Category: Software

  • 16 Popular Chrome Extensions, Including Adblock, Hacked in Cyber Attack

    16 Popular Chrome Extensions, Including Adblock, Hacked in Cyber Attack

    Key Takeaways

    1. Over 3.2 million users were at risk due to malicious browser extensions that appeared legitimate but injected harmful scripts and stole information.

    2. The attack involved a supply chain breach, allowing attackers to push harmful updates to trusted extensions without users’ knowledge.

    3. Initial purposes of the affected extensions included ad blocking and screen capturing, but updates introduced unauthorized data theft and ad insertion.

    4. Compromised developer accounts enabled attackers to gain control of extensions, exploiting permissions like ‘host_permissions’ and ‘scripting’.

    5. Users should be cautious about installing new extensions and not rely solely on positive reviews, as traditional security protections may be evaded.


    A significant security incident has put more than 3.2 million users at risk due to a series of harmful browser extensions. These extensions, which appeared to be legitimate, were discovered injecting malicious scripts, stealing user information, and committing search engine fraud. Researchers found that this attack was carried out via a supply chain breach, where attackers gained access to trusted extensions and pushed harmful updates without users being aware of it.

    How the Malicious Extensions Operated

    The affected extensions were initially created for purposes like ad blocking, emoji keyboards, and screen capturing, among others. However, updates added hidden scripts that allowed unauthorized data theft, modifications to HTTP requests, and the insertion of ads into webpages. Users who had previously given permissions to these extensions remained oblivious to these changes, which enabled attackers to manipulate their web activities in real-time. Many security experts have noted that the permissions these extensions required, such as host access and scripting controls, made them especially hazardous.

    List of Affected Chrome Extensions

    The investigation has linked this incident to developer accounts that were compromised. Some developers, without realizing it, transferred control of their extensions to the attackers, who then pushed malicious updates through the official browser extension stores. The attack’s framework seems connected to known phishing tactics. The threat actors exploited permissions like ‘host_permissions’, ‘scripting’, and ‘declarativeNetRequest’ to carry out their scheme.

    Similarities to Past Attacks

    Another alarming factor in this campaign is its similarity to earlier supply chain attacks, where trusted software is used as a vehicle for malware distribution. By using the update mechanisms of browser extensions, attackers can evade traditional security protections.

    Currently, the identified extensions have been taken down from official platforms. Nonetheless, users should be cautious and not depend solely on positive reviews when deciding to install new extensions.

    Source:
    Link


  • Adobe Introduces Photoshop for Apple iPhones

    Adobe Introduces Photoshop for Apple iPhones

    Key Takeaways

    1. Free and Premium Features: Photoshop for iPhone offers essential tools for free, but users can access advanced capabilities through a paid subscription.

    2. AI-Powered Editing Tools: The app includes generative AI features like generative fill and expand, allowing users to easily add or remove content and enhance images.

    3. Seamless Integration: Edits can be saved as PSD files and directly imported into desktop or web versions of Photoshop and other Adobe mobile apps.

    4. Collaboration Tools: The app introduces Live Co-editing, enabling real-time collaboration on projects across different platforms.

    5. Extensive Resources: Users have access to a vast library of Adobe Stock images and over 20,000 fonts for creative projects, enhancing design options.


    Adobe has launched Photoshop for iPhone, a new app equipped with AI features and many capabilities similar to the desktop version of Photoshop. While a variety of features are available for free, users will need a subscription to enjoy the premium functionality.

    Features Available for Free

    With Photoshop for iPhone, users can take advantage of essential free tools to create eye-catching posts for social media. These include unlimited layers and masks to blend various images together. It’s easy to select parts of an image with just a tap, and blemishes can be quickly eliminated using the spot healing brush. The AI tools like generative fill and expand help fill in missing sections of an image while repurposing it, and users can also include free Adobe Stock images in their collages.

    All edits made in the app are in full resolution and can be saved as PSD files, which can then be imported into desktop Photoshop, Photoshop on the web, or other compatible Adobe mobile apps like Adobe Express and Lightroom for mobile.

    Paid Features Overview

    For those looking for more advanced features, there are paid options available which include smart object selection, simplified object removal, and content-aware fill. Layering is improved with advanced blend modes, offering better control over color effects and transparency. Users have access to over ten thousand fonts for title designs, along with additional file export formats like JPG and TIF.

