πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
❌ Critical WordPress e-Learning Plugin Bugs Open Door to Cheating ❌

The flaws in LearnPress, LearnDash and LifterLMS could have allowed unauthenticated students to change their grades, cheat on tests and gain teacher privileges.

πŸ“– Read

via "Threatpost".
πŸ” Nintendo data breach reportedly caused by credential stuffing πŸ”

Attackers used an account checker tool to identify Nintendo accounts with compromised and vulnerable login credentials, says SpyCloud.

πŸ“– Read

via "Security on TechRepublic".
❌ Shade Threat Actors Call It Quits, Release 750K Encryption Keys ❌

The team behind the ransomware, first spotted in late 2014 and typically targeting Russian victims, apologized to victims in a post on GitHub.

πŸ“– Read

via "Threatpost".
πŸ” Brute force attacks against remote desktop apps skyrocket during pandemic lockdown πŸ”

A rise in remote workers has opened a window of opportunity for hackers, who are now trying to access enterprise networks by targeting Microsoft RDP accounts.

πŸ“– Read

via "Security on TechRepublic".
⚠ Coronavirus delays trial of alleged Russian hacker a third time ⚠

Justice has already been slow in this case, and the pandemic isn’t helping: His trial has been postponed for a third time.

πŸ“– Read

via "Naked Security".
⚠ Bumper Adobe update fixes flaws in Magento, Bridge and Illustrator ⚠

After a light Patch Tuesday earlier this month, Adobe has issued an unexpectedly large bundle of critical security fixes for flaws affecting its Magento, Bridge and Illustrator products. These might look casually out of band but in fact Adobe often staggers its patches throughout the month. Nevertheless, with a total of 35 CVEs to fix […]

πŸ“– Read

via "Naked Security".
πŸ” Coronavirus-themed malware intensifies across the world πŸ”

Such threats continued to spread in April and are likely to be the new norm, at least until the pandemic subsides, according to Bitdefender.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ The Rise of Deepfakes and What That Means for Identity Fraud πŸ•΄

Convincing deepfakes are a real concern, but there are ways of fighting back.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Election Security in the Age of Social Distancing πŸ•΄

Although the controversial option of voting by mobile app is one pressing consideration, cybersecurity experts agree that older issues need to be resolved before November 3.

πŸ“– Read

via "Dark Reading: ".
❌ New Android Malware Targets PayPal, CapitalOne App Users ❌

Researchers warn that the EventBot Android malware, which targets over 200 financial apps, could be the "next big mobile malware."

πŸ“– Read

via "Threatpost".
⚠ β€œZero-click” mobile phone attacks – and how to avoid them ⚠

What if a messaging app has to show you an unwanted message so you can decide whether you want it shown to you?

πŸ“– Read

via "Naked Security".
πŸ•΄ Researchers Find Vulnerabilities in Popular Remote Learning Plug-ins πŸ•΄

As more students move to online learning platforms, vulnerability researchers are revealing security flaws in some common software plug-ins.

πŸ“– Read

via "Dark Reading: ".
πŸ” What is a SaaS Company? πŸ”

Learn about what a Software as a Service, or SaaS, company is and why it may make sense for your organization in this week’s Data Protection 101, our series on the fundamentals of information security.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
πŸ” Zoom: A cheat sheet about the video conferencing solution πŸ”

Zoom is now a household name for work-from-home employees. Here is your guide to Zoom basics, including its security vulnerabilities and video conferencing alternatives such as Microsoft Teams.

πŸ“– Read

via "Security on TechRepublic".
πŸ” How to secure a Kubernetes cluster by preventing unwanted modules from loading πŸ”

The road to secure containers is long and winding. One stop you should take on that journey is unloading unnecessary kernel modules in your Linux containers.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ User-Friendly Cybersecurity: Is a Better UX the Key to a Better Defense? πŸ•΄

Frictionless security, improved interfaces, and more usable design may improve the efficacy of security tools and features (and make life easier for users and infosec pros alike). So why has there been so much resistance?

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Ed-Tech Company Chegg Suffers Third Breach Since 2018 πŸ•΄

The latest incident compromised names, Social Security numbers, and other data belonging to 700 current and former Chegg employees.

πŸ“– Read

via "Dark Reading: ".
❌ Building for Billions: Addressing Security Concerns for Platforms at Scale ❌

Lessons from Facebook and Google show how to safely scale your environment for security.

πŸ“– Read

via "Threatpost".
πŸ” Scammers exploiting stimulus payments with phishing attacks and malicious domains πŸ”

Since January, more than 4,000 domains related to coronavirus stimulus packages have been registered, many of them malicious or suspicious, according to Check Point Research.

πŸ“– Read

via "Security on TechRepublic".
πŸ” How Google Cloud users can combat coronavirus-themed phishing emails πŸ”

Google is striving to block Gmail messages and other content that exploit COVID-19, but there are steps users can take to fight such malware.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Things Keeping CISOs Up at Night During the COVID-19 Pandemic πŸ•΄

Insights from discussions with more than 20 CISOs, CEOs, CTOs, and security leaders.

πŸ“– Read

via "Dark Reading: ".