Threat actors are using advanced malware to backdoor business-grade routers

Hiatus hacking campaign has infected roughly 100 Draytek routers.

Computer cables plugged into a router.

Enlarge (credit: Getty Images)

Researchers have uncovered advanced malware that’s turning business-grade routers into attacker-controlled listening posts that can sniff email and steal files in an ongoing campaign hitting North and South America and Europe.

Besides passively capturing IMAP, SMTP, and POP email, the malware also backdoors routers with a remote access Trojan that allows the attackers to download files and run commands of their choice. The backdoor also enables attackers to funnel data from other servers through the router, turning the device into a covert proxy for concealing the true origin of malicious activity.

(credit: Black Lotus Labs)

“This type of agent demonstrates that anyone with a router who uses the Internet can potentially be a target—and they can be used as proxy for another campaign—even if the entity that owns the router does not view themselves as an intelligence target,” researchers from security firm Lumen’s Black Lotus Labs wrote. “We suspect that threat actors are going to continue to utilize multiple compromised assets in conjunction with one another to avoid detection.”

Read 8 remaining paragraphs | Comments

Dealmaster: Microsoft’s Surface laptops and tablets are on sale today

Laptops and tablet-PCs that span a range of use cases are on sale from Microsoft.

Microsoft's Surface Pro 9.

Enlarge / Microsoft's Surface Pro 9. (credit: Andrew Cunningham)

If you're in the market for a Microsoft Surface computer or tablet, now's a good time to grab some deals on the lineup.

Microsoft Surface Pro 9 13-inch tablet PC with keyboard cover for $900 ($1,080) at Best Buy

The Surface Pro 9 is the best tablet-laptop on the market. It succeeds in mixing the best of the tablet and laptop experience, being a tablet PC that runs Windows 11, uses a backlit detachable keyboard cover, and is optimized for use with a digital pen (the Surface Pen). It's lightweight and has a smaller footprint than most 2-in-1 laptops while packing enough power to edit media and handle light gaming at higher configurations.

The entry-level Surface Pro 9 (Intel Core i5, 8GB RAM, 128GB SSD) is currently on sale for $900 at Best Buy, down from $1,000, and it comes with a free Surface Keyboard cover which typically runs you an extra $180. That's $300 less than the entry point for Apple's 12.9-inch iPad Pro, which can't run full programs (only apps) and doesn't include its separately sold Magic Keyboard, which costs $350. This 13-inch Surface Pro model has an Intel i5 processor, 8GB of RAM, and 128GB storage, which is great for those who simply want a device to edit documents and surf the web without sacrificing the ability to use full programs.

Read 3 remaining paragraphs | Comments

Lilbits: Nothing Phone (2), OneXConsole app for gaming handhelds, and Windows Insider’s new Canary Channel

Nothing’s first phone stands out for two reasons: it’s the first phone from a company founded by the same guy who co-founded OnePlus, and it has a literally flashy design with a series of LED lights on the back of the phone. But the Nothin…

Nothing’s first phone stands out for two reasons: it’s the first phone from a company founded by the same guy who co-founded OnePlus, and it has a literally flashy design with a series of LED lights on the back of the phone. But the Nothing Phone(1) features a mid-range processor, wasn’t available in North America […]

The post Lilbits: Nothing Phone (2), OneXConsole app for gaming handhelds, and Windows Insider’s new Canary Channel appeared first on Liliputing.

Microsoft aims to reduce “tedious” business tasks with new AI tools

LLM tech comes to Power Platform and Dynamics 365, courtesy of OpenAI partnership.

An AI-generated image of an alien robot worker.

Enlarge / An AI-generated illustration of a GPT-powered robot worker. (credit: Ars Technica)

On Monday, Microsoft bundled ChatGPT-style AI technology into its Power Platform developer tool and Dynamics 365, Reuters reports. Affected tools include Power Virtual Agent and AI Builder, both of which have been updated to include GPT large language model (LLM) technology created by OpenAI.

The move follows the trend among tech giants such as Alphabet and Baidu to incorporate generative AI technology into their offerings—and of course, the multi-billion dollar partnership between OpenAI and Microsoft announced in January.

Microsoft's Power Platform is a development tool that allows the creation of apps with minimal coding. Its updated Power Virtual Agent allows businesses to point an AI bot at a company website or knowledge base and then ask it questions, which it calls Conversation Booster. "With the conversation booster feature, you can use the data source that holds your single source of truth across many channels through the chat experience, and the bot responses are filtered and moderated to adhere to Microsoft’s responsible AI principles," writes Microsoft in a blog post.

Read 6 remaining paragraphs | Comments

Scientists have found Lake Huron wreck of 19th century ship that sank in 1894

The Ironton schooner collided with the freighter Ohio, which was found in 2017.

Ironton, a late 19th century shipwreck, has been located in NOAA's Thunder Bay National Marine Sanctuary.

In 1894, a schooner barge called Ironton collided with a Great Lakes freighter called Ohio in Lake Huron's infamous "Shipwreck Alley." Ohio's wreck was found in 2017 by an expedition organized by the National Oceanic and Atmospheric Administration's (NOAA) Thunder Bay National Marine Sanctuary. Now the same team has announced its discovery of the wreck of the 191-foot Ironton nearly 130 years after its sinking, so well-preserved in the frigid waters of the Great Lakes that its three masts are still standing, and its rigging is still attached. Its discovery could help resolve unanswered questions about the ship's final hours.

Schooner barges like Ironton were part of a fleet that helped transport wheat, coal, corn, lumber, and iron ore across the Great Lakes region, towed by steamers. At 12:30 am on September 26, 1984, Ironton and another schooner, Moonlight, were being towed unladen across Lake Huron by the steamer Charles J. Kershaw when the steamer's engine failed. The weather was rough, and strong winds pushed the two schooners perilously close to the disabled steamer. Fearing a collision, Moonlight's crew cut Ironton's tow line, setting Ironton adrift.

Captain Peter Girard and his crew tried to regain control of the ship, but the wind blew them onto a head-on collision course with the Ohio, which was carrying 1,000 tons of grain. According to the account of surviving crew member William Wooley, it was too dark to spot the Ohio until it was too late, and Ironton struck the steamer with its starboard bow, tearing a 12-foot wide hole in Ohio's hull.

Read 5 remaining paragraphs | Comments

Twitter revenue fell 40% in December amid advertiser exodus, report says

Twitter doesn’t report earnings publicly anymore but told investors of decline.

Elon Musk's Twitter profile displayed on a phone screen in front of a Twitter logo and a fake stock graph with an arrow pointing down.

Enlarge (credit: Getty Images | NurPhoto )

Twitter's revenue and adjusted earnings reportedly fell about 40 percent year over year in December 2022 amid an advertiser exodus following Elon Musk's takeover.

Twitter no longer reports earnings publicly since Musk bought the company and took it private in late October. But Twitter reported the December 2022 revenue and earnings declines in an update to investors, according to "people familiar with the matter" cited in a Wall Street Journal report on Friday.

Many big companies cut advertising spending on Twitter shortly after Musk's acquisition, largely over concerns about content moderation. Twitter offered special deals to advertisers throughout December 2022, but it wasn't enough to prevent the 40 percent revenue and earnings declines.

Read 7 remaining paragraphs | Comments