πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
ATENTIONβ€Ό New - CVE-2017-18760

Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects R8300 before 1.0.2.104 and R8500 before 1.0.2.104.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2017-18753

Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects: D6220, running firmware versions prior to 1.0.0.40 D8500, running firmware versions prior to 1.0.3.39 EX3700, running firmware versions prior to 1.0.0.70 EX3800, running firmware versions prior to 1.0.0.70 EX6000, running firmware versions prior to 1.0.0.30 EX6100, running firmware versions prior to 1.0.2.22 EX6120, running firmware versions prior to 1.0.0.40 EX6130, running firmware versions prior to 1.0.0.22 EX6150v1, running firmware versions prior to 1.0.0.42 EX6200, running firmware versions prior to 1.0.3.88 EX7000, running firmware versions prior to 1.0.0.66 R6300v2, running firmware versions prior to 1.0.4.18 R6400, running firmware versions prior to 1.0.1.24 R6400v2, running firmware versions prior to 1.0.2.32 R6700, running firmware versions prior to 1.0.1.22 R6700v3, running firmware versions prior to 1.0.2.32 R6900, running firmware versions prior to 1.0.1.22 R7000, running firmware versions prior to 1.0.9.6 R6900P, running firmware versions prior to 1.0.0.56 R7000P, running firmware versions prior to 1.0.0.56 R7100LG, running firmware versions prior to 1.0.0.42 R7300DST, running firmware versions prior to 1.0.0.54 R7900, running firmware versions prior to 1.0.1.26 R8300, running firmware versions prior to 1.0.2.106 R8500, running firmware versions prior to 1.0.2.106 WN2500RPv2, running firmware versions prior to 1.0.1.54 WNR3500Lv2, running firmware versions prior to 1.2.0.46

πŸ“– Read

via "National Vulnerability Database".
πŸ” Nearly 2,000 malicious COVID-19-themed domains created every day πŸ”

More than 86,600 new domains related to the pandemic are considered "risky" or "malicious," according to a new report.

πŸ“– Read

via "Security on TechRepublic".
❌ Hackers Exploit Critical Flaw in Ghost Platform with Cryptojacking Attack ❌

Hackers targeted Ghost on Sunday, in a cryptocurrency mining attack that caused widespread outages.

πŸ“– Read

via "Threatpost".
πŸ•΄ Attackers Exploit SaltStack Flaws to Compromise Open Source OS & Blogging Platform πŸ•΄

Intruders gained access to core systems at the Android-based LineageOS project and the Ghost platform.

πŸ“– Read

via "Dark Reading: ".
πŸ” COVID-19: How universities made the pivot to e-learning πŸ”

One Rhode Island university has transitioned nearly seamlessly into remote learning. Here's how they did it safely and effectively.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ How InfoSec Pros Can Help Healthcare During the Coronavirus Pandemic πŸ•΄

Security pros are banding together to ensure healthcare facilities can focus on saving lives instead of defending against cyber attacks. Here are a few places you can volunteer your services.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ SMB Security Catches Up to Large Companies, Data Shows πŸ•΄

Small and midsize businesses face issues similar to those of large organizations and have updated security practices to respond with threat hunting, patch management, and dedicated personnel.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Stay-at-Home Students Offered Lessons to Boost Cybersecurity πŸ•΄

Stuck at home with a primary- or secondary-school student? Organizations from professional training groups to national governments are teaming up to offer virtual cybersecurity training for teens -- in some cases, for free.

πŸ“– Read

via "Dark Reading: ".
❌ Airplane Hack Exposes Weaknesses of Alert and Avoidance Systems ❌

Researchers warn commercial airplane systems can be spoofed impacting flight safety of nearby aircraft.

πŸ“– Read

via "Threatpost".
⚠ Reveal the identities of alleged pirates, court tells ISP ⚠

It's not the first ISP to be held accountable for alleged piracy: Cox is looking at a $1b damage order.

πŸ“– Read

via "Naked Security".
⚠ Firefox’s Private Relay service tests anonymous email alias feature ⚠

Mozilla has announced that it is testing an experimental service called Firefox Private Relay that it thinks will offer an appealing solution to the issue of having to hand over your email address every time you want to set up any online account.

πŸ“– Read

via "Naked Security".
πŸ•΄ It Was 20 Years Ago Today: Remembering the ILoveYou Virus πŸ•΄

The virus infected some 50 million systems worldwide, often rendering them unusable, and cost more than $15 billion to repair.

πŸ“– Read

via "Dark Reading: ".
πŸ” This common online behavior puts you and your data at great risk πŸ”

A LastPass report reveals 91% use the same passwords on multiple accounts, and 53% haven't changed passwords in 12 months, despite high-profile security breaches.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Bad password habits continue with 53% admitting to using the same password πŸ”

Ahead of World Password Day, a survey finds management is worse than junior staff at practicing good password hygiene, according to SecureAuth.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Top 5 ways to make video conferencing safer πŸ”

Password protection, user authentication, and keeping software patched are a few ways you can keep video conferencing secure. Tom Merritt suggests five things to do to ensure safer video meetings.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Designing Firmware Resilience for 3 Top Attack Vectors πŸ•΄

Firmware has become an increasingly prevalent target for hackers. Here's how to stop them.

πŸ“– Read

via "Dark Reading: ".
❌ Google Android RCE Bug Allows Attacker Full Device Access ❌

The vulnerability is one of 39 affecting various aspects of the mobile OS that the company fixed in a security update this week.

πŸ“– Read

via "Threatpost".