πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ” Friday Five: 6/12 Edition πŸ”

A new malware strain is targeting Linux and Windows systems, mobile banking apps potentially targeted by hackers, and the city of Knoxville suffers a ransomware attack - catch up on the week's news with the Friday Five.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
πŸ•΄ Knoxville Pulls IT Systems Offline Following Ransomware Attack πŸ•΄

Knoxville's government took its network offline and turned off infected servers and workstations after a ransomware attack this week.

πŸ“– Read

via "Dark Reading: ".
πŸ” Dell report details rise in cyberattacks and disruptive events πŸ”

A new report focuses on a surge in cyberattacks and other disruptions during the coronavirus pandemic and the costs of these events.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Honeypot reveals tactics used by cybercriminals to deploy ransomware πŸ”

A honeypot created by Cybereason to lure cybercriminals and analyze their methods showed that ransomware attacks infiltrate their victims in multiple stages.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Report: Most companies unaware of third-party IOT security measures πŸ”

Only 37% of "high performer" organizations monitor the risk of IoT devices used by third parties, and current IoT risk-management programs can't keep pace, study said.

πŸ“– Read

via "Security on TechRepublic".
❌ Knoxville Ransomware Attack Leads to IT Network Shutdown ❌

The ransomware attack hit the Tennessee city of Knoxville this week, causing disruptions in various services.

πŸ“– Read

via "Threatpost".
πŸ•΄ 15 Individuals Plead Guilty to Multimillion-Dollar Online Auction Fraud Scheme πŸ•΄

Members of Romanian gang used fraudulent ads for nonexistent products to extract money from US Internet users, DoJ says.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Cryptominers Found in Azure Kubernetes Containers πŸ•΄

Images from a public repository contained cryptominers that Microsoft researchers found in Kubeflow instances running on Azure.

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2019-15123

The Branding Module in Viki Vera 4.9.1.26180 allows an authenticated user to change the logo on the website. An attacker could use this to upload a malicious .aspx file and gain Remote Code Execution on the site.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2019-16252

Missing SSL Certificate Validation in the Nutfind.com application through 3.9.12 for Android allows a man-in-the-middle attacker to sniff and manipulate all API requests, including login credentials and location data.

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ Expert Insight - test πŸ•΄

Creating a culture of supporting and advancing women is no small feat, but it's worth the challenge. Start with yourself. Here's how.

πŸ“– Read

via "Dark Reading: ".
⚠ Monday review – the hot 13 stories of the week ⚠

Get yourself up to date with everything we've written in the last seven days - it's weekly roundup time.

πŸ“– Read

via "Naked Security".
❌ Protecting Unmanaged & IoT Devices: Why Traditional Security Tools Fail ❌

The need to make rapid business decisions and to deliver solutions that meet the needs of customers, deliver continuous uninterrupted service, and rapidly evolve to their highest priorities has resulted in the need to integrate IT and OT through IoT.

πŸ“– Read

via "Threatpost".
⚠ Microsoft Azure users leave front door open for cryptomining crooks ⚠

Microsoft has discovered a campaign that exploits Kubernetes to install cryptomining software in its Azure cloud.

πŸ“– Read

via "Naked Security".
πŸ•΄ The Bright Side of the Dark Web πŸ•΄

As the hitmen and fraudsters retreat, the Dark Web could become freedom's most important ally.

πŸ“– Read

via "Dark Reading: ".
πŸ” Exposing the dark web coronavirus scammers πŸ”

Kurtis Minder, co-founder and CEO of GroupSense, explains why the coronavirus has been big business for bad actors.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Exposing the dark web coronavirus scammers πŸ”

Kurtis Minder, co-founder and CEO of GroupSense, explains why the coronavirus has been big business for bad actors.

πŸ“– Read

via "Security on TechRepublic".
❌ β€˜Lamphone’ Hack Uses Lightbulb Vibrations to Eavesdrop on Homes ❌

A new hack allowed researchers to discern sound -- including "Let it Be" by the Beatles, and audio from a Donald Trump speech -- from lightbulb vibrations.

πŸ“– Read

via "Threatpost".
❌ Claire’s Customers Targeted with Magecart Payment-Card Skimmer ❌

The Magecart group targeted the tween accessories specialist starting the day after it shuttered its retail locations due to coronavirus.

πŸ“– Read

via "Threatpost".
⚠ Congress wants to know who is using spyware against the US ⚠

A 2021 intelligence funding draft bill mandates a report on surveillance vendors and which countries or other actors are using spyware.

πŸ“– Read

via "Naked Security".
ATENTIONβ€Ό New - CVE-2019-19112

The wpForo plugin 1.6.5 for WordPress allows XSS involving the wpf-dw-td-value class of dashboard.php.

πŸ“– Read

via "National Vulnerability Database".