๐Ÿ›ก Cybersecurity & Privacy ๐Ÿ›ก - News
25.9K subscribers
89.2K links
๐Ÿ—ž The finest daily news on cybersecurity and privacy.

๐Ÿ”” Daily releases.

๐Ÿ’ป Is your online life secure?

๐Ÿ“ฉ lalilolalo.dev@gmail.com
Download Telegram
๐Ÿ” How to use an iPhone or Android device as the security key for your Google account ๐Ÿ”

Your smartphone can act as your security key to authenticate your Google credentials on the web. Learn how to set that up on an Android device or an iPhone.

๐Ÿ“– Read

via "Security on TechRepublic".
โŒ Zeus Sphinx Banking Trojan Arises Amid COVID-19 โŒ

The malware is back after three years, looking to cash in on interest in government relief efforts around coronavirus.

๐Ÿ“– Read

via "Threatpost".
๐Ÿ” Top 5 remote access threats ๐Ÿ”

When working from home, it's important to understand the security risks. Tom Merritt lists five remote access threats so you can secure your system.

๐Ÿ“– Read

via "Security on TechRepublic".
ATENTIONโ€ผ New - CVE-2019-7755

In webERP 4.15, the Import Bank Transactions function fails to sanitize the content of imported MT940 bank statement files, resulting in the execution of arbitrary SQL queries, aka SQL Injection.

๐Ÿ“– Read

via "National Vulnerability Database".
๐Ÿ” Top 5 remote access threats ๐Ÿ”

When working from home, it's important to understand the security risks. Tom Merritt lists five remote access threats so you can secure your system.

๐Ÿ“– Read

via "Security on TechRepublic".
๐Ÿ” Security policies explain step-by-step solutions for strengthening IT defenses ๐Ÿ”

These TechRepublic Premium resources offer a comprehensive solution from responding to a data breach to explaining company-wide security responsibilities.

๐Ÿ“– Read

via "Security on TechRepublic".
๐Ÿ” The dark web: Where coronavirus fraud, profiteering, malware, and scams are discussed ๐Ÿ”

COVID-19 is fueling new dark web conversations about cybercriminal activity, says cyber intelligence company Sixgill.

๐Ÿ“– Read

via "Security on TechRepublic".
โŒ Zoom Kills iOS Appโ€™s Data-Sharing Facebook Feature โŒ

Zoom removed its Facebook SDK for iOS feature after a report found the app sending Facebook "unnecessary" user data.

๐Ÿ“– Read

via "Threatpost".
๐Ÿ•ด HackerOne Drops Mobile Voting App Vendor Voatz ๐Ÿ•ด

Bug bounty platform provider cited "Voatz's pattern of interactions with the research community" in its decision to halt the app vendor's vuln disclosure program on HackerOne.

๐Ÿ“– Read

via "Dark Reading: ".
๐Ÿ” Groups Seek to Bump CCPA Enforcement Date Amid Coronavirus Confusion ๐Ÿ”

As with many things currently, details of the California Consumer Privacy Act are unclear. That, plus confusion around COVID-19, has many interest groups hoping enforcement around the law is postponed.

๐Ÿ“– Read

via "Subscriber Blog RSS Feed ".
ATENTIONโ€ผ New - CVE-2019-17561

The "Apache NetBeans" autoupdate system does not fully validate code signatures. An attacker could modify the downloaded nbm and include additional code. "Apache NetBeans" versions up to and including 11.2 are affected by this vulnerability.

๐Ÿ“– Read

via "National Vulnerability Database".
ATENTIONโ€ผ New - CVE-2019-17560

The "Apache NetBeans" autoupdate system does not validate SSL certificates and hostnames for https based downloads. This allows an attacker to intercept downloads of autoupdates and modify the download, potentially injecting malicious code. รขโ‚ฌœApache NetBeans" versions up to and including 11.2 are affected by this vulnerability.

๐Ÿ“– Read

via "National Vulnerability Database".
โŒ Nation-State Attacks Drop in Latest Google Analysis โŒ

Phishing and zero-days continue to be a core part of the APT arsenal.

๐Ÿ“– Read

via "Threatpost".
โš  No, Houseparty hasnโ€™t hacked your phone and stolen your bank details โš 

There's one thing missing in all the claims that deleting the Houseparty app will "unhack" you - evidence"

๐Ÿ“– Read

via "Naked Security".
๐Ÿ” COVID-19: Security risks are increasing as more people work from home ๐Ÿ”

A security expert offers tips on how to keep employees safe in this work-from-home environment during the coronavirus pandemic.

๐Ÿ“– Read

via "Security on TechRepublic".
๐Ÿ” COVID-19: Security risks are increasing as more people work from home ๐Ÿ”

A security expert offers tips on how to keep employees safe in this work-from-home environment during the coronavirus pandemic.

๐Ÿ“– Read

via "Security on TechRepublic".
๐Ÿ•ด Microsoft Edge Will Tell You If Credentials Are Compromised ๐Ÿ•ด

Password Monitor, InPrivate mode, and ad-tracking prevention are three new additions to Microsoft Edge.

๐Ÿ“– Read

via "Dark Reading: ".
๐Ÿ•ด Researchers Spot Sharp Increase in Zoom-Themed Domain Registrations ๐Ÿ•ด

Attackers are attempting to take advantage of the surge in teleworking prompted by COVID-19, Check Point says.

๐Ÿ“– Read

via "Dark Reading: ".
๐Ÿ•ด Untangling Third-Party Risk (and Fourth, and Fifth...) ๐Ÿ•ด

Third parties bring critical products and services to your organization. They also bring risk that must be understood and managed.

๐Ÿ“– Read

via "Dark Reading: ".
ATENTIONโ€ผ New - CVE-2019-20634

An issue was discovered in Proofpoint Email Protection through 2019-09-08. By collecting scores from Proofpoint email headers, it is possible to build a copy-cat Machine Learning Classification model and extract insights from this model. The insights gathered allow an attacker to craft emails that receive preferable scores, with a goal of delivering malicious emails.

๐Ÿ“– Read

via "National Vulnerability Database".