πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
❌ Google Yanks 106 β€˜Malicious’ Chrome Extensions ❌

Trojan Chrome browser extensions spied on users and maintained a foothold on the networks of financial services, oil and gas, media and entertainment, healthcare and pharmaceuticals and government organizations.

πŸ“– Read

via "Threatpost".
πŸ•΄ Cisco Patches Flaw in Webex Videoconferencing App πŸ•΄

Vulnerability would have allowed an attacker to gain access to sensitive information on a system, Trustwave's SpiderLab says.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Healthcare CISOs Share COVID-19 Response Stories πŸ•΄

Cybersecurity leaders discussed the threats and challenges that arose during the pandemic, and how they responded, during a virtual roundtable.

πŸ“– Read

via "Dark Reading: ".
⚠ Ripple20 bugs set off wave of security problems in millions of devices ⚠

Security researchers have discovered a handful of game-changing vulnerabilities that spell trouble for dozens of connected device vendors and their customers.

πŸ“– Read

via "Naked Security".
πŸ” Friday Five: 6/19 Edition πŸ”

Possible beer shortage caused by ransomware, dating apps expose 845 GB of sensitive data, and Zoom reverses controversial security decision - catch up on the week's news with the Friday Five.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
⚠ FBI uses T-shirt, tattoo and Vimeo clips to track down alleged arsonist ⚠

Amazing what online search, social media profiles, a DMV database and cameras everywhere can turn up about us.

πŸ“– Read

via "Naked Security".
❌ Netgear Zero-Day Allows Full Takeover of Dozens of Router Models ❌

An unpatched vulnerability in the web server of device firmware gives attackers root privileges, researchers said.

πŸ“– Read

via "Threatpost".
⚠ IBM Maximo Asset Management servers patched against attacks ⚠

As the name suggests, IBM Maximo is typically used by really big companies to track really huge numbers of assets...

πŸ“– Read

via "Naked Security".
πŸ•΄ 'New Normal' Caption Contest Winners πŸ•΄

Competitors submitted lots of clever virus puns, and the prizes go to ...

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ How to Secure Machine Learning πŸ•΄

Part two of a series on avoiding potential security risks with ML.

πŸ“– Read

via "Dark Reading: ".
πŸ” How to use the Whonix advanced security and privacy distribution πŸ”

Whonix is a Linux desktop dedicated to absolute security and privacy. Find out how to use this unique take on the desktop operating system.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ What Will Cybersecurity's 'New Normal' Look Like? πŸ•΄

The coronavirus pandemic has forced changes for much of the business world, cybersecurity included. What can we expect going forward?

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2019-20847

An issue was discovered in Mattermost Server before 5.18.0. An attacker can send a user_typing WebSocket event to any channel.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2019-20846

An issue was discovered in Mattermost Server before 5.18.0. It has weak permissions for server-local file storage.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2019-20845

An issue was discovered in Mattermost Server before 5.18.0. It allows attackers to cause a denial of service (memory consumption) via a large Slack import.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2019-20844

An issue was discovered in Mattermost Server before 5.18.0, 5.17.2, 5.16.4, 5.15.4, and 5.9.7. An attacker can spoof a direct-message channel by changing the type of a channel.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2019-20843

An issue was discovered in Mattermost Server before 5.18.0, 5.17.2, 5.16.4, 5.15.4, and 5.9.7. There are weak permissions for configuration files.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2019-20842

An issue was discovered in Mattermost Server before 5.18.0, 5.17.2, 5.16.4, 5.15.4, and 5.9.7. There is SQL injection by admins via SearchAllChannels.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2019-20841

An issue was discovered in Mattermost Server before 5.18.0, 5.17.2, 5.16.4, 5.15.4, and 5.9.7. CSRF can sometimes occur via a crafted web site for account takeover attacks.

πŸ“– Read

via "National Vulnerability Database".
❌ News Wrap: Malicious Chrome Extensions Removed, CIA β€˜Woefully Lax’ Security Policies Bashed ❌

Insider threats, the CIA's bad security policies, and malicious Chrome extensions were the topics of discussion during this week's news wrap podcast.

πŸ“– Read

via "Threatpost".
πŸ” Many people using email to share files despite lack of security πŸ”

Those polled by Nordlocker also use cloud services, messaging apps, and external drives to share files.

πŸ“– Read

via "Security on TechRepublic".