🛡 Cybersecurity & Privacy 🛡 - News
25.8K subscribers
89.2K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
Salt Bugs Allow Full RCE as Root on Cloud Servers

Researchers say the bugs are easy to exploit and will likely be weaponized within a day.

📖 Read

via "Threatpost".
🔐 How to check for weak passwords on your Linux systems with John the Ripper 🔐

Are you certain your users are working with strong passwords on your Linux servers? Let John the Ripper show you who is and who isn't.

📖 Read

via "Security on TechRepublic".
Microsoft Sway Abused in Office 365 Phishing Attack

The "PerSwaysion" attackers have leveraged a plethora of Microsoft services to compromise at least 150 executives in a highly targeted phishing campaign.

📖 Read

via "Threatpost".
🕴 Researchers Find Baby Banking Trojan, Watch It Grow 🕴

EventBot is an Android information stealer on its way to becoming a very capable piece of malware.

📖 Read

via "Dark Reading: ".
🕴 Microsoft's Records Management Tool Aims to Simplify Data Governance 🕴

Records Management is intended to help businesses manage security and data governance as more struggle to handle increased amounts of data and regulatory requirements.

📖 Read

via "Dark Reading: ".
COVID-19 prompts DHS warning to review Office 365 security

The DHS is urging users to secure Office 365 accounts after reporting security weaknesses in Microsoft's online productivity service.

📖 Read

via "Naked Security".
Google fights spammy extensions with new Chrome Web Store policy

The policies are specifically meant to fight spam, but they outlaw tactics taken by malicious extensions as well, including fake reviews.

📖 Read

via "Naked Security".
TrickBot Attack Exploits COVID-19 Fears with DocuSign-Themed Ploy

Threat actors are spreading the tricky trojan through fake messages in another opportunistic COVID-19-related campaign, said IBM X-Force.

📖 Read

via "Threatpost".
🕴 Industrial Networks' Newest Threat: Remote Users 🕴

We know remote working isn't going away anytime soon, so it's crucial we be extra vigilant about security for industrial networks and critical infrastructure.

📖 Read

via "Dark Reading: ".
🔏 Friday Five: 5/1 Edition 🔏

Australia's contact tracing app sparks privacy concerns, Shade ransomware ceases operations, and Google Play deals with malicious apps. Catch up on the week's news with the Friday Five!

📖 Read

via "Subscriber Blog RSS Feed ".
🕴 Apple Makes It Easier to Unlock iPhone While Wearing a Mask 🕴

The beta release of iOS 13.5 brings an updated FaceID so that users wearing masks can bypass facial recognition and unlock their phone with a code.

📖 Read

via "Dark Reading: ".
Microsoft Teams Impersonation Attacks Flood Inboxes

Two separate attacks have targeted as many as 50,000 different Teams users, with the goal of phishing Office 365 logins.

📖 Read

via "Threatpost".
News Wrap: Microsoft Sway Phish, Malicious GIF and Spyware Attacks

Threatpost editors discuss a phishing attack abusing Microsoft Sway, a Microsoft Teams flaw and an Android spyware campaign unearthed this week.

📖 Read

via "Threatpost".
🕴 Best Practices for Managing a Remote SOC 🕴

Experts share what it takes to get your security analysts effectively countering threats from their home offices.

📖 Read

via "Dark Reading: ".
🕴 Name That Toon: The Lights Are On ... 🕴

Feeling creative? Submit your caption in the comments, and our panel of experts will reward the winner with a $25 Amazon gift card.

📖 Read

via "Dark Reading: ".
🔐 Fake FedEx, DHL, and UPS delivery issues used in COVID-19 phishing scams 🔐

Cybercriminals are leveraging overwhelmed delivery services to further phishing schemes.

📖 Read

via "Security on TechRepublic".
🔐 Phishing attacks spoof Microsoft Teams to steal user credentials 🔐

Attackers are exploiting the surge in the use of Microsoft Teams in an attempt to trap unsuspecting users, says Abnormal Security.

📖 Read

via "Security on TechRepublic".
🕴 DHS CISA Launches Site for Teleworking Security 🕴

The new website is intended to be a one-stop source for information on securing teleworkers and their employers.

📖 Read

via "Dark Reading: ".
🔐 Microsoft catches cybercriminals adding malware to "John Wick 3," "Contagion" torrents 🔐

In a Twitter thread, Microsoft warned people in Spain and South America to watch what they torrent.

📖 Read

via "Security on TechRepublic".
🕴 Fake Microsoft Teams Emails Phish for Credentials 🕴

Employees belonging to organizations in industries such as energy, retail, and hospitality have been recipients, Abnormal Security says.

📖 Read

via "Dark Reading: ".
Upgraded Cerberus Spyware Spreads Rapidly via MDM

No longer a simple Android banker, Cerberus is now a full-fledged RAT that can take complete control of devices and automatically spread via mobile device management servers.

📖 Read

via "Threatpost".