Post Aa2cewuFfY8gl57byi by jsrailton@mastodon.social
(DIR) More posts by jsrailton@mastodon.social
(DIR) Post #Aa2ceoPpEn30QOpCRU by jsrailton@mastodon.social
2023-09-22T22:59:18Z
0 likes, 0 repeats
🚨UPDATE your #Apple products now!We @citizenlab w/TAG's @maddiestone caught #predator #spyware attacks against a prominent pro-democracy Egyptian politician after he announced presidential ambitions.Apple rushed a patch.Attacks used network injection to drop the 3 #zeroday chain on his #iphone We attribute the tech used for the injection to #sandvine's packetlogic.#cybersecurity #infosec #hacking #egypthttps://citizenlab.ca/2023/09/predator-in-the-wires-ahmed-eltantawy-targeted-with-predator-spyware-after-announcing-presidential-ambitions/
(DIR) Post #Aa2cepfoYpQoKHJU0G by jsrailton@mastodon.social
2023-09-22T23:03:58Z
0 likes, 0 repeats
2/ Ahmed Eltantawy got in touch with us @citizenlab, worried his devices were targeted in #Egypt.He was right. His iPhone on #Vodafone #Egypt was targeted for network injection.As he browsed, operators were trying to slip a #Predator infection onto his device using Sandvine's kit.Sandvine has been accused in past of facilitating human rights abuses.Like the internet shutdown in Belarus.Oh, and they are owned by NSO Group's ex owner Francisco Partners.@citizenlab @maddiestone
(DIR) Post #Aa2ceqat8d5LBI13xo by jsrailton@mastodon.social
2023-09-22T23:05:45Z
0 likes, 1 repeats
3/. This kind of exploit delivery through injection DOES NOT require a target to click as our collaborator, the brilliant Maddie stone points out in her post.It's a seriously dangerous kind of attack & hard to protect against.https://blog.google/threat-analysis-group/0-days-exploited-by-commercial-surveillance-vendor-in-egypt/#google #spyware #predator #zeroday #exploit #cybersecurity #infosec@citizenlab @maddiestone
(DIR) Post #Aa2cesS6EHF8wbv4Xg by jsrailton@mastodon.social
2023-09-22T23:08:33Z
0 likes, 0 repeats
4/ #Apple moved quickly to fix the zero-day exploits @maddiestone & my Citizen Lab colleague Bill Marczak discovered.So upgrade your #iPhone #OSX ...There is a piece of good security news buried in all this... We believe & Apple's Security Engineering & Architecture Team confirms, Lockdown Mode would have blocked this attack!We *strongly* encourage all Apple users that may be at risk because of who they are or what they do to enable #Lockdownmode!@citizenlab @maddiestone
(DIR) Post #Aa2ceuNZ46nuv7oTke by jsrailton@mastodon.social
2023-09-22T23:10:12Z
0 likes, 0 repeats
5/ Pulling back the lens from the tech side of this #Predator attack:Mercenary #spyware is autocrat fuel.When you hack a pro-democracy presidential hopeful in an autocracy... you are doing dictatorship.And spyware companies know exactly who they are selling to.#cybersecurity #infosec #democracy #elections @maddiestone @citizenlab
(DIR) Post #Aa2cewuFfY8gl57byi by jsrailton@mastodon.social
2023-09-22T23:11:26Z
0 likes, 0 repeats
6/ Without brave victims like Ahmed Tantawy getting checked & coming forwards, these recent exploits would not have been found.Billions of apple devices would still be vulnerable.Including yours.#egypt #elections #democracy #infosec #cybersecurity #predator #spyware #apple #ios #osx #update @maddiestone @citizenlab