    To access these premium features, users must subscribe to the Adobe Photoshop Mobile and Web plan in-app, which costs $79.99 annually. Creators who wish to harness the complete power of Photoshop for their projects can opt for Adobe Photoshop for PCs and Macs, available for purchase on Amazon. Users who require other Adobe applications, such as Premiere, may consider Adobe CC, also sold on Amazon.

    A Revolutionary Mobile Editing Experience

    The introduction of Photoshop on iPhone marks a significant step in mobile creativity, offering full creative control without needing to switch between various apps. With powerful layering and editing tools, users can make accurate edits, highlight their unique styles, and bring their ideas to life—all without sacrificing quality or precision. The app’s mobile-friendly design ensures that anyone can learn quickly, whether they’re new to creativity or experienced creators.

    Free Tools for Creative Expression

    Photoshop for iPhone enables users to combine and blend images using core Photoshop tools and features, including precise selection tools, unlimited layers, and masks. Users can easily recolor or replace parts of an image after selection using the user-friendly Tap Select tool. Advanced removal tools like the Spot Healing Brush allow for quick touch-ups. Complex edits can be streamlined with the help of generative AI tools that are safe for commercial use, such as Generative Fill and Generative Expand.

    Users can edit with flexibility using non-destructive layers and selective adjustments, while full-resolution editing ensures image quality is maintained. The app also provides access to a vast library of hundreds of thousands of free Adobe Stock assets.

    Premium Plan for Enhanced Features

    For those seeking even more capabilities, a premium plan is now available, granting full access to the upgraded Photoshop on the web alongside additional mobile tools for improved editing precision and control. The web version has also received a user experience makeover, aligning it with the mobile app’s modern design. This plan includes features such as:

    – Advanced features like Camera RAW filter, shapes, and layer effects in Photoshop on the web.
    – Premium mobile tools enabling users to remove objects easily, clone sections of images, and fill areas with Content-Aware Fill.
    – Enhanced selection tools for accurately picking out items such as people and objects.
    – Over 20,000 fonts available for creative typography, along with the ability to import custom fonts.
    – The option to export in multiple formats (PSD, TIF, JPG, PNG).

    Generative AI Capabilities

    The app brings together generative AI features, letting users add or remove content seamlessly. Users can also create new assets using the Text to Image functionality, powered by Adobe Firefly, which is safe for commercial use.

    A New Era of Creative Collaboration

    With the launch of Live Co-editing in Photoshop, users can now collaborate on projects in real-time across desktop and web platforms. This allows for effective communication with others and facilitates teaching Photoshop in an interactive manner.

    Whether you’re a mobile creator or simply want the flexibility to explore your creative ideas anytime, this is an exciting moment to create on the move. The new free Photoshop on iPhone app combines depth, versatility, and advanced tools, allowing for high-quality results all in one place. With the integration of Photoshop on desktop and web, workflows have never been more streamlined. Download the new Photoshop on iPhone app today and start creating!

    Source:
    Link

  • Google Replaces SMS Authentication for Gmail Logins

    Google Replaces SMS Authentication for Gmail Logins

    Key Takeaways

    1. Google will replace SMS authentication for Gmail logins with QR code verification.
    2. The switch aims to enhance security by reducing vulnerabilities associated with SMS, which is often exploited by hackers.
    3. QR code validation is expected to mitigate phishing threats faced by Gmail users.
    4. Users will need to scan a QR code generated during login instead of receiving a 6-digit code via text.
    5. Further details about the rollout of this new system are unclear, but users can explore alternative secure methods in the meantime.


    Gmail logins are set to become more secure with a new initiative from Google.

    According to insider information, including insights from a top security spokesperson, Davey Winder of Forbes reports that Google plans to eliminate SMS authentication for Gmail access. Instead, the tech giant will transition to using QR codes to confirm logins for its free email platform.

    New Approach to Verification

    In a “privileged conversation” with sources within Google, Winder discovered that Gmail will implement QR codes for login verification to combat the issues associated with the outdated SMS system. SMS has long been known as an insecure communication method; hackers and malicious individuals have exploited it to spoof phones, phish for personal numbers, and intercept messages sent via SMS (including verification codes) for many years now.

