the grugq's newsletter

Subscribe
Archives
December 28, 2024

December 28, 2024

December 28, 2024

NEW: Data-loss prevention startup Cyberhaven said hackers took over its official Chrome extension, pushing a malicious version designed to steal passwords and session tokens.

.@jaimeblascob told us Cyberhaven may be one several other hacked extensions. https://t.co/ywjlpcLTaT

— Lorenzo Franceschi-Bicchierai (@lorenzofb) December 27, 2024


I'm so glad to rank among the top 3 in Chrome VRP. Although I didn't have much time to play with the browser this year, the result is quite good. Thanks to Chrome VRP. https://t.co/dZFvIillY1 pic.twitter.com/VQS4x7kXvr

— sakura (@eternalsakura13) December 28, 2024


Ein Volk. Ein Reich. Ein Charger.

It’s time for THE charger.

Today, the USB-C becomes officially the common standard for charging electronic devices in the EU.

It means better-charging technology, reduced e-waste, and less fuss to find the chargers you need. #DigitalEU

— European Commission (@EU_Commission) December 28, 2024


A rare corporate espionage case in Finland:

First, a Chinese shipyard company proposed a collaboration with Meyer (owner of the Finnish shipyard) to build a cruise ship. When that didn't work out, it tried to buy the shipyard. Finally, it got what it wanted from a hapless…

— Sari Arho Havrén (@SariArhoHavren) December 27, 2024

According to Meyer, the Finnish engineer had taken secret information from the shipyard that was highly confidential, the company's core expertise and then passed it to the Chinese. The extent of the alleged damage was also exceptional, at least 500 million euros. 2/

— Sari Arho Havrén (@SariArhoHavren) December 27, 2024

Turkulainen insinööri varasti Suomen laivateollisuuden suurimman salaisuuden ja vei sen Kiinaan | HS.fi

Aki oli telakan kokeneimpia insinöörejä, arvostettu ammattilainen. Sitten hän jäi yllättäen eläkkeelle. Kun Aki puoli vuotta myöhemmin julkaisi Facebookissa valokuvan, ex-työkaverit tajusivat, että jokin on pielessä. Alkoi selvitä poikkeuksellinen vakoiluvyyhti.


Gynvael Coldwind 🐈: "Want to support security researchers from Dragon …" - Infosec Exchange

Want to support security researchers from Dragon Sector in covering legal costs piling up after they went public with logic bombs in train firmware? IBAN for donations is available here: https://www.ccc.de/en/updates/2024/das-ist-vollig-entgleist Talks for context https://media.ccc.de/v/37c3-12142-breaking_drm_in_polish_trains https://streaming.media.ccc.de/38c3/relive/336 #38c3 #dragonsector


Don't miss what's next. Subscribe to the grugq's newsletter:
X