πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ•΄ The Perfect Travel Security Policy for a Globe-Trotting Laptop πŸ•΄

There are many challenges to safely carrying data and equipment on international travels, but the right policy can make navigating the challenges easier and more successful.

πŸ“– Read

via "Dark Reading: ".
πŸ” UK company uses cell phone chips to create super secure browsing πŸ”

Garrison is using ARM processor chips to create a hardware defense against data breaches and malware.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ EternalBlue Longevity Underscores Patching Problem πŸ•΄

Three years after the Shadow Brokers published zero-day exploits stolen from the National Security Agency, the SMB compromise continues to be a popular Internet attack.

πŸ“– Read

via "Dark Reading: ".
❌ Microsoft OneNote Used To Sidestep Phishing Detection ❌

A recent phishing campaign used OneNote to distribute the Agent Tesla keylogger.

πŸ“– Read

via "Threatpost".
πŸ” Number of spoof attempts on domains drops to "near zero" within months of DMARC enforcement πŸ”

Despite an increase in usage, a Valimail report found that of the 933,000 organizational domains with DMARC, only 13% are at enforcement.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ CISOs Who Want a Seat at the DevOps Table Better Bring Value πŸ•΄

Here are four ways to make inroads with the DevOps team -- before it's too late.

πŸ“– Read

via "Dark Reading: ".
❌ Critical Netgear Bug Impacts Flagship Nighthawk Router ❌

Dozens of routers are patched by Netgear as it snuffs out critical, high and medium severity flaws.

πŸ“– Read

via "Threatpost".
πŸ” New Lawsuit Alleges Theft of Bridge Security Trade Secrets πŸ”

This armor safety company claims a former employee stole secrets via a USB drive and used them to net a multi-million dollar contract

πŸ“– Read

via "Subscriber Blog RSS Feed ".
πŸ” COVID-19: What business pros need to know πŸ”

The coronavirus is spurring questions and concerns in the tech industry. Get tips about remote work, interviewing and hiring, travel, and cybersecurity, as well as the latest news.

πŸ“– Read

via "Security on TechRepublic".
πŸ” How to scan your WordPress sites for vulnerabilities πŸ”

How confident are you with the security of your WordPress deployments? If you're not 100% confident, you need to make use of the wpscan tool.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Most Cyberattacks in 2019 Were Waged Without Malware πŸ•΄

If the "malware-free" attack trajectory continues, it could mean major trouble for defenders, according to experts from CrowdStrike and other security companies.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Let's Encrypt Revokes Over 3 Million of Its Digital Certs πŸ•΄

Domain validation glitch prompts an abrupt decision.

πŸ“– Read

via "Dark Reading: ".
⚠ Coronavirus warning spreads computer virus ⚠

There's an attachment that you are "strongly recommended to read" on account of coronavirus infections in your area. Don't open it!

πŸ“– Read

via "Naked Security".
⚠ Zynga faces class action suit over massive Words With Friends hack ⚠

It's charging subpar password security and lousy user notification: Zynga has yet to notify users to warn them of the breach, the suit says.

πŸ“– Read

via "Naked Security".
❌ Let’s Encrypt Pushes Back Deadline to Revoke Some TLS Certificates ❌

While 1.7 million of the certificates potentially affected by a CAA bug have already been replaced, around 1 million are still active.

πŸ“– Read

via "Threatpost".
❌ Trump, Sanders Are the Top Brands for Cybercriminals ❌

An analysis of spam subject lines and malicious domains shows that attackers have been betting on Trump and Sanders to snag public interest.

πŸ“– Read

via "Threatpost".
⚠ Google launches FuzzBench service to benchmark fuzzing tools ⚠

Google has announced FuzzBench, a free service β€œfor painlessly evaluating fuzzers in a reproducible way.”

πŸ“– Read

via "Naked Security".
⚠ Ethical hackers swarm Pentagon websites ⚠

Hackers are crawling all over the US Department of Defense's websites - and DoD officials are quite happy about the whole thing.

πŸ“– Read

via "Naked Security".
ATENTIONβ€Ό New - CVE-2019-10587

Possible Stack overflow can occur when processing a large SDP body or non standard SDP body without right delimiters in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8096, APQ8096AU, APQ8098, MDM9150, MDM9206, MDM9607, MDM9615, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCM2150, QCS605, QM215, Rennell, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SXR1130

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2019-10586

Filling media attribute tag names without validating the destination buffer size which can result in the buffer overflow in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8096AU, APQ8098, MDM9150, MDM9205, MDM9206, MDM9607, MDM9615, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCM2150, QCS605, QM215, Rennell, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SXR1130

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2019-10577

Improper input validation while processing SIP URI received from the network will lead to buffer over-read and then to denial of service in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8096, APQ8096AU, APQ8098, MDM9150, MDM9205, MDM9206, MDM9607, MDM9615, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCM2150, QCS605, QM215, Rennell, Saipan, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130

πŸ“– Read

via "National Vulnerability Database".