A roundup of the alerts, incident reports and security tips we published on our Telegram channel Cyber Israel during 2024. Join the channel to get these updates in real time (updates are posted in Hebrew).
January 14, 2024
Google runs a website that is highly effective for flagging and blocking malicious domains. You simply go in and submit a report, and in many cases, after several reports, the site gets blocked by the Safe Browsing components that are built into every modern browser today. For users who fall for the trap and visit the malicious site, this is extremely effective because it simply blocks their access. https://safebrowsing.google.com/safebrowsing/report_phish/?hl=en
February 12, 2024
This time in our corner, the useful service you didn't know about: Google recently launched a new service — Dark Web Monitoring.
Google's dark web monitoring service is a smart security tool capable of detecting and monitoring personal data of yours that may have been leaked or sold on the dark web. The dark web — the part of the internet that doesn't appear in regular search results and requires special tools to access — is where illegal activities such as the sale of stolen data can take place.
How does it work?
Google's dark web monitoring service uses advanced technologies to continuously scan and analyze the dark web. It searches for specific identifiers — such as email addresses, national ID numbers, credit card numbers, and more — that may be associated with you. When a match is found, the service notifies you and provides guidance on how to protect yourself from further harm.
The broader your digital footprint, the more results you'll get 😊 *Even if your password was super long and complex, it won't help much in a case like this, where the data itself was leaked. In my own results, my password had been leaked 8 times from different sites, and in total my personal information had leaked 26 times. I'm attaching the links to the service — share how many leaks you had 😊, enjoy!
https://one.google.com/dwr/dashboard
https://one.google.com/dwr/results
February 13, 2024
Videos illustrating the dangers of cyber and information security threats and how they put all of us at risk — especially in wartime.
Created under the leadership of the information security department.
Feel free to share them on social media.
The videos were produced with the help of the outstanding team at newledge.
For updates, join https://t.me/cyberisrael
https://youtu.be/Q9bEsJJBZpo
https://youtu.be/TGGqxwFMP6o
https://youtu.be/Uyo36s81Udg
February 22, 2024
A free online course for parents on protecting children online
https://campus.gov.il/course/digitalisrael-gov-ssci-keeping-children-safe-online-he-2021-1
March 1, 2024
Many people are reporting that they are currently receiving WhatsApp calls from Pakistan and Indonesia. Let us know if you answered any of these calls and what they said to you ‼️‼️
March 4, 2024
For some reason, Apple has allowed a large number of fake apps impersonating OpenAI's new text-to-video model into the App Store — be careful ‼️ Oddly, there is also no way to report them; according to Apple's reporting guide, there should be a report option at the bottom of the page.
March 10, 2024
‼️This time in our corner… annoying ways to find out that yet another organization has been breached and our passwords and personal details have been leaked (via Google's excellent — and not annoying — service we've already covered here) ‼️ Toys R Us Israel
March 11, 2024
‼️‼️*The colleges data leak* Update — another 120GB of personal data, including national ID card scans, medical information, and many more documents belonging to students of Sapir College, has been published by the attackers ‼️‼️
March 21, 2024
‼️Students‼️ It feels like a movie: you report and report... you warn that the system will be breached, especially in times like these — I even invested in a video demonstrating the breach — nobody listens, and then the largest data leak Israel has ever seen happens: hundreds of thousands of Israelis, with the most sensitive and high-value concentration of personal data. My heart goes out to all the students whose data was leaked, and to what is going to happen as a result... Enough with being surprised — the enemy always declares it wants to slaughter us all, even if we give it everything. Attaching links to the news coverage.
In the breach, enormous amounts of the following were stolen and leaked:
National ID card scans
Military discharge / national service certificates
Bank account details
Medical data — such as disability committee records
Matriculation certificates
Psychometric exam scores
Last 4 digits of credit cards
Signature samples
#Identity_Theft_Wave (?q=%23%D7%92%D7%9C_%D7%92%D7%A0%D7%99%D7%91%D7%95%D7%AA_%D7%96%D7%94%D7%95%D7%AA) #Hyper_Targeted_Phishing (?q=%23%D7%A4%D7%99%D7%A9%D7%99%D7%A0%D7%92_%D7%A1%D7%95%D7%A4%D7%A8_%D7%9E%D7%9E%D7%95%D7%A7%D7%93)
https://mobile.mako.co.il/nexter-news/Article-a0677cb13eb4e81026.htm?sCh=3d385dd2dd5d4110&pId=1898243326
https://www.ynet.co.il/digital/technews/article/rydt11gvat
April 15, 2024
For anyone hosting websites on Hostinger — note that there are currently numerous issues, mainly on the site management side. They are aware of it and working on a fix.
June 26, 2024
I'm donating 5 tickets to the https://bsidestlv.com/ conference taking place tomorrow, with priority given to reservists/students. Contact me privately 🙂
July 19, 2024
A recommendation for all the other AV and EDR vendors: verify that you are not about to ingest the IOC that caused the CrowdStrike outage. It sounds simple and obvious, but today indicators are shared extensively between companies, and it's worth making sure the failure doesn't get copied over to other vendors. This is an unusual case, different from other bugs that stem from a software defect — here we're talking about an IOC. That means even organizations that roll out versions in an orderly, controlled manner are exposed, because this isn't a version change but the addition of a signature — something that happens thousands of times a day and isn't tested in test environments before distribution (nor can it be). Good luck to us all, Lior Ben-David.
#crowdstrikefalcon (?q=%23crowdstrikefalcon) #microsoft (?q=%23microsoft) #sentinalone (?q=%23sentinalone) #trendmicro (?q=%23trendmicro) #paloaltonetworks (?q=%23paloaltonetworks) #sophos (?q=%23sophos) #Bitdefender (?q=%23Bitdefender) #checkpoint (?q=%23checkpoint) #cybereason (?q=%23cybereason) #trellx (?q=%23trellx) #fortinet (?q=%23fortinet) #Cisco (?q=%23Cisco) #eset (?q=%23eset) #broadcom (?q=%23broadcom)
https://x.com/liorcyber/status/1814214481850847396
https://www.linkedin.com/posts/liorbendavid1_lior-ben-david-liorcyber-on-x-activity-7219980648596307968-wyUq?utm_source=share&utm_medium=member_desktop
July 19, 2024
You know what's truly astonishing?? That until now CrowdStrike hasn't published a single word about this! Not on their blog, not on their website, not on Twitter, not on LinkedIn, not on Facebook... To me it's unbelievable that there's no banner on their site for customers reaching out, and no communication on social media.
September 26, 2024
‼️Phishing has become part of our lives, and especially during this period of war the volumes are exceptional and increasingly sophisticated. Remember to remind your family and friends not to click on links sent to them‼️
Recent Comments