{"id":22531,"date":"2025-10-23T22:51:42","date_gmt":"2025-10-23T22:51:42","guid":{"rendered":"https:\/\/thisbiginfluence.com\/?p=22531"},"modified":"2025-10-23T22:51:42","modified_gmt":"2025-10-23T22:51:42","slug":"this-privacy-browser-has-dangerous-hidden-features","status":"publish","type":"post","link":"https:\/\/thisbiginfluence.com\/?p=22531","title":{"rendered":"This \u2018Privacy Browser\u2019 Has Dangerous Hidden Features"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div>\n<p>The Universe Browser makes some huge guarantees to its potential customers. Its on-line commercials declare it\u2019s the \u201cquickest browser,\u201d that individuals utilizing it&#8217;s going to \u201ckeep away from privateness leaks\u201d and that the software program will assist \u201chold you away from hazard.\u201d Nevertheless, every thing possible isn\u2019t because it appears.<\/p>\n<p class=\"paywall\">The browser, which is linked to Chinese language on-line playing web sites and is believed to have been downloaded hundreds of thousands of occasions, really routes all web visitors by servers in China and \u201ccovertly installs a number of packages that run silently within the background,\u201d in keeping with <a data-offer-url=\"https:\/\/blogs.infoblox.com\/threat-intelligence\/vault-viper-high-stakes-hidden-threats\" class=\"external-link\" data-event-click=\"{&quot;element&quot;:&quot;ExternalLink&quot;,&quot;outgoingURL&quot;:&quot;https:\/\/blogs.infoblox.com\/threat-intelligence\/vault-viper-high-stakes-hidden-threats&quot;}\" href=\"https:\/\/blogs.infoblox.com\/threat-intelligence\/vault-viper-high-stakes-hidden-threats\" rel=\"nofollow noopener\" target=\"_blank\">new findings<\/a> from community safety firm Infoblox. The researchers say the \u201chidden\u201d components embody options just like malware\u2014together with \u201ckey logging, surreptitious connections,\u201d and altering a tool\u2019s community connections.<\/p>\n<p class=\"paywall\">Maybe most importantly, the Infoblox researchers who collaborated with the United Nations Workplace on Medication and Crime (UNODC) on the work, discovered hyperlinks between the browser\u2019s operation and Southeast Asia\u2019s sprawling, <a data-offer-url=\"https:\/\/www.unodc.org\/roseap\/uploads\/documents\/Publications\/2025\/Inflection_Point_2025.pdf\" class=\"external-link\" data-event-click=\"{&quot;element&quot;:&quot;ExternalLink&quot;,&quot;outgoingURL&quot;:&quot;https:\/\/www.unodc.org\/roseap\/uploads\/documents\/Publications\/2025\/Inflection_Point_2025.pdf&quot;}\" href=\"https:\/\/www.unodc.org\/roseap\/uploads\/documents\/Publications\/2025\/Inflection_Point_2025.pdf\" rel=\"nofollow noopener\" target=\"_blank\">multibillion-dollar cybercrime ecosystem<\/a>, which has connections to money-laundering, unlawful on-line playing, human trafficking, and <a href=\"https:\/\/www.wired.com\/story\/pig-butchering-scam-invasion\/\">scam operations that use forced labor<\/a>. The browser itself, the researchers says, is immediately linked to a community round main on-line playing firm BBIN, which the researchers have labeled a menace group they name Vault Viper.<\/p>\n<p class=\"paywall\">The researchers say the invention of the browser\u2014plus its suspicious and dangerous habits\u2014signifies that criminals within the area have gotten more and more subtle. \u201cThese felony teams, significantly Chinese language organized crimes syndicates, are more and more diversifying and evolving into cyber enabled fraud, pig butchering, impersonation, scams, that entire ecosystem,\u201d says John Wojcik, a senior menace researcher at Infoblox, who additionally labored on the undertaking when he was a workers member on the UNODC.<\/p>\n<p class=\"paywall\">\u201cThey\u2019re going to proceed to double down, reinvest income, develop new capabilities,\u201d Wojcik says. \u201cThe menace is in the end turning into extra severe and regarding, and that is one instance of the place we see that.\u201d<\/p>\n<h2 class=\"paywall\">Below the Hood<\/h2>\n<p class=\"paywall\">The Universe Browser was first noticed\u2014and <a data-offer-url=\"https:\/\/www.unodc.org\/roseap\/uploads\/documents\/Publications\/2025\/Inflection_Point_2025.pdf\" class=\"external-link\" data-event-click=\"{&quot;element&quot;:&quot;ExternalLink&quot;,&quot;outgoingURL&quot;:&quot;https:\/\/www.unodc.org\/roseap\/uploads\/documents\/Publications\/2025\/Inflection_Point_2025.pdf&quot;}\" href=\"https:\/\/www.unodc.org\/roseap\/uploads\/documents\/Publications\/2025\/Inflection_Point_2025.pdf\" rel=\"nofollow noopener\" target=\"_blank\">mentioned by name<\/a>\u2014by Infoblox and UNODC at first of this 12 months once they started unpacking the digital