HomeTechnologyHackers took advantage of...

Hackers took advantage of a Google Chrome bug to spy on journalists

This bug in Google Chrome allowed cybercriminals to track all user activities in the web browser. | Font: spill

adUnits.push({
code: ‘Rpp_tecnologia_google_Nota_Interna1’,
mediaTypes: {
banner: {
sizes: (navigator.userAgent.match(/iPhone|android|iPod/i)) ? [[300, 250], [320, 460], [320, 480], [320, 50], [300, 100], [320, 100]] : [[300, 250], [320, 460], [320, 480], [320, 50], [300, 100], [320, 100], [635, 90]]
}
},
bids: [{
bidder: ‘appnexus’,
params: {
placementId: ‘14149971’
}
},{
bidder: ‘eplanning’,
params: { ci: ‘1efdd’ }
},{
bidder: ‘rubicon’,
params: {
accountId: ‘19264’,
siteId: ‘314342’,
zoneId: ‘1604128’
}
},{
bidder: ‘amx’,
params: {
tagId: ‘MTUybWVkaWEuY29t’
}
},{
bidder: ‘oftmedia’,
params: {
placementId: navigator.userAgent.match(/iPhone|android|iPod/i) ? ‘22617692’: ‘22617693’
}
}]
});

Google fixed “zero-day vulnerability” in your browser Chromium, which was used by a group of cybercriminals involved in spying on the activities of various journalists around the world. This decree was baptized as CVE-2022-2294 was discovered after a series of cyberattacks against users Avast in middle Asia and Google fixed it on July 4, 2022.

Avast Threat Intelligencepart of the team at the cybersecurity firm that owns the antivirus of the same name reported this vulnerability Mountain View after its discovery.

Since the company quickly fixed this bug so that it doesn’t hurt more users, all you have to do is download the latest update from Google Chrome to protect against exploit. In addition, other web browsers based on chromium they have already released their updates, so their users will also be safe after downloading them.

Who has used this Google Chrome bug?

Although the main interest of the report Avast should have notified Google To fix the bug as soon as possible, the firm also claims that it was able to identify a group of cybercriminals who exploited this hitherto unknown vulnerability. A team of researchers traced attacks in the Middle East back to Israeli-made spyware, with which they were also able to decipher that journalists from Lebanon as well as other users Turkey, Yemen D Palestine.

In particular, Avast links the attacks and evolution of this computer virus to Candiru, a spyware vendor whose customers are some of the governments in the territory. In July 2022 microsoft also found that the group was spying on Spanish users through its software. sour cream.

Google Chrome
Avast attributed the attacks and exploitation of the Google Chrome vulnerability to the Candiru group. | Font: Genbet

How were cyberattacks carried out through Google Chrome?

Avast mentions that this type of attack allows you to get a profile Chromium of your victim using a set of 50 factors such as language, time zone, device type, installed plugins, referrer location, device memory, cookie functionality, and more.

With this information, cybercriminals They determined if their victim actually had what they were looking for, and after confirming this, they proceeded to exploit through an encrypted channel to exploit the browser’s zero-day vulnerability using software known as devil tongue (devil tongue).

Once launched on the victim’s computer, this powerful spyware begins to elevate its privileges to gain full access to the computer, being able to perform actions such as writing the user through it. Webcam D microphonerecord keystrokes, filter messages, and access your browsing history, geolocation, and even passwords.

“AT Lebanon, the attackers apparently hacked into a website used by employees of the news agency. We cannot say exactly what attackers might be looking for, however often the reason attackers go after journalists is to spy on them and learn stories they are working on directly, or to get to their sources and gather incriminating information and confidential data. which they shared with the press”said Jan Voiteshekmalware researcher in Avast.

Like the PROGAMER fanpage on Facebook to keep you up to date with the latest video games, anime, comics and geek culture news. In addition, you can also listen to our PROGAMER Podcast on the RPP Podcast, iTunes and Spotify. To hear better, #StayHome.

Source: RPP

- A word from our sponsors -

Most Popular

LEAVE A REPLY

Please enter your comment!
Please enter your name here

More from Author

- A word from our sponsors -

Read Now

Mother and Sin settled in a circle after three Plenid flights (video)

Mother and son - the grapes of Margarita and Ruslan - unexpectedly met at today's exchange after three years of captivity after Azovstal left in Maripul. .in_text_content_22 {width: 300px; Height: 600px; } @Media (min-width: 600px) {.in_text_content_22 {width: 580px; Height: 400px; }} .Adsbygoogle {Touch-Action: Manipulation;...

In Bell House, they were a goat goat in a scandal with a signal date

US Secretary of Defense Pitt Hegset will be released using data leakage. .in_text_content_22 {width: 300px; Height: 600px; } @Media (min-width: 600px) {.in_text_content_22 {width: 580px; Height: 400px; }} .Adsbygoogle {Touch-Action: Manipulation; } The politician writes about this. The head...

The American congressman-prisoners wrote a post for Putin on the shell

The American congressman-regional Brian Fizpatrick wrote a message for Putin in the shell. The armed forces helped with delivery. .in_text_content_22 {width: 300px; Height: 600px; } @Media (min-width: 600px) {.in_text_content_22 {width: 580px; Height: 400px; }} .Adsbygoogle {Touch-Action: Manipulation; } Fitzpatrick, who arrived...

Orban’s government literacy literally forced the Hangrov to vote against the entrance to Ukraine to the EU

The Orban government called on the Hungarians to vote against the membership of Ukraine in the European Union. .in_text_content_22 {width: 300px; Height: 600px; } @Media (min-width: 600px) {.in_text_content_22 {width: 580px; Height: 400px; }} .Adsbygoogle {Touch-Action: Manipulation; } The Hungarians began to...