πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.9K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
⚠ Apple Safari now blocks all third-party cookies by default ⚠

Starting in 13.1, advertisers and analytics firms can't track us through browser cookies. Apple says this also kills login fingerprinting.

πŸ“– Read

via "Naked Security".
πŸ•΄ Introducing Zero-Trust Access πŸ•΄

It's too early to tell whether ZTA will be a VPN killer or not, but major players are ramping up products in this new class of security technology that focuses on the cloud.

πŸ“– Read

via "Dark Reading: ".
πŸ” How hackers are using COVID-19 fears to push new scams and malware πŸ”

Cybercriminals may be staying home, but they're not taking a break from phishing attempts and password hacking during the coronavirus outbreak.

πŸ“– Read

via "Security on TechRepublic".
ATENTIONβ€Ό New - CVE-2019-15796

Python-apt doesn't check if hashes are signed in `Version.fetch_binary()` and `Version.fetch_source()` of apt/package.py or in `_fetch_archives()` of apt/cache.py in version 1.9.3ubuntu2 and earlier. This allows downloads from unsigned repositories which shouldn't be allowed and has been fixed in verisions 1.9.5, 1.9.0ubuntu1.2, 1.6.5ubuntu0.1, 1.1.0~beta1ubuntu0.16.04.7, 0.9.3.5ubuntu3+esm2, and 0.8.3ubuntu7.5.

πŸ“– Read

via "National Vulnerability Database".
❌ Hackers Hijack Routers to Spread Malware Via Coronavirus Apps ❌

The router DNS hijacking attacks have targeted more than a thousand victims with the Oski info-stealing malware.

πŸ“– Read

via "Threatpost".
πŸ›  nullscan 1.0.0 πŸ› 

nullscan is a modular framework designed to chain and automate security tests. It parses target definitions from the command line and runs corresponding modules and their nullscan-tools afterwards. It can also take hosts and start nmap first in order to perform a basic portscan and run the modules afterwards. Also, nullscan can parse a given nmap logfile for open tcp and udp ports and again run the modules afterwards. All results will be logged in specified directories with a clean structure and an HTML report can subsequently be generated.

πŸ“– Go!

via "Security Tool Files β‰ˆ Packet Storm".
⚠ Watch out! Scummy scammers target home deliveries ⚠

Anxiously waiting for a home delivery? Don't be tricked by a message that says there's a problem with your address...

πŸ“– Read

via "Naked Security".
ATENTIONβ€Ό New - CVE-2019-15795

python-apt only checks the MD5 sums of downloaded files in `Version.fetch_binary()` and `Version.fetch_source()` of apt/package.py in version 1.9.0ubuntu1 and earlier. This allows a man-in-the-middle attack which could potentially be used to install altered packages and has been fixed in versions 1.9.0ubuntu1.2, 1.6.5ubuntu0.1, 1.1.0~beta1ubuntu0.16.04.7, 0.9.3.5ubuntu3+esm2, and 0.8.3ubuntu7.5.

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ Technology Empowers Pandemic Response, But Privacy Worries Remain πŸ•΄

As technology companies and the medical community work to find ways to track and test for the virus, privacy might fall by the wayside.

πŸ“– Read

via "Dark Reading: ".
❌ As Zoom Booms Incidents of β€˜ZoomBombing’ Become a Growing Nuisance ❌

Numerous instances of online conferences being disrupted by pornographic images, hate speech or even threats can be mitigated using some platform tools.

πŸ“– Read

via "Threatpost".
πŸ” Hackers hijacking home routers to direct people to malicious coronavirus app πŸ”

The attackers are changing DNS settings on Linksys routers to redirect users to a malicious website promising an informative COVID-19 app, says security provider BitDefender.

πŸ“– Read

via "Security on TechRepublic".
❌ Emerging APT Mounts Mass iPhone Surveillance Campaign ❌

The malware, the work of a new APT called TwoSail Junk, allows deep surveillance and total control over iOS devices.

πŸ“– Read

via "Threatpost".
πŸ” Digital Guardian Named to JMP Securities 2020 Elite 80 List πŸ”

JMP Securities has announced its annual Elite 80 list and we're pleased to report Digital Guardian is on it!

πŸ“– Read

via "Subscriber Blog RSS Feed ".
❌ Tupperware Cyberattack Stores Away Customer Payment Cards ❌

The food container company's main website had a card skimmer that scooped up online customers' payment card data.

πŸ“– Read

via "Threatpost".
πŸ” How to safely work from home during the coronavirus outbreak πŸ”

A malware expert offers telecommuters security tips about their work computer, remote access and network connections, phishing emails, and more.

πŸ“– Read

via "Security on TechRepublic".
πŸ” 667% spike in email phishing attacks due to coronavirus fears πŸ”

New data from Barracuda shows cybercriminals are taking advantage of people's concerns during the COVID-19 pandemic.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ 3 Mobile Security Problems That Most Security Teams Haven't Fixed Yet πŸ•΄

Mobility must be included in the security operations workflow so that company data is protected regardless of where remote workers are located.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Security Not a Priority for SAP Projects, Users Report πŸ•΄

Nearly 70% of SAP users surveyed believe organizations lacked focus on IT security during previous SAP implementations.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ 10 Security Services Options for SMBs πŸ•΄

Outsourcing security remains one of the best ways for small to midsize businesses to protect themselves from cyberthreats.

πŸ“– Read

via "Dark Reading: ".