Learn about Zero Trust Architecture
Impenetrable cybersecurity without sacrificing usability
Gain detailed visibility into all your endpoints activities
Harden applications and hardware environments
Immediate and continuous response to incidents
Close the window of time your data could be exposed
Get your Comodo solutions setup, deployed or optimized
Control access to malicious websites
Defend from any internet based threats
Stop email threats before it enters your inbox
Preserve and protect your sensitive data
Keep your website running fast and malware free
Add encryption to your websites
Automated certificate mgmt. platform
Secure private intranet environments
Digital signature solutions for cloud apps
Encrypt emails for senders and recipients
Stay compliant with PCI DSS
Trusted authentication for IoT devices
Francisco Partners a leading technology-focused private equity fund, has acquired a majority stake in Comodo’s certificate authority business. Newly renamed from Comodo CA Limited to Sectigo Limited. Privacy Policies, Trademarks, Patents and Terms & Conditions are available on Sectigo Limited’s web site.
Meet the people behind the direction for Comodo
Get the latest news about Comodo
People are the key to achievement and prosperity
Stay up to date with our on-demand webinars
Worldwide: Sales, Support and General Inquiries
Schedule a live demonstration of our solutions
Need immediate help? Call 1-888-551-1531
Instantly removes viruses to keep your PC virus free
Experience true mobile security on your mobile apple devices
Secure Internet Browser based on Chrome
Chrome browser internet security extension
Submit a ticket to our support team
Share any product bugs or security flaws
Collaborate with research experts on data sets
Valkyrie Threat Intelligence Plugins
Valkyrie Threat Intelligence APIs
A new kind of malware can turn speakers to microphones. Dubbed “SPEAKE(a)R” it can also make computers eavesdrop on the surroundings. That’s not all – it can listen even without being connected to a microphone!
The capabilities of this malware was demonstrated by Researchers at the Ben-Gurion University of the Negev (BGU). The ability to convert a speaker into a microphone could be considered as a technical advance; however, in the hands of cyber criminals/hackers and spy masters this facility could be exploited as a powerful spying device.
Prof. Yuval Elovici, director of the BGU Cyber Security Research Center (CSRC) stated that, “The fact that headphones, earphones and speakers are physically built like microphones and that an audio port’s role in the PC can be reprogrammed from output to input creates a vulnerability that can be abused by hackers,” says.
Adding to this fact, Mordechai Guri, a lead researcher and head of Research and Development at the CSRC, states that, “This is the reason people like Facebook Chairman and Chief Executive Officer Mark Zuckerberg tape up their mic and webcam,” says. “You might tape the mic, but would be unlikely to tape the headphones or speakers.”
It is no easy joke that the Facebook CEO puts tapes over his laptop’s camera and microphone. While Facebook tries to obtain all possible data about its users, it is very important to note the camera taping by Zuckerberg. They must have suspected that webcams and microphones can be hacked and used for malicious spying activities.
However, this malware makes any PC or laptop vulnerable. Workstations and PCs have audio jacks that contain line-in and line-out ports. Line-in is for audio input, while line-out is for audio output. In some latest audio chipsets the functionality of the audio ports can be changed (remapped). Audio input can be turned into audio output and vice versa. In this demonstration BGU researchers used RealTek audio codec chips – which are widely used in many computers. The researchers add that they have not tested whether this vulnerability exists in other audio codec chips.
The BGU researchers have released a demonstration of this vulnerability in a video. Using this malware, cyber criminals can stealthily convert the headphone jack into a microphone jack. Now, whenever a headphone is attached to headphone jack it will start eavesdropping. And even if the microphone is not attached the chip will still eavesdrop. Hence, protection has to be ensured at chip-level.
Dr. Yosef Solewicz, an acoustic researcher at the BGU CSRC, reports: “We demonstrated is possible to acquire intelligible audio through earphones up to several meters away.”
Precautions to protect against SPEAKE(a)R malware
Reading Time: 2 minutes Cyber breaches are quite common in the medical industry. In 2019 alone, over 40 million patient records were breached, an almost 50% increase in cases from the previous year. With COVID-19 increasing the need for healthcare and forcing more interactions between providers and patients to take place online, the risk of cyber breaches has increased….
Reading Time: 2 minutes Ransomware is a dilemma that we have been facing for quite some time now. However, in 2020, we have seen a significant rise in the total number and variety of ransomware attacks. This latest ransomware boom is most probably the outcome of organized cyber-criminal networks recognizing the revenue-generating potential of this ‘business model’—amounting to over…
Reading Time: 3 minutes Celebrate National Cybersecurity Awareness Month By Learning to Protect Against Ransomware Attacks It’s the season for pumpkin picking, leaves changing color, getting ready for Halloween parties and trick-or-treating. But ghosts and ghouls aren’t the only scary things you’ll be seeing this month: October is also National Cybersecurity Awareness Month, a time when business leaders and…
Sign up to our cyber security newsletter
Comodo Cybersecurity would like to keep in touch with you about cybersecurity issues, as well as products and services available. Please sign up to receive occasional communications. As a cybersecurity company, we take your privacy and security very seriously and have strong safeguards in place to protect your information.
See how your organization scores against cybersecurity threats