    Ross Richendrfer, who oversees Google Workspace’s Security and Privacy PR, mentioned that switching to QR code validation will “reduce the phishing threat faced by Gmail users” and remove the security vulnerabilities tied to users’ mobile service providers. Rather than receiving a 6-digit code through a regular text message, users will be required to scan a QR code generated when they log in to their Gmail account on a new device. This change is expected to close off many paths that could be taken by cybercriminals to capture a login code.

    Future Details Still Unclear

    There is not much additional information available about this transition to QR codes. Notably, there is no indication of when this new practice will be rolled out, although Richendrfer advised Winder to “expect more from us shortly.” In the meantime, users can consider alternative secure methods such as passkeys or physical two-factor authentication devices (like the Yubikey 5C NFC USB-C key, which is priced at $55 on Amazon).

    Source:
    Link

  • Garmin Fenix 7 HRM Connection Issues After Recent Update

    Garmin Fenix 7 HRM Connection Issues After Recent Update

    Key Takeaways

    1. System Software 20.16 was released for Fenix 7 and Fenix 7 Pro, marking a significant update after several months.
    2. The update includes expanded ECG support for Epix 2 Pro and Fenix 7 Pro in Europe and the UK.
    3. Several bugs were identified in System Software 20.16, prompting the release of Beta Version 20.19 to address them.
    4. Garmin is investigating a connection issue with external sensors that persists in Beta Version 20.19.
    5. More beta updates are expected before a new stable version of System Software 20.16 is released.


    Last week, System Software 20.16 was released for the Fenix 7 and Fenix 7 Pro (currently priced at $549.99 on Amazon), marking the first significant update for these models in several months. Notably, this rollout of System Software 20.16 also aligned with the expansion of ECG support for the Epix 2 Pro and Fenix 7 Pro in Europe and the UK.

    Bugs in the Update

    It appears that System Software 20.16 was delivered with several bugs that Garmin is addressing in its Beta Program. As a result, the company has launched Beta Version 20.19, which it states has reached all compatible Enduro 2, Epix 2, Fenix 7, Quatix 7, and Marq Gen 2 smartwatches. In a brief changelog, Garmin notes that the latest update aims to resolve crashes that happen not just during jump rope sessions but also ‘during lengthy activities’.

    Ongoing Investigations

    Furthermore, Garmin is looking into a problem that stops external sensors like heart rate monitors (HRMs) from automatically connecting when an activity is chosen and launched. Beta testers have reported that this flaw came with System Software 20.16 and continues with Beta Version 20.19. Therefore, there is a good possibility that the latter will be succeeded by more beta updates before a new version of System Software 20.16 is released. For more information, you can check Garmin’s specific bug report page.

    Source:
    Link

  • Google’s Bitcoin Wallets: Balancing Convenience and Crypto Values

    Google’s Bitcoin Wallets: Balancing Convenience and Crypto Values

    Key Takeaways

    1. Increased Accessibility: Google may simplify Bitcoin usage by integrating wallets into its services and allowing crypto payments through Google Pay.

    2. Privacy and Security Concerns: Users worry about trusting a centralized organization like Google with their Bitcoin, given its reputation for data collection and previous security breaches.

    3. Custody Issues: Relying on Google for private key storage challenges the principle of self-custody in the Bitcoin community, which values user control over their assets.

    4. Mainstream Adoption Potential: Google’s involvement could encourage more people to adopt cryptocurrency, making it easier for the average user to engage with Bitcoin.

    5. Need for Trust Solutions: To gain user confidence, Google must address security and privacy concerns, possibly through advanced encryption methods like Zero-Knowledge Proofs.


    The latest news about Google looking into adding Bitcoin wallets to its services has created a buzz in the cryptocurrency world. If this happens, it might lead to many more people using Bitcoin, as Google’s large number of users could easily access their Bitcoin via their current accounts. Yet, this development also brings up significant worries about privacy, security, and the fundamental values of decentralization that are vital to the cryptocurrency movement.

    User-Friendly Access

    On the surface, Google’s plan seems to provide a simple way for people to start using Bitcoin. By integrating wallets into its system and possibly allowing crypto payments through Google Pay, the company might make it easier for regular users to get involved. Moreover, with the help of sophisticated encryption methods like Zero-Knowledge Proofs, they could tackle security issues and build trust between blockchain and traditional finance.

