• About Us
  • Terms and Conditions
  • Contact Us
Tech News, Magazine & Review WordPress Theme 2017
  • Home
  • SEO Tools
  • Traffic Software
  • Social Media Software
  • Productivity Software
  • Business Apps
No Result
View All Result
Traffic-SEO |
No Result
View All Result

Explained: What are zero-click attacks and how do you get the better of them?

trafficseotools by trafficseotools
July 19, 2021
Home Social Media Software
Share on FacebookShare on Twitter


Written by Nandagopal Rajan
, Edited by Explained Desk | New Delhi |

Updated: July 19, 2021 8:58:01 am

One of the worrying aspects of the Pegasus spyware is how it has evolved from its earlier spear-phishing methods using text links or messages to ‘zero-click’ attacks which do not require any action from the phone’s user. This had made what was without a doubt the most powerful spyware out there, more potent and almost impossible to detect or stop.

The Guardian quoted Claudio Guarnieri, who runs Amnesty International’s Berlin-based Security Lab, as saying that once a phone was infiltrated, Pegasus had “more control” over it than the owner. This is because in an iPhone, for instance, the spyware gains “root-level privileges”. After this it can view everything from contact lists to messages and internet browsing history and send the same to the attacker.

Newsletter | Click to get the day’s best explainers in your inbox

How do zero-click attacks work?

A zero-click attack helps spyware like Pegasus gain control over a device without human interaction or human error. So all awareness about how to avoid a phishing attack or which links not to click are pointless if the target is the system itself. Most of these attacks exploit software which receive data even before it can determine whether what is coming in is trustworthy or not, like an email client.

Earlier this year, cybersecurity firm ZecOps claimed iPhones and iPads have had a traditional vulnerability to unassisted attacks, especially with its mail app. From iOS 13, this became a vulnerability to zero-click attacks too. “The vulnerability allows remote code execution capabilities and enables an attacker to remotely infect a device by sending emails that consume a significant amount of memory,” a ZecOps blog published this April said. Apple reportedly patched this in April 2020.

In November 2019, Google Project Zero security researcher Ian Beer showed how attackers take complete control of an iPhone in radio proximity without any user interaction. He claimed his exploit targeted the Apple Wireless Device Link (AWDL), the peer-to-peer wireless connectivity protocol that iOS devices use to talk to each other. Apple patched this when it released iOS 13.3.1, but accepted that it was powerful enough to “shut off or reboot systems or to corrupt kernel memory”.

On Android phones running version 4.4.4 and beyond, the vulnerability was via the graphics library. Attackers have also exploited vulnerabilities in Whatsapp, where a phone could be infected even if an incoming malicious call was not picked up, and in Wi-Fi, chipsets users to stream games and movies.

However, Amnesty claims even patched devices with the latest software have been breached.

📣 JOIN NOW 📣: The Express Explained Telegram Channel

Can zero-click attacks be prevented?

Zero-click attacks are hard to detect given their nature and hence even harder to prevent. Detection becomes even harder in encrypted environments where there is no visibility on the data packets being sent or received.

One of the things users can do is to ensure all operating systems and software are up to date so that they would have the patches for at least vulnerabilities that have been spotted. Also, it would make sense to not sideload any app and to download only via Google Play or Apple’s App Store.

If you are paranoid, one way to go is to stop using apps altogether and switch to the browser for checking mails or social media, even on the phone. Yes, this is not convenient, but it is more secure, suggest experts.



Source link

Tags: attacksExplainedzeroclick
trafficseotools

trafficseotools

Next Post
Content is king – Newspaper

Content is king - Newspaper

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recommended.

Collaboration & Productivity Software Market Size, Growth And Analysis By Leading Keyplayers – Microsoft, BoardPaq, Zoom, Slack Technologies

Collaboration & Productivity Software Market Size, Growth And Analysis By Leading Keyplayers – Microsoft, BoardPaq, Zoom, Slack Technologies

December 3, 2021
Wetherspoons tells drinkers to keep ordering on apps – not at the bar – Telegraph.co.uk

Wetherspoons tells drinkers to keep ordering on apps – not at the bar – Telegraph.co.uk

July 17, 2021

Trending.

Free Traffic System: Flood Your Sites With Free Traffic

Free Traffic System: Flood Your Sites With Free Traffic

August 14, 2021
Traffic Bots

Traffic Bots

August 18, 2021
Turnkey Advertising Business | AdCardz.com

Turnkey Advertising Business | AdCardz.com

September 2, 2021
Simple Traffic Solutions – Discount Offer — Simple Traffic Solutions

Simple Traffic Solutions – Discount Offer — Simple Traffic Solutions

September 12, 2021
11 Best Free SEO Tools Online

11 Best Free SEO Tools Online

October 3, 2021

Recent News

How Cash App Plans to Become a Super App — and Use Afterpay to Get There

How Cash App Plans to Become a Super App — and Use Afterpay to Get There

May 19, 2022
Unauthorized Affiliate – error page

Unauthorized Affiliate – error page

May 18, 2022
13 Seniors Receive 2022 Provost’s Award for Academic Excellence |

13 Seniors Receive 2022 Provost’s Award for Academic Excellence |

May 18, 2022

Categories

  • Business Apps
  • Productivity Software
  • SEO Tools
  • Social Media Software
  • Traffic Software
  • Uncategorized

Follow Us

Find By Tags

Analysis Announces app apps Big Business Businesses Content Digital Global Google Growth industry Launches Local Management Market Marketing media Microsoft News Online Platform Productivity Raises Reasons Review SEO Services Size Small Social Software Stock strategy Tech Technology Tips Tools Top trends Ways Web Website Work
  • About Us
  • Terms and Conditions
  • Contact Us

© 2021 TrafficSEOTools All Rights Reserved

No Result
View All Result
  • Home
  • SEO Tools
  • Traffic Software
  • Social Media Software
  • Productivity Software
  • Business Apps

© 2021 TrafficSEOTools All Rights Reserved