techniques round a web-based on line casino operation <a data-offer-url=\"https:\/\/cambojanews.com\/dead-chinese-man-linked-to-alleged-scam-operation-sihanoukville-compound\/\" class=\"external-link\" data-event-click=\"{&quot;element&quot;:&quot;ExternalLink&quot;,&quot;outgoingURL&quot;:&quot;https:\/\/cambojanews.com\/dead-chinese-man-linked-to-alleged-scam-operation-sihanoukville-compound\/&quot;}\" href=\"https:\/\/cambojanews.com\/dead-chinese-man-linked-to-alleged-scam-operation-sihanoukville-compound\/\" rel=\"nofollow noopener\" target=\"_blank\">based<\/a> in Cambodia, which was <a data-offer-url=\"https:\/\/vodenglish.news\/sihanoukville-crime-5-arrested-for-dealing-guns-21-thais-removed-from-scams\/\" class=\"external-link\" data-event-click=\"{&quot;element&quot;:&quot;ExternalLink&quot;,&quot;outgoingURL&quot;:&quot;https:\/\/vodenglish.news\/sihanoukville-crime-5-arrested-for-dealing-guns-21-thais-removed-from-scams\/&quot;}\" href=\"https:\/\/vodenglish.news\/sihanoukville-crime-5-arrested-for-dealing-guns-21-thais-removed-from-scams\/\" rel=\"nofollow noopener\" target=\"_blank\">previously<\/a> <a href=\"https:\/\/web.archive.org\/web\/20230506054757\/https:\/\/cyberscammonitor.net\/profile\/bolai-casino-brilliancy-casino\/\">raided by law enforcement<\/a> officers. Infoblox, which focuses on area identify system (DNS) administration and safety, detected a novel DNS fingerprint from these techniques that they linked to Vault Viper, making it doable for the researchers to hint and map web sites and infrastructure linked to the group.<\/p>\n<p class=\"paywall\">Tens of 1000&#8217;s of internet domains, plus numerous command-and-control infrastructure and registered firms, are linked to Vault Viper exercise, Infoblox researchers say in a report shared with WIRED. Additionally they say they examined a whole bunch of pages of company paperwork, authorized data, and court docket filings with hyperlinks to BBIN or different subsidiaries. Time and time once more, they got here throughout the Universe Browser on-line.<\/p>\n<p class=\"paywall\">\u201cWe haven\u2019t seen the Universe Browser marketed exterior of the domains Vault Viper controls,\u201d says Ma\u00ebl Le Touz, a menace researcher at Infoblox. The Infoblox report says the browser was \u201cparticularly\u201d designed to assist individuals in Asia\u2014the place on-line playing is basically unlawful\u2014bypass restrictions. \u201cEvery of the on line casino web sites they function appear to comprise a hyperlink and commercial to it,\u201d Le Touz says.<\/p>\n<\/div>\n<p><br \/>\n<br \/><a href=\"https:\/\/www.wired.com\/story\/universe-browser-malware-gambling-networks\/\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>The Universe Browser makes some huge guarantees to its potential customers. Its on-line commercials declare it\u2019s the \u201cquickest browser,\u201d that individuals utilizing it&#8217;s going to \u201ckeep away from privateness leaks\u201d and that the software program will assist \u201chold you away from hazard.\u201d Nevertheless, every thing possible isn\u2019t because it appears. The browser, which is linked [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":22533,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[9],"tags":[4715,1293,4306,2005,2298],"class_list":["post-22531","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-tech","tag-browser","tag-dangerous","tag-features","tag-hidden","tag-privacy"],"_links":{"self":[{"href":"https:\/\/thisbiginfluence.com\/index.php?rest_route=\/wp\/v2\/posts\/22531","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/thisbiginfluence.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/thisbiginfluence.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/thisbiginfluence.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/thisbiginfluence.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=22531"}],"version-history":[{"count":1,"href":"https:\/\/thisbiginfluence.com\/index.php?rest_route=\/wp\/v2\/posts\/22531\/revisions"}],"predecessor-version":[{"id":22532,"href":"https:\/\/thisbiginfluence.com\/index.php?rest_route=\/wp\/v2\/posts\/22531\/revisions\/22532"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/thisbiginfluence.com\/index.php?rest_route=\/wp\/v2\/media\/22533"}],"wp:attachment":[{"href":"https:\/\/thisbiginfluence.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=22531"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/thisbiginfluence.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=22531"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/thisbiginfluence.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=22531"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}