    Caution in the Community

    Nonetheless, some members of the cryptocurrency community feel uneasy about trusting Bitcoin assets to a big, centralized organization such as Google. The company is known for its data collection habits, and linking Bitcoin wallets with real identities could spark privacy and censorship concerns. Additionally, security remains a significant worry, as previous incidents in both the tech and crypto sectors underline the risks of hacking and unauthorized access to funds.

    The Custody Debate

    Putting private keys on Google’s systems would go against the idea of self-custody, which is essential to Bitcoin’s values. The saying “not your keys, not your coins” is well-known in the community, emphasizing that users should have complete control over their digital wealth. By giving custody to a third party, this principle could be weakened, pushing Bitcoin towards a more conventional financial approach.

    Even with these issues, Google’s role could have beneficial impacts on mainstream acceptance. For those who are not familiar with cryptocurrencies, having access to Bitcoin on a popular platform could make it much simpler to use. If Google can successfully navigate security and privacy hurdles, its entry into the market might encourage more people to adopt cryptocurrency and inspire additional innovations.

  • Google Launches Circle in Search for iPhones with Restrictions

    Google Launches Circle in Search for iPhones with Restrictions

    Key Takeaways

    1. Circle to Search has expanded from Google and Samsung phones to more Android devices and now to Apple devices, but with limitations.
    2. On Android, users can easily use Circle to Search across almost all apps by long-pressing the navigation bar.
    3. iPhone users have a restricted experience, only able to access the feature within the Google app and Chrome through a three-dot menu option.
    4. Google is integrating Circle to Search into Google Lens on iOS, improving usability but not achieving full system-wide access like on Android.
    5. Google Lens is receiving AI upgrades, providing users with AI-generated summaries and links related to the items they search for.


    Circle to Search has become one of Google’s notable triumphs lately. Initially, it was only available on Google and Samsung phones, but in late 2024, it started to spread to more Android devices. Now, Google is bringing this feature to Apple devices, although there are some significant restrictions.

    Functionality on Android

    On Android devices, Circle to Search is compatible with nearly all applications and screens. Users can easily activate it by long-pressing the navigation bar, after which they can circle, scribble, or tap on anything displayed to get more information.

    Limitations on iPhones

    On the other hand, iPhones have a much more limited experience. The feature is only found within the Google app and Chrome. Instead of the straightforward long-press action, users must tap the three-dot menu and choose “Search this Screen” to initiate a search.

    Integration with Google Lens

    Rather than fully transferring Circle to Search, Google is basically merging its capabilities into Google Lens as an additional feature for Chrome and the Google app on iOS. This makes sense since Lens has provided similar functions for a while, though users usually need to open the app and upload a screenshot to identify what they see on their screens. The latest update does streamline the process a bit, but it’s still not as user-friendly as it is on Android.

    Coming soon, a new Lens icon will be introduced to simplify access to this feature even further. However, complete system-wide integration like what exists on Android isn’t in the works for now.

    AI Upgrades for Google Lens

    In addition, Google Lens is getting enhanced with AI overviews. Now, when users search for something like a flower or a car using Google Lens, they will receive an AI-generated summary of the item, along with links to online resources related to it.

    This update is gradually being released to English-speaking users in regions where AI overviews are available.


  • One UI 7 Delay: Eroding Trust in Samsung’s Update Policy

    One UI 7 Delay: Eroding Trust in Samsung’s Update Policy

    Key Takeaways

    1. Samsung has not released a stable version of One UI 7 for Galaxy devices as of early March 2025, disappointing many users.
    2. The challenges of timely software updates are compounded by Samsung’s wide range of devices and the complexities of the update process.
    3. Samsung has historically been a leader in Android software updates, but the delay in One UI 7 is damaging its reputation.
    4. The stable release of One UI 7 was announced to be delayed until 2025, with Galaxy S25 already shipping with the update.
    5. Future updates like One UI 7.1 may be at risk, and transparency about update timelines is needed to maintain user trust.


    We are nearing the start of March 2025, yet Samsung has not rolled out a single stable version of One UI 7 for its Galaxy devices. There hasn’t even been a word on when Galaxy users might expect the update. This is quite disappointing given Samsung’s reputation for setting high standards in software updates over the past few years.

