Threats Tagged 'mobile'
View all threats tagged with 'mobile'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'mobile'
Click on any threat for detailed analysis and mitigation recommendations
Multiple vulnerabilities in DEEBOT PRO M1, DEEBOT PRO K1VAC and ECOVACS PRO App 0 Robotic cleaners DEEBOT PRO M1 and DEEBOT PRO K1VAC, and mobile app ECOVACS PRO App developed by ECOVACS ROBOTICS contain multiple vulnerabilities. They are provided in Japan by Hellohas Robotics Inc. Join the discussion | JVN Japan | 08/04/2026, 08:30:00 UTC Added: 08/04/2026, 13:25:00 UTC |
3rd August – Threat Intelligence Report 0 This report summarizes multiple recent cybersecurity incidents and vulnerabilities disclosed in early August 2026. It includes coordinated cyberattacks on Minnesota water utilities, a large email compromise at an Indian bank, a breach of cloud environments at a US biotech company, and a major telecom outage in Angola. Additionally, it highlights AI-related security issues including unauthorized access by AI models and a critical vulnerability in the Ruflo AI agent platform. Several critical vulnerabilities have been patched by Cisco, Broadcom, JetBrains, and Rails maintainers, addressing issues such as authentication bypass, code execution, and information disclosure. Join the discussion | Check Point Research | 08/03/2026, 13:15:55 UTC Added: 08/03/2026, 13:29:30 UTC |
Read This Before You Buy That TV Streaming Stick 0 Security experts have been sounding the alarm for years about the risks of using generic TV boxes that promise unlimited content streaming for a one-time fee, warning that they secretly rent the user’s Internet connection out to strangers. But a groundbreaking new analysis finds these devices also routinely spoof themselves as mobile phones clicking ads on AI-generated websites as part of a sprawling operation that seeks to defraud online merchants and advertising networks. Pedro Falé is a threat researcher with the security firm Bitsight . Falé told KrebsOnSecurity he was able to peer inside a vast and complex ad fraud network by registering an expired domain name that was used to coordinate fake ad clicks across a particularly popular brand of these streaming devices known as H96 . An H96 TV streaming device currently advertised for sale on Amazon. Falé said the domain he scooped up was previously used for telemetry, periodically collecting full hardware information and the entire list of installed apps from tens of thousands of H96 streaming sticks plugged into television sets around the globe. But upon inspecting the traffic being funneled to the domain, he discovered nearly all of the TV boxes transmitting data claimed to be mobile phone models from a variety of manufacturers, including Samsung, Vivo, Huawei, and Xiaomi. “We noticed something was wildly wrong,” Falé said. “Multiple devices reporting to this factory Android TV Box backdoor were ‘phones.'” Image: Bitsight. The researcher found all of the devices reported having the same two apps installed, and that those apps were made by a company called Zhejiang Fengwo IoT Technology Ltd , an entity founded in 2019 in mainland China which operates an ad-publishing portfolio under the name Fengwo Group . Further investigation into the Fengwo Group revealed it has registered multiple patents that match the inner workings of these apps. “Bitsight TRACE identified several Hong Kong, Singapore, and single person ‘legal’ shell identities used to collect the monetization and traced the operation back to a mainland China company known as Zhejiang Fengwo IoT Technology Co., Ltd, which operates under the Fengwo Group,” Falé wrote in a report released today about their findings. Falé said an analysis of the apps shows they help to coordinate an ad fraud network that uses these H96 devices as a captive traffic source to click on ads at AI-generated websites operated by the Fengwo Group. Bitsight discovered the websites contain machine-generated news articles and graphics across a range of categories, including finance, health, education, gaming, music and food blogs. But they also found none of those sites displayed ads unless the device visiting the page matched the spoofed mobile profile of these H96 devices. AI DIGITAL HUMANS The domain for the Fengwo Group — fwgcloud[.]com — claims the company is “redefining the boundaries of human-AI interaction,” and that it has created more than 120,000 “AI digital humans” available to rent for everything from emotional companionship to 24/7 customer service and creative design. The homepage for fwgcloud dot com. Falé said the Fengwo Group’s domain shared its SSL certificate data with other domains associated with the apps found on H96 devices, specifically the phone spoofing mechanism. He noted the domain also has an internal wiki platform that directly ties the Fengwo Group to a proprietary implementation of a Google-built visual programming language called Blockly , which was originally designed to help kids learn how to write software. According to Bitsight, the Fengwo Group’s employees use Blockly to build the sham websites, allowing low-skilled operators to drag blocks of code together in their Blockly editor — without any need to understand what the underlying code blocks do or how they work. The Blockly homepage. “An operator can drag blocks together in their Blockly editor, to define each fraud routine, given a task type,” reads Bitsi… Join the discussion | Krebs on Security | 07/30/2026, 16:49:00 UTC Added: 07/31/2026, 01:31:43 UTC |
Chick-fil-A data breach affects more than 13,000 customers 0 Chick-fil-A has confirmed that over 13,000 customers had their accounts breached in a wave of credential stuffing attacks targeting its website and mobile app between June 17 and June 19. [...] Join the discussion | Bleeping Computer | 07/24/2026, 14:04:29 UTC Added: 07/24/2026, 14:22:23 UTC |
5 reasons to bring application security data into your exposure management platform 0 This content discusses the strategic integration of application security scanner data into exposure management platforms to improve visibility, prioritization, and remediation of code vulnerabilities. It highlights challenges posed by isolated application security data and accelerated code deployment, especially with AI-assisted coding increasing vulnerability rates. The integration enables security teams to contextualize vulnerabilities within the broader organizational risk, prioritize fixes effectively, and provide CISOs with actionable risk metrics. It is not a specific vulnerability or exploit but a security management approach to reduce organizational exposure to code flaws. Join the discussion | Tenable Research | 07/15/2026, 12:45:00 UTC Added: 07/15/2026, 12:58:20 UTC |
CVE-2026-15409: CWE-918: Server-Side Request Forgery (SSRF) in SonicWall SMA1000CVE-2026-15409 0 A Server-side request forgery (SSRF) vulnerability has been identified in the SMA1000 Appliance Work Place interface. A remote unauthenticated attacker could potentially cause the appliance to make requests to unintended location. Join the discussion | CVE Database V5 | 07/14/2026, 19:39:34 UTC Added: 07/14/2026, 20:03:48 UTC |
Showing 1 to 6 of 6 results