πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ” This common online behavior puts you and your data at great risk πŸ”

A LastPass report reveals 91% use the same passwords on multiple accounts, and 53% haven't changed passwords in 12 months, despite high-profile security breaches.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Bad password habits continue with 53% admitting to using the same password πŸ”

Ahead of World Password Day, a survey finds management is worse than junior staff at practicing good password hygiene, according to SecureAuth.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Top 5 ways to make video conferencing safer πŸ”

Password protection, user authentication, and keeping software patched are a few ways you can keep video conferencing secure. Tom Merritt suggests five things to do to ensure safer video meetings.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Designing Firmware Resilience for 3 Top Attack Vectors πŸ•΄

Firmware has become an increasingly prevalent target for hackers. Here's how to stop them.

πŸ“– Read

via "Dark Reading: ".
❌ Google Android RCE Bug Allows Attacker Full Device Access ❌

The vulnerability is one of 39 affecting various aspects of the mobile OS that the company fixed in a security update this week.

πŸ“– Read

via "Threatpost".
❌ New Kaiji Botnet Targets IoT, Linux Devices ❌

The botnet uses SSH brute-force attacks to infect devices and uses a custom implant written in the Go Language.

πŸ“– Read

via "Threatpost".
πŸ•΄ Post-Pandemic Presentation Plans πŸ•΄

Coming to a conference near you -- who knows when.

πŸ“– Read

via "Dark Reading: ".
❌ GoDaddy Hack Breaches Hosting Account Credentials ❌

The domain registrar giant said that the breach started in October 2019.

πŸ“– Read

via "Threatpost".
⚠ GoDaddy – β€œunauthorized individual” had access to login info ⚠

Web hosting behemoth GoDaddy just filed a data breach notification with the US state of California.

πŸ“– Read

via "Naked Security".
ATENTIONβ€Ό New - CVE-2017-18867

Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D6100 before 1.0.0.55, D7800 before V1.0.1.24, R7100LG before V1.0.0.32, WNDR4300v1 before 1.0.2.90, and WNDR4500v3 before 1.0.0.48.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2017-18866

Certain NETGEAR devices are affected by stored XSS. This affects R9000 before 1.0.2.40, R6100 before 1.0.1.1, 6R7500 before 1.0.0.110, R7500v2 before 1.0.3.20, R7800 before 1.0.2.36, WNDR4300v2 before 1.0.0.48, and WNR2000v5 before 1.0.0.58.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2017-18865

Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects R8300 before 1.0.2.104 and R8500 before 1.0.2.104.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2017-18864

Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects R6400 before 1.0.1.24, R6400v2 before 1.0.2.32, R6700 before 1.0.1.22, R6900 before 1.0.1.22, R7000 before 1.0.9.4, R7000P before 1.0.0.56, R6900P before 1.0.0.56, R7100LG before 1.0.0.32, R7300 before 1.0.0.54, R7900 before 1.0.1.18, R8300 before 1.0.2.104, and R8500 before 1.0.2.104.

πŸ“– Read

via "National Vulnerability Database".
πŸ” Top 5 ways to make video conferencing safer πŸ”

Password protection, user authentication, and keeping software patched are a few ways you can keep video conferencing secure. Tom Merritt suggests five things to do to ensure safer video meetings.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Malicious Use of AI Poses a Real Cybersecurity Threat πŸ•΄

We should prepare for a future in which artificially intelligent cyberattacks become more common.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Cloud Startup Orca Security Raises $20M Series A πŸ•΄

The Israeli cloud security startup has built a platform to help organizations gain greater visibility into multicloud deployments.

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2019-19515

Ayision Ays-WR01 v28K.RPT.20161224 devices allow stored XSS in wireless settings.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2019-19514

Ayision Ays-WR01 v28K.RPT.20161224 devices allow stored XSS in basic repeater settings via an SSID.

πŸ“– Read

via "National Vulnerability Database".
❌ VPN Concerns with Unplanned Remote Employees ❌

Maintaining visibility and availability when you suddenly have a large remote footprint takes planning.

πŸ“– Read

via "Threatpost".
❌ Spear-Phishing Attack Spoofs EE To Target Executives ❌

Researchers say spear-phishing emails purporting to be from telecom giant EE are being sent to top corporate execs.

πŸ“– Read

via "Threatpost".
πŸ•΄ Instacart Patches Security Bug That Would Have Let Attackers Spoof SMS Messages πŸ•΄

Attackers could have exploited the issue to lead online shoppers to malicious websites or to get them to download malware, Tenable says.

πŸ“– Read

via "Dark Reading: ".