    Challenges of Device Updates

    Samsung offers a wide range of devices and adds many more each year. Delivering timely software updates for all these devices is a tough task due to the extensive planning, development, testing, and deployment needed. Nonetheless, Samsung has made significant improvements in its update process, enhancing the software experience for Galaxy users.

    Samsung’s Update Reputation

    The progress Samsung has made over the years arguably makes it the top Android brand for software updates. It has become standard for Samsung to launch security patches even before Google does, and their major update releases have been quite impressive as well.

    Typically, Samsung starts its beta program at the beginning of the fourth quarter and releases stable versions for many Galaxy flagships by the year’s end. This has been the pattern in previous years, but it took a turn for the worse with Android 15. The One UI 7 beta program began in early December for the Galaxy S24 series, but it was delayed. Even more disappointing is the fact that Samsung didn’t extend the beta program to other devices, leaving users waiting for the stable update.

    Uncertain Release Timeline

    During the annual developer conference in October 2024, Samsung announced that a stable release wouldn’t happen until 2025. Now, as we approach March 2025, there is still no sign of the stable update on any Galaxy device. This appears unreasonable, especially since the Galaxy S25, released in January, already comes with stable One UI 7, and the new Galaxy A06 5G (priced at $110) ships with One UI 7 out of the box.

    The exact reason for this delay in One UI 7 is unknown, but many speculate it is intentional to boost Galaxy S25 sales. Regardless of the reason, this holdup is damaging Samsung’s reputation, which it has built over the years through its solid software update policy and quick rollout. I’ve noticed a number of Galaxy users expressing their desire to switch to other brands due to this delay on forums and subreddits.

    Future of One UI Updates

    This substantial delay in the One UI 7 rollout may lead Samsung to scrap One UI 7.1 since there might not be enough time to implement it without impacting future updates. Software is crucial to the success of Galaxy devices, and any major delays could harm the trust Samsung has nurtured over the years. The company should be more transparent about any delays and clearly outline its software plans, which would help strengthen its relationship with users.

  • Samsung Accelerates One UI 7 Beta Testing for Stable Rollout

    Samsung Accelerates One UI 7 Beta Testing for Stable Rollout

    Key Takeaways

    1. Samsung is struggling to provide a stable One UI 7 software for Galaxy devices, with delays in rollout.
    2. The fourth One UI 7 beta for the Galaxy S24 series was released recently, adding new features and fixes.
    3. Future stable release of One UI 7 is expected in March or April, but it may face further delays.
    4. User frustration is growing due to the delay, with some considering switching brands.
    5. Samsung needs to provide a clear timeline for the One UI 7 rollout to regain user trust.


    Samsung is having a tough time this year with providing a stable One UI 7 software for its Galaxy devices. They kicked off the One UI 7 beta program for the Galaxy S24 series in early December, and since then, users have been waiting without any clear information about the stable update. Now, it appears that Samsung is eager to finish the beta phase and start the stable rollout of One UI 7, beginning with the Galaxy S24 series.

    Latest Beta Release

    This week, Samsung launched the fourth One UI 7 beta for the Galaxy S24 series. This update includes a variety of fixes and some new camera features like AI filters and log video recording. Just a day after this fourth beta was released, another beta update came out for the Galaxy S24 series, whereas the gap between the third and fourth beta was about one and a half months. This could indicate that Samsung is keen on addressing the existing problems quickly and aims to release the stable update for the Galaxy S24 series in the near future.

    Update Details

    The most recent One UI 7 update, which was made available today, has the firmware version ZYBB and is approximately 436MB in size. The changelog notes that it resolves an issue with the visual voicemail (VVM) crash. Is this update the fifth beta or a fix for the fourth one? We can’t say definitively. However, it is encouraging to see Samsung putting out another update in just a day.

    Future Release Expectations

    A moderator for the One UI beta on the Samsung Community recently mentioned that the stable version is coming soon. Although no specific release date or timeline was provided, if what he said is correct, the Galaxy S24 series might see the stable One UI 7 update in March. Yet, recent leaks suggest otherwise. These leaks indicate that Samsung may release at least two additional One UI 7 beta updates for the Galaxy S24 series, with the stable version potentially arriving in April, coinciding with the release of the Galaxy S25 Edge.

