πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
❌ Haken Malware Family Infests Google Play Store ❌

Eight apps - mostly camera utilities and children's games - were discovered spreading a new malware strain that steals data and signs victims up for expensive premium services.

πŸ“– Read

via "Threatpost".
⚠ Data of 10.6m MGM hotel guests posted for sale on Dark Web forum ⚠

The data dump apparently included PII for Justin Bieber and Jack Dorsey.

πŸ“– Read

via "Naked Security".
πŸ•΄ Security Now Merges With Dark Reading πŸ•΄

Readers of Security Now will join the Dark Reading community, gaining access to a wide range of cybersecurity content.

πŸ“– Read

via "Dark Reading: ".
⚠ US and UK call out Russian hackers for Georgia attacks ⚠

The US and UK governments have both accused Russia of launching a cyber attack against the Georgian government last year.

πŸ“– Read

via "Naked Security".
⚠ Larry Tesler, of copy-and-paste fame, dies at 74 ⚠

Larry Tesler, the computing pioneer who insisted that user interfaces should be both comfortable *and* consistent, has died aged 74.

πŸ“– Read

via "Naked Security".
❌ ISS World Hit with Malware Attack that Shuts Down Global Computer Network ❌

The incident cut off access to e-mail and shared IT services across customer sites of the multinational Denmark-based facility-management firm.

πŸ“– Read

via "Threatpost".
⚠ S2 Ep27: Bluetooth holes, dodgy Chrome extensions and forgotten passwords – Naked Security Podcast ⚠

New episode - listen now!

πŸ“– Read

via "Naked Security".
πŸ•΄ How to Get CISOs & Boards on the Same Page πŸ•΄

These two groups have talked past each other for years, each hobbled by their own tunnel vision and misperceptions.

πŸ“– Read

via "Dark Reading: ".
πŸ” Compliance: Veritas tool adds intelligence and analysis to data supervision πŸ”

A new release leverages machine learning to help companies reduce the search time they need to remain compliant in regulated industries.

πŸ“– Read

via "Security on TechRepublic".
πŸ” 11 things you might not know about security operations center burnout πŸ”

Managers and industry leaders are beginning to address mental health in the IT world - and here are symptoms to look for and solutions to try.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Olympics Could Face Disruption from Regional Powers πŸ•΄

Destructive attacks and disinformation will likely target the Summer Olympics in Tokyo, two groups of threat experts say.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ NRC Health Ransomware Attack Prompts Patient Data Concerns πŸ•΄

The organization, which sells patient administration tools to hospitals, could not confirm whether patient data was accessed.

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2013-4088

Kernel/Modules/AgentTicketWatcher.pm in Open Ticket Request System (OTRS) 3.0.x before 3.0.21, 3.1.x before 3.1.17, and 3.2.x before 3.2.8 does not properly restrict tickets, which allows remote attackers with a valid agent login to read restricted tickets via a crafted URL involving the ticket split mechanism.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2013-3551

Kernel/Modules/AgentTicketPhone.pm in Open Ticket Request System (OTRS) 3.0.x before 3.0.20, 3.1.x before 3.1.16, and 3.2.x before 3.2.7, and OTRS ITSM 3.0.x before 3.0.8, 3.1.x before 3.1.9, and 3.2.x before 3.2.5 does not properly restrict tickets, which allows remote attackers with a valid agent login to read restricted tickets via a crafted URL involving the ticket split mechanism.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2012-0063

Insecure plugin update mechanism in tucan through 0.3.10 could allow remote attackers to perform man-in-the-middle attacks and execute arbitrary code ith the permissions of the user running tucan.

πŸ“– Read

via "National Vulnerability Database".
❌ Burning Man Tickets for $225? Yep, Too Good to Be True ❌

Scammers are posing as event organizers in a sophisticated fraud effort.

πŸ“– Read

via "Threatpost".
❌ RSAC 2020: Editors’ Preview of Hottest Sessions, Speakers and Themes ❌

From data privacy to industrial IoT cybersecurity concerns, Threatpost editors discuss the top stories they expect to see at this year's RSA Conference, which kicks off next week in San Francisco.

πŸ“– Read

via "Threatpost".
⚠ The Amazon Prime phishing attack that wasn’t… ⚠

When we followed the phishing trail, we found ourselves at a web page we weren't expecting...

πŸ“– Read

via "Naked Security".
πŸ” Friday Five: 2/21 Edition πŸ”

Chinese hackers breach online gambling sites, CISA warns of ransomware attacks across the critical infrastructure sector, and more - catch up on the week's news with the Friday Five.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
πŸ•΄ California Man Arrested for Politically Motivated DDoS πŸ•΄

The distributed denial-of-service attacks took a congressional candidate's website offline for a total of 21 hours during the campaign for office.

πŸ“– Read

via "Dark Reading: ".
πŸ” 70% of IT leaders say security concerns restrict adoption of public cloud πŸ”

While the concerns are legitimate, Barracuda also wants IT professionals to know that practical solutions exist.

πŸ“– Read

via "Security on TechRepublic".