πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
☒ Tech support scammers find a home on Microsoft TechNet pages ☒

Security researchers finds over 3,000 TechNet pages flooded with tech support scams pushing shady phone numbers for cryptocurrency exchanges and social media platforms.

πŸ“– Read

via "Latest topics for ZDNet in Security".
☒ Internet Architecture Board warns Australian encryption-busting laws could fragment the internet ☒

Industry groups, associations, and people that know what they are talking about, line up to warn of drawbacks from Canberra's proposed Assistance and Access Bill.

πŸ“– Read

via "Latest topics for ZDNet in Security".
☒ How the industry expects to secure information in a quantum world ☒

With all of the good a quantum computer promises, one of the side effects is that it will be able to break the mechanisms currently used to secure information. But the industry is onto it, and Australia's QuintessenceLabs is playing a key role.

πŸ“– Read

via "Latest topics for ZDNet in Security".
☒ Singapore payments vendor takes app global with UnionPay partnership ☒

Network for Electronic Transfers of Singapore (Nets) has inked an agreement with China's UnionPay to enable consumers to scan and pay for purchases at 7.5 million participating merchants worldwide.

πŸ“– Read

via "Latest topics for ZDNet in Security".
☒ British Airways breach caused by the same group that hit Ticketmaster ☒

Security researchers find clues connecting the Magecart group to the breach at British Airways.

πŸ“– Read

via "Latest topics for ZDNet in Security".
⚠ Microsoft extends security patch support for some Windows 7 users ⚠

Microsoft will provide security updates until 2023 to help business customers migrate to Windows 10 - if they pay.

πŸ“– Read

via "Naked Security".
⚠ Keybase browser extension weakness discovered ⚠

Respected researcher Wladimir Palant has recommended users β€œuninstall the Keybase browser extension ASAP” after discovering a gap in its end-to-end encryption.

πŸ“– Read

via "Naked Security".
☒ How to steal a Tesla Model S in seconds ☒

An attack technique has been revealed which allows threat actors to unlock a Tesla vehicle in no time at all.

πŸ“– Read

via "Latest topics for ZDNet in Security".
☒ ​Trend Micro says sorry after apps grabbed Mac browser history ☒

The company has now removed a browser history data collection feature from its macOS products.

πŸ“– Read

via "Latest topics for ZDNet in Security".
⚠ Yikes: 1 in 5 employees share their email passwords with coworkers ⚠

19% of employees of small and medium-sized businesses share their passwords with coworkers or assistants, according to a recent survey.

πŸ“– Read

via "Naked Security".
⚠ Fetish app put users’ identities at risk with plain-text passwords ⚠

Whiplr, a naughty, naughty little app, has now secured passwords with "one-way encryption" and is "adding more security measures".

πŸ“– Read

via "Naked Security".
☒ 'Father of Zeus' Kronos malware exploits Office bug to hijack your bank account ☒

The $7000 malware shows there is serious money to be made in the banking Trojan market.

πŸ“– Read

via "Latest topics for ZDNet in Security".
❌ Magecart Group Pinned in Recent British Airways Breach ❌

The Magecart Group has been blamed for the British Airways breach that compromised 380k payment cards.

πŸ“– Read

via "The first stop for security news | Threatpost ".
⚠ Airbnb launches investigation after man finds hidden camera in clock ⚠

Trust your gut: if staring at that common object in your rental gives you the heebie jeebies, it might be because it's staring back at you.

πŸ“– Read

via "Naked Security".
⚠ The rise of targeted ransomware ⚠

Ransomware hasn't gone away, but it is getting quieter and more targeted.

πŸ“– Read

via "Naked Security".
πŸ” These industries will soon be impacted by biometric security πŸ”

BioCatch's VP Frances Zelazny explains why companies are dropping passwords in favor of biometric security like fingerprint and iris scanners.

πŸ“– Read

via "Security on TechRepublic".
ATENTIONβ€Ό New - CVE-2016-7068

An issue has been found in PowerDNS before 3.4.11 and 4.0.2, and PowerDNS recursor before 3.7.4 and 4.0.4, allowing a remote, unauthenticated attacker to cause an abnormal CPU usage load on the PowerDNS server by sending crafted DNS queries, which might result in a partial denial of service if the system becomes overloaded. This issue is based on the fact that the PowerDNS server parses all records present in a query regardless of whether they are needed or even legitimate. A specially crafted query containing a large number of records can be used to take advantage of that behaviour.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2016-7047

A flaw was found in the CloudForms API before 5.6.3.0, 5.7.3.1 and 5.8.1.2. A user with permissions to use the MiqReportResults capability within the API could potentially view data from other tenants or groups to which they should not have access.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2016-0750

The hotrod java client in infinispan before 9.1.0.Final automatically deserializes bytearray message contents in certain events. A malicious user could exploit this flaw by injecting a specially-crafted serialized object to attain remote code execution or conduct other attacks.

πŸ“– Read

via "National Vulnerability Database".
πŸ” Why higher education is one of the worst industries at handling cyberattacks πŸ”

Some 73% of institutions took three or more days to apply patches for cyberthreats, according to a recent EfficientIP report.

πŸ“– Read

via "Security on TechRepublic".
☒ Online security 101: Tips for protecting your privacy from hackers and spies ☒

This simple advice will help to protect you against hackers and government surveillance.

πŸ“– Read

via "Latest topics for ZDNet in Security".