    The rollout of the One UI 7 stable version is already significantly behind schedule. Samsung has yet to update any Galaxy device to One UI 7, which is leading to user frustration. This situation isn’t favorable for the brand, as many users are considering switching to other brands and are questioning the future of Samsung’s software updates. There is a strong belief that Samsung should at least provide a timeline for the One UI 7 rollout.


  • Instagram DMs Get Boost: New Translation and Scheduling Features

    Instagram DMs Get Boost: New Translation and Scheduling Features

    Key Takeaways

    1. Message Translation: Instagram now allows users to translate messages in DMs by long-pressing on a message and selecting Translate, making communication across languages easier.

    2. Music Stickers: Users can send a 30-second preview of their favorite songs in messages using the new music stickers feature available in the Stickers section.

    3. Scheduling Messages: Instagram introduces the ability to schedule messages for a specific time, helpful for sending timely messages like birthday wishes.

    4. Group Chat QR Codes: Each group chat will have a unique QR code for inviting new members, with group admins controlling access.

    5. Pinned Messages: Users can now pin specific messages in one-on-one or group chats, enhancing the organization of important conversations.


    Instagram is introducing several exciting updates to enhance its direct messaging service, including features like message translation, music stickers, and the option to schedule messages.

    Message Translation Feature

    While Facebook Messenger has had message translation since 2018, Instagram is just now integrating this feature into its DMs. It’s a bit surprising that Meta took this long to implement it—WhatsApp still lacks this capability—but at least it’s finally here. To translate messages in your Instagram chats, simply long-press on a message, whether sent or received, and select Translate. The translated text will show up right below the original message.

    Music Stickers and Scheduling Messages

    Another cool addition to DMs is music stickers. This feature allows you to send a snippet of your chosen song in your messages. You can find the new Music option in the Stickers section of your chat, where you can look for a song to share. Just remember that the sticker will only provide a 30-second preview of the track.

    Instagram is also adding the ability to schedule messages, a great tool for sending birthday wishes right at midnight. You can long-press the send button to set up a message for a specific time, choosing from various customization options.

    Group Chat Enhancements

    Group chats are seeing a minor but helpful update too. Each group will now have its own unique QR code that can be shared for inviting new members. Nevertheless, group admins will still control who joins since they can refresh the QR code at any moment to manage access.

    Finally, Instagram is building on last year’s feature that allows users to pin up to three chat threads in their DMs. Now, you can also pin specific messages in one-on-one or group chats, making it simpler to keep important conversations easily accessible.

    These updates have begun to roll out worldwide, so if you haven’t noticed them yet, they should be available to you shortly.


  • Philips Hue App Update: New Tool for Better Organization

    Philips Hue App Update: New Tool for Better Organization

    Key Takeaways

    1. The Philips Hue iOS app has been updated to version 5.36.0, the first update of the month.
    2. New features include improved organization tools for user scenes, allowing users to group and ungroup scenes easily.
    3. Users need a Hue Bridge to set up multiple Rooms in the app.
    4. Future updates may enhance search capabilities, potentially allowing QR code scanning instead of using serial numbers.
    5. The release date for a similar update on Android is currently unknown.


    The Philips Hue iOS application has been refreshed to version 5.36.0. This update marks the first for the smart home app this month. It comes after version 5.34.0, which was released in late January and introduced the Arming schedule Automation. The reason behind the absence of version 5.35 from public release is still unknown.

    New Organizational Features

    The latest Philips Hue app version 5.36 introduces a new tool for organizing user scenes. According to the release notes, users can now shift grouped scenes into a different group. In addition, there’s an option to ungroup these scenes. To use this feature, simply click on the three dots icon in any Room within the app. Just a reminder, you need a Hue Bridge (curr. $42 at Amazon) to set up multiple Rooms.

    Upcoming Enhancements

    There are rumors that Philips Hue is aiming to improve the app’s search capabilities. It appears that the upcoming features may allow users to scan a QR code instead of having to search for a serial number. However, it’s still uncertain when this enhancement will be available for users. You can download the Philips Hue app version 5.36 for iOS from the Apple App Store. It’s also unclear when a similar update will be launched for Android users.

    Source:
    Link