πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.9K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
⚠ Android apps are snooping on your installed software ⚠

Android apps are snooping on other software on your device - and that could tell shady advertising companies more about you than you'd like.

πŸ“– Read

via "Naked Security".
πŸ” How to sync Firefox containers across devices πŸ”

If you make use of the Firefox Multi-Container Account add-on, it now includes the ability to sync your customizations across your Firefox account.

πŸ“– Read

via "Security on TechRepublic".
❌ Apple Unpatched VPN Bypass Bug Impacts iOS 13, Warn Researchers ❌

The vulnerability can be exploited to reveal limited traffic data including a device’s IP address.

πŸ“– Read

via "Threatpost".
πŸ” Why Microsoft's Office 365 has become an all-access pass for phishers to exploit πŸ”

Cybercriminals are tapping into the widespread use of Office 365 to spread malware in an attempt to steal account credentials, according to email security provider Vade Secure.

πŸ“– Read

via "Security on TechRepublic".
πŸ” How to enable 2FA for groups in Nextcloud πŸ”

Nextcloud allows you to enforce groups to use two-factor authentication. Let's find out how to create a group and then add them to 2FA enforcement.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Purported Brute-Force Attack Aims at Linksys Routers as More People Work Remotely πŸ•΄

The attack takes control of poorly secured network devices, redirecting Web addresses to a COVID-themed landing page that attempts to fool victims into downloading malware.

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2015-8536

MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A vulnerability was discovered (fixed and publicly disclosed in 2015) in Lenovo Solution Center (LSC) prior to version 3.3.002 that could allow cross-site request forgery.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2015-8535

MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A directory traversal vulnerability was discovered (fixed and publicly disclosed in 2015) in Lenovo Solution Center (LSC) prior to version 3.3.002 that could allow a user to execute arbitrary code with elevated privileges.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2015-8534

MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A local privilege escalation vulnerability was discovered (fixed and publicly disclosed in 2015) in Lenovo Solution Center (LSC) prior to version 3.3.002 that could allow a user to execute arbitrary code with elevated privileges.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2015-7336

MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A vulnerability was reported (fixed and publicly disclosed in 2015) in Lenovo System Update version 5.07.0008 and prior that could allow the signature check of an update to be bypassed.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2015-7335

MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A race condition was reported (fixed and publicly disclosed in 2015) in Lenovo System Update version 5.07.0008 and prior that could allow a user to execute arbitrary code with elevated privileges.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2015-7334

MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A local privilege escalation vulnerability was reported (fixed and publicly disclosed in 2015) in Lenovo System Update version 5.07.0008 and prior where the SUService.exe /type COMMAND type could allow a user to execute arbitrary code with elevated privileges.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2015-7333

MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A local privilege escalation vulnerability was reported (fixed and publicly disclosed in 2015) in Lenovo System Update version 5.07.0008 and prior where the SUService.exe /type INF and INF_BY_COMPATIBLE_ID command types could allow a user to execute arbitrary code with elevated privileges.

πŸ“– Read

via "National Vulnerability Database".
πŸ” Friday Five 3/27 πŸ”

Cybercrime groups capitalize on pandemic anxiety, Norwegian Cruise Line suffers data breach, and more - catch up on all the week's news with the Friday Five.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
πŸ•΄ The Wild, Wild West(world) of Cybersecurity πŸ•΄

Though set in the future, HBO's "Westworld" works as an allegory for the present moment in cybersecurity.

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2015-5684

MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A buffer overflow vulnerability was reported, (fixed and publicly disclosed in 2015) in the Lenovo Service Engine (LSE), affecting various versions of BIOS for Lenovo Notebooks, that could allow a remote user to execute arbitrary code on the system.

πŸ“– Read

via "National Vulnerability Database".
πŸ” Cybercriminals attack KEEN shoe drive for people affected by coronavirus pandemic πŸ”

KEEN is providing shoes to people most impacted by the COVID-19 pandemic, but their website was bombarded by malicious bots.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Virgin Media Could Pay GB pound 4.5B for Leak Affecting 900,000 Customers πŸ•΄

A misconfigured database holding personal data was left available online between April 2019 and February 2020.

πŸ“– Read

via "Dark Reading: ".
πŸ” How to listen to port traffic on a Linux server πŸ”

Every network administrator needs to know how to listen to port traffic on a server. Here's one way to do it on Linux.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Malicious USB Drive Hides Behind Gift Card Lure πŸ•΄

Victims are being enticed to insert an unknown USB drive into their computers.

πŸ“– Read

via "Dark Reading: ".