arrow.WHAT IS ARTIFICIAL INTELLIGENCE (AI)? Steps to use Image Playground feature on iPhone (Kurt "CyberGuy" Knutsson)Swipe through the images tochoose the one you like.Tap the selected image and click Done.Tap the "share icon" (up arrow in the square box) in the lower left of the screen toAirDrop,message oremail the image.You can alsocopy it orsave it to your device.GET FOX BUSINESS ON THE GO BY CLICKING HERE Steps to use Image Playground feature on iPhone (Kurt "CyberGuy" Knutsson)Kurts key takeawaysImage Playground allows anyone with a compatible iPhone to produce unique, personalized images in seconds. While the results may not always perfectly capture reality, the technology is likely to improve over time. This feature opens up new possibilities for digital expression and storytelling right from your pocket.CLICK HERE TO GET THE FOX NEWS APPWhat fun and creative things do you think you could make with Apple's new Image Playground feature? Let us know what you think by writing us at Cyberguy.com/ContactFor more of my tech tips and security alerts, subscribe to my free CyberGuy Report Newsletter by heading to Cyberguy.com/NewsletterAsk Kurt a question or let us know what stories you'd like us to coverFollow Kurt on his social channelsAnswers to the most asked CyberGuy questions:New from Kurt:Copyright 2025 CyberGuy.com. All rights reserved. Kurt "CyberGuy" Knutsson is an award-winning tech journalist who has a deep love of technology, gear and gadgets that make life better with his contributions for Fox News & FOX Business beginning mornings on "FOX & Friends." Got a tech question? Get Kurts free CyberGuy Newsletter, share your voice, a story idea or comment at CyberGuy.com. Related Topics0 Commentarios 0 Acciones 142 Views
-
WWW.FORBES.COMDont Click TwiceNew Chrome, Edge, Safari Hack Attack WarningDouble-clickjack hack attacks strike.GettyUpdate, Jan. 5, 2025: This story, originally published Jan. 3, now includes an explanation of clickjacking as a threat surface along with additional information regarding the double-clickjacking hack itself and a warning from a security expert on how such attacks are evolving.Hundreds of millions of web users have been warned about a new and dangerous cyber attack that doesnt care what browser you useas long as you click twice. Heres everything you need to know about the double-clickjacking hack attack.Dont Click Twice Warning As New Hack Attack ConfirmedApplication security and client-side offensive exploit researcher Paulos Yibelo, with a long history of discovering vulnerabilities and novel security threats, has revealed what could be the new attack methodology with the biggest reach of them alleveryone using a web browser. In a blog post detailing what is referred to as double clickjacking, Yibelo describes in technical detail how hackers can compromise your credentials when you double-click in Chrome, Edge, Safari or just about any web browser client.This entirely new threat surface is exposed by the fact that hackers can trick the user of almost any website and almost any web browser into clicking something without even realizing they are doing it. Clickjacking became obsolete when browser developers built protections into their software to prevent just such an attack. Double clickjacking, however, gets around these protections by adding another layer of attack that relies upon mouse double-click timing to get the victim to validate a login or some other account authorization while thinking they are clicking something else, like a CAPTCHA, that is on the screen at the time. The TL;DR, in other words, is that a new window is opened, and the user is asked to double-click on a prompt while, in the blink of an eye, the hacker is switching context to a different window altogether.I have approached Apple, Google and Microsoft for a statement.What Is A Clickjack Hack Attack?A clickjacking hack attack, simply explained, is one that employs various methods to get users clicking on invisible or otherwise obfuscated, as in disguised as something else, web page elements. Such attacks were generally executed by using such an invisible HTML element, which could even be an entirely invisible web page itself, within something called an iframe. The whole point of an iframe is to display a web page within a web page, essentially. The point is that this element or page is displayed on top of another page, which the user sees, and so, while the user thinks they are clicking what they are looking at, they are actually clicking on an invisible element on top of it.Read More: Android Under AttackUsers Warned As FireScam Threat Evades DetectionA couple of different clickjacking variations seen over the years include, according to researchers at security firm Imperva, likejacking and cursorjacking. The first of these, likejacking, is when a like button is manipulated so as to trick a user into liking page without realizing they are doing so. The second, cursorjacking, is a user interface redressing method that changes the position of the cursor from where the victim thinks it is to somewhere else entirely. The dangers of this do not really need explaining. However, this is no longer an issue, as the various vulnerabilities that allowed it have long since been addressed. Indeed, as already mentioned, clickjacking itself has become all but obsolete thanks to protections applied by all the major browser client developers. There is, though, a test you can run to see if your site is vulnerable. This uses code that comes as part of the OWASP clickjacking defense sheet and looks like this:ImpervaWhy The Double Clickjack Hack Is So DangerousWhile it might sound like a small change, Yibelo said, double clickjacking opens the door to new UI manipulation attacks that bypass all known clickjacking protections, and seemingly affects almost every website, leading to account takeovers on many major platforms. Yibelo highlighted the following reasons why the hack attack is so dangerous:It can bypass existing clickjacking protections.It can impact more than just websites alone, with crypto wallets and smartphone attacks possible.Its an entirely new attack surface for hackers to exploit.All websites are, by default, vulnerable to this hack attack.It only requires the target to double-click, nothing else.Exploiting The Double Clickjacking Hack TechniqueIn the blog posting detailing the double clickjacking hack methodology, Yibelo provides two examples of how the technique can be exploited by attackers. The first is by way