Affiliate links on Android Authority may earn us a commission. Learn more.
Daily Authority: š Lapsus$ gets Bing?
ā Good morning! Teslaās factory here in Berlin puts out its first car today, apparently, after all the red tape was cleared. Germany loves its tape.
Bing now in the lap of Lapsus$
Hereās something that really seems to only be getting worse: The Lapsus$ hacker group, which notably has previously grabbed code dumps and information out of NVIDIA and Samsung, is still very much active.
- And itās unusual because Lapsus$ isnāt doing the ransomware thing.
- It did in the past, but what weāre now seeing is big data dumps of sensitive information and code for software.
- The list of recently compromised companies appears to include NVIDIA, Samsung, Vodafone, Ubisoft, and Argentinian e-commerce company Mercado Libre, and now, Okta and Microsoft.
Whatās new:
- Okta seems like it was hacked, and because Okta is the authentication tool for loads of companies, 15,000 of them apparently, ranging from T-Mobile to the FCC to Lululemon to MGM Resorts, that is particularly bad.
- So, those companies and organizations are on high alert: āAny hack of Okta could have major ramifications for the companies, universities, and government agencies that depend upon Okta to authenticate user access to internal systems.ā
- (We donāt exactly know what Okta does for each listed client).
- Itās bad because Lapsus$ says itās been active inside Okta for months, and the hack seems to show Slack channels at Okta from the perspective of a user account, as if an employee has been compromised, maybe via phishing, or one suggestion is that corporate employees are being paid off.
- I donāt know, but Lapsus$ has previously made offers that theyāll simply buy access to networks from employees at big companies, telecommunication companies, gaming corporations, and so on.
- Also, Okta co-founder and CEO Todd McKinnon has now confirmed this, but the carefully crafted tweet fails to really sum up the problem: The āattemptā appears to have been successful, though at least now it is ācontained.ā
- Itās no small thing either: Okta shares are falling in pre-market.
Microsoft too:
- And with news a few days ago that Ubisoft was also a casualty of Lapsus$, the group released ~37GB of alleged source code from Microsoft, covering Bing, Cortana, and other services, āindicating that they hacked Microsoftās Azure DevOps server containing source code for Bing, Cortana, and various other internal projects.ā
- āSecurity researchers who have pored over the leaked files told BleepingComputer that they appear to be legitimate internal source code from Microsoft.ā
All code is now open source?
- Lapsus$ seems to just be doing this for the spotlight, not cash, as mentioned before.
- Their main Telegram group now has 33,000 subscribers and they join in and chat on a side channel and, quote, are āenjoying the notoriety.ā
- And given the Lapsus$ activity profile so far, the next major code dump might come soon.
Roundup
š WhatsApp is finally rolling out message reactions. Reacts include: āLike, Love, Laugh, Surprised, Sad, and Thanksā (Android Authority).
š The first phone with 150W charging is out and it doesnāt sacrifice battery health, apparently?Ā (Android Authority).
š Two more OnePlus 10 series phones are in the works as per leaked roadmap (Android Authority).
ā OnePlus reportedly readying an inexpensive smartwatch. The first was so bad that the second might have a chance if it does actually smartwatch stuff, not just fitness tracking (Android Authority).
šŗ Apple blocks Android TV users from renting or buying content on Apple TV app, likely because until recently, Apple was exempt from Googleās fees. Itās not exactly hard to smile at Appleās brazen approach considering how fiercely it guards its own cutā¦ (Android Authority).
š Apple had a fairly serious two-hour outage, which even meant sales couldnāt complete on in-store purchases, with employees going back to pen and paper (The Verge).
š Windows 11 gets a new desktop watermark on unsupported hardware (The Verge).
šŗ LGās 2022 OLED TVs are available now: B2, C2, and G2 ā cheapest starts at $1,400 for the 42-inch C2, but wonāt arrive until May. More likely youāll want a bigger 55-inch, like the B2 for $1,500, which is more rapidly available (Engadget).
š® Nintendo finally adds folders to the Switch, kind of (The Verge).
š Behold, a password phishing site that can trick even savvy users: browser in the browser. You know when you click āSign In With Googleā or PayPal or whatever? Keep your eyes peeledā¦ (Ars Technica).
š In-car screens could soon be almost invisible: āImagine a wood accent on your vehicleās dashboard is also a screenā (CNET).
š” SpaceXās Starlink sees the in-flight internet market as a big possibility (CNBC).
š¦ āEvolution can occur really, really rapidlyā (Ars Technica).
š¤ āDo animals benefit from cooked food the same way we do?ā (r/askscience).
Chart Tuesday
Okay but this is one you might want to actually try at home: Some guy measured his phoneās data speed at 52 intersections across town (on a bicycle, not in a car!) and made a map of the data overlaid on the town.
- Whatās up with dead zones? It might be as simple as the very edge of reception for a carrier as the tower gets further away.
- Or it could be something more related to how LTE works with intercell interference or ICI: At the edge of two cells using the same wavelength, quality degrades significantly as briefly explained here at around the nine-minute mark.
- A bunch more discussion about this over on r/dataisbeautiful, including why this town looks so strange, but the answer is, itās Hawaii.
Cheers,
Tristan Rayner, Senior Editor.