πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.9K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ” Kaspersky: 73% of workers have received no cybersecurity guidance πŸ”

Millions of employees working remotely have gotten no information about how to keep their devices and home networks safe.

πŸ“– Read

via "Security on TechRepublic".
ATENTIONβ€Ό New - CVE-2018-1285

Apache log4net before 2.0.8 does not disable XML external entities when parsing log4net configuration files. This could allow for XXE-based attacks in applications that accept arbitrary configuration files from users.

πŸ“– Read

via "National Vulnerability Database".
πŸ” FTC To Review Healthcare Data Breach Notification Rule πŸ”

The FTC is seeking comment on whether or not it should make changes to its Health Breach Notification Rule, a rule that compels orgs to disclose when health records are breached.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
πŸ•΄ Researchers Analyze Oracle WebLogic Flaw Under Attack πŸ•΄

Trend Micro researchers explain how attackers bypassed the patch for a deserialization vulnerability in the Oracle WebLogic Server.

πŸ“– Read

via "Dark Reading: ".
πŸ” At UPS, big data is redefining the supply chain πŸ”

Billions of data points are gathered throughout the UPS network every week. Find out how the information collected is revolutionizing the logistics giant.

πŸ“– Read

via "Security on TechRepublic".
❌ Unpatched Bugs in Oracle iPlanet Open Door to Info-Disclosure, Injection ❌

CVE-2020-9315 and CVE-2020-9314 in iPlanet version 7 will not receive patches.

πŸ“– Read

via "Threatpost".
❌ Astaroth’s New Evasion Tactics Make It β€˜Painful to Analyze’ ❌

The infostealer has gone above and beyond in its new anti-analysis and obfuscation tactics.

πŸ“– Read

via "Threatpost".
πŸ•΄ Thunderbolt Vulnerabilities Could Threaten Millions of PCs πŸ•΄

Attackers with physical access to targeted machines could exploit these flaws to access and copy data within minutes, researchers say.

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2017-14200

** REJECT ** Unused CVE for 2017.

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ 6 Free Cybersecurity Training and Awareness Courses πŸ•΄

Most are designed to help organizations address teleworking risks related to COVID-19 scams.

πŸ“– Read

via "Dark Reading: ".
⚠ Maze ransomware one year on – a SophosLabs report ⚠

The latest SophosLabs report tells the story of how the infamous "Maze" ransomware has evolved over the past 12 months...

πŸ“– Read

via "Naked Security".
❌ Anubis Malware Upgrade Logs When Victims Look at Their Screens ❌

Threat actors are cooking up new features for the sophisticated banking trojan that targets Google Android apps and devices.

πŸ“– Read

via "Threatpost".
⚠ Dating app user logins found on hacking forum ⚠

3.5 million user logins for the MobiFriends dating app are being offered for free on a popular dark web hackers forum.

πŸ“– Read

via "Naked Security".
πŸ•΄ Data Breaches Declined in Q1 2020 Over Q1 2019 -- Or Did They? πŸ•΄

Numbers are down, but that may only be because organizations have been too busy fighting COVID-19-related cyberthreats to notice compromises, Risk Based Security says.

πŸ“– Read

via "Dark Reading: ".
❌ Chatbooks Confirms Breach After β€˜Shiny Hunters’ Sell Data ❌

Photo print service Chatbooks has disclosed a data breach after customers' emails, passwords and more were listed for sale on underground forums.

πŸ“– Read

via "Threatpost".
πŸ•΄ Coronavirus, Data Privacy & the New Online Social Contract πŸ•΄

How governments can protect personal privacy in contact tracing while saving peoples' lives

πŸ“– Read

via "Dark Reading: ".
⚠ Huge toll of ransomware attacks revealed in Sophos report ⚠

To understand the scope of the ransomware threat, Sophos commissioned a study into the state of ransomware 2020.

πŸ“– Read

via "Naked Security".
⚠ Thunderspy – why turning your computer off is a cool idea! ⚠

Thunderbolt ports can provide direct access to the memory in your laptop... just how hard is it for crooks to do so when you aren't looking?

πŸ“– Read

via "Naked Security".
πŸ” How an MIT spin-off is using contact tracing to fight COVID-19, and so can you πŸ”

Previously, manual contact tracing was used during pandemics. Now, the MIT Media Lab-hosted Safe Paths Project app can help track the virus and inform people if they've been exposed.

πŸ“– Read

via "Security on TechRepublic".
πŸ” BlackBerry Bootcamp boosts university applied computing with cybersecurity program πŸ”

Canadian-based BlackBerry partnered with the University of Windsor to create a cybersecurity "camp" for students to matriculate online during the COVID-19 crisis.

πŸ“– Read

via "Security on TechRepublic".
❌ Adobe Kills 16 Critical Flaws in Acrobat and Reader, Digital Negative SDK ❌

Adobe patched 36 flaws, including critical vulnerabilities in Acrobat and Reader and its DNG Software Development Kit.

πŸ“– Read

via "Threatpost".