of OAuth and API permissions. Open authorization enables an application, or a website, to access resources hosted on a different site and related to a different user. OAuth is the industry standard secure way of doing this. Until it isnt. Attackers could trick targets into authorizing a malicious application with extensive privileges, Yibelo warned, this technique has unfortunately led to account takeovers in almost every site that supports OAuth - which is pretty much all major websites with an application programming interface support. Secondly, Yibelo said, there are the one-click account change attacks that are similar to clickjacking in that double clickjacking can be used to make the user click on account-setting changes, such as disabling security settings, deleting an account, authorizing access or money transfers, or confirming transactions, etc.DoubleClickjacking is a sleight of hand around on a well-known attack class, Yibelo said, by exploiting the event timing between clicks, attackers can seamlessly swap out benign UI elements for sensitive ones in the blink of an eye. This means that developers and security teams need to tighten their control over embedded or opener-based windows and be more vigilant about such things as multi-click patterns.Evolution Of Hack Attacks Create Additional Challenges For DefendersTotally unsurprisingly, reports of this double-clickjacking hack attack exploit have created great concern among users and cybersecurity professionals alike. The marginal decreases in ransomware and malware over the past year, Spencer Starkey, an executive vice president at content control and network security vendor SonicWall, said, should not fool people, hackers have just changed their tactics. There is no doubt that cyber attacks are constantly evolving, the proof is there in front of you in both articles that I write here at Forbes.com and the exploits that so many fall victim to. Due to the speed at which new attacks are being created, they are more adaptive and difficult to detect, Starkey said, which poses an additional challenge for cybersecurity professionals. From the high-level business perspective, this means looking to monitor their networks for suspicious activity constantly. The sooner teams can flag a potential issue, Starkey concluded, the lower the risk of an attack.When it comes to attack mitigation, Yibelo said, Ive reported this issue to some sites, the results have been mixed. Most have chosen to address it while some have chosen not to. As for end users, the advice for now has to be dont click twice if you want to be sure not to fall victim to this new hack attack until in-browser mitigations are available.0 Commentarios 0 Acciones 153 Views
-
WWW.FORBES.COMAndroid Under AttackUsers Warned As FireScam Threat Evades DetectionBeware the FireScam Android threat.SOPA Images/LightRocket via Getty ImagesA new information-stealing Android malware threat has been revealed by security researchers who have warned that it exfiltrates sensitive data, including your notifications, and employs clever obfuscation techniques to evade detection. Heres what you need to know about FireScam.What Android Users Need To Know About The FireScam ThreatA technical report disclosing the FireScam Android malware threat has been published by researchers from threat intelligence specialists Cyfirma, and it looks particularly dangerous for a number of reasons. The report explores the mechanics of FireScam, which is described as being a sophisticated Android malware masquerading as a Telegram Premium app. The malware app has been noted as being distributed by way of a GitHub.io-hosted phishing site pertaining to be the genuine RuStore App Store, popular within the Russian Federation, which it most certainly isnt. Which doesnt mean that the attackers wont move to other distribution channels and regions, so please do pay attention wherever you are based as Russian cyberattacks have a habit of spreading beyond the border. By exploiting the popularity of messaging apps and other widely used applications, the researchers said, FireScam poses a significant threat to individuals and organizations worldwide.Key Findings Of The FireScam Android Malware ReportLike so much malware today, FireScam employs a multi-stage technique starting with a dropper mechanism and ending up with data exfiltration and on-device surveillance. By capitalizing on the widespread usage of popular apps and legitimate services like Firebase, the threat intelligence report said, FireScam exemplifies the advanced tactics used by modern malware to evade detection, execute data theft, and maintain persistent control over compromised devices.Please do go and read the report itself for the complete technical analysis, but here are the key findings of interest to Android users:The fake phishing app store website delivers a dropper to install the FireScam malware disguised as a Telegram Premium application.The malware exfiltrates sensitive data, including notifications, messages, and other app data, to a Firebase real-time database endpoint.FireScam then monitors device activities, including screen state changes, e-commerce transactions, clipboard activity, and user engagement.Notifications are also captured across various apps, including system apps.I have reached out to Google for a statement.MORE FOR YOUSecurity Experts Warn Of FireScam Dangers To Android UsersThe FireScam malware campaign reveals a worrying development in the mobile threat landscape, according to Eric Schwake, director of cybersecurity strategy at Salt Security, who warned that malware targeting Android devices is becoming increasingly sophisticated. Although using phishing websites for malware distribution is not a new tactic, Schwake said, FireScam's specific methodssuch as masquerading as the Telegram Premium app and utilizing the RuStore app storeillustrate attackers' evolving techniques to mislead and compromise unsuspecting users.As threats like FireScam continue to evolve, it is crucial for organizations to implement robust cybersecurity measures and proactive defense strategies, Cyfirma said. It recommends users exercise caution when opening files from untrusted sources or clicking on unfamiliar links, use reputable antivirus software, keep all software up to date and stay vigilant against social engineering attacks.I would add that all Android users should read this discussion regarding the best phishing mitigationsyou can thank me later.0 Commentarios 0 Acciones 150 Views