πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.9K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
❌ Mac Cryptocurrency Traders Targeted by Trojanized Apps ❌

Four trojanized cryptocurrency trading apps have been found spreading malware that drains cryptocurrency wallets and collects Mac users' browsing data.

πŸ“– Read

via "Threatpost".
⚠ 7 VPNs that leaked their logs – the logs that β€œdidn’t exist” ⚠

Just how private is your Virtual Private Network?

πŸ“– Read

via "Naked Security".
πŸ” Phishing attacks aim to steal sensitive data by prompting people to renew Microsoft subscription πŸ”

The initial scam emails claim that the recipient must renew their Microsoft Office 365 subscription, says Abnormal Security.

πŸ“– Read

via "Security on TechRepublic".
❌ Facebook’s NSO Group Lawsuit Over WhatsApp Spying Set to Proceed ❌

A federal judge in California ruled that the spyware vendor does not have sovereign immunity.

πŸ“– Read

via "Threatpost".
πŸ•΄ UK Data Privacy Legislation Cannot Be Bypassed to Limit Spread of COVID-19 πŸ•΄

The UK faces GDPR data privacy challenges regarding its COVID-19 "Test and Trace" program. Despite the importance of contact tracing, its intent to ignore privacy legislation is extremely worrying.

πŸ“– Read

via "Dark Reading: ".
πŸ›  nfstream 5.2.0 πŸ› 

nfstream is a Python package providing fast, flexible, and expressive data structures designed to make working with online or offline network data both easy and intuitive. It aims to be the fundamental high-level building block for doing practical, real world network data analysis in Python. Additionally, it has the broader goal of becoming a common network data processing framework for researchers providing data reproducibility across experiments.

πŸ“– Go!

via "Security Tool Files β‰ˆ Packet Storm".
πŸ›  Scapy Packet Manipulation Tool 2.4.4rc1 πŸ› 

Scapy is a powerful interactive packet manipulation tool, packet generator, network scanner, network discovery tool, and packet sniffer. It provides classes to interactively create packets or sets of packets, manipulate them, send them over the wire, sniff other packets from the wire, match answers and replies, and more. Interaction is provided by the Python interpreter, so Python programming structures can be used (such as variables, loops, and functions). Report modules are possible and easy to make. It is intended to do the same things as ttlscan, nmap, hping, queso, p0f, xprobe, arping, arp-sk, arpspoof, firewalk, irpas, tethereal, tcpdump, etc.

πŸ“– Go!

via "Security Tool Files β‰ˆ Packet Storm".
πŸ•΄ England 'Test and Trace' Program Violates GDPR Privacy Law πŸ•΄

The UK government confirms the program launched in May without a Data Protection Impact Assessment, as required under GDPR.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Number of Reported Breaches Decrease In First Half of 2020 πŸ•΄

With the pandemic as a backdrop, publicly reported US data breaches dropped as more employees and suppliers stayed home.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ SIGRed: What You Should Know About the Windows DNS Server Bug πŸ•΄

DNS experts share their thoughts on the wormable vulnerability and explain why it should be a high priority for businesses.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Internet Scan Shows Decline in Insecure Network Services πŸ•΄

While telnet, rsync, and SMB, exposure surprisingly have dropped, proper patching and encryption adoption remain weak worldwide.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Twitter Breach Highlights Privileged Account Security Issue πŸ•΄

Security incident that allowed attackers to hijack high-profile accounts suggests social media giant's controls for spotting insider abuse were not strong enough, security experts say.

πŸ“– Read

via "Dark Reading: ".
πŸ” Companies with poor privacy practices are 80% more apt to suffer data breach πŸ”

Poor privacy=data breach as reported by Osano was proven July 15 when Twitter was hacked and 130 accounts--including Joe Biden's and Kanye West's--were exposed.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Google Cloud adds 11 security features to G Suite πŸ”

The updates include BIMI in Gmail, better protection in Meet, phishing protections in Chat, and more.

πŸ“– Read

via "Security on TechRepublic".
❌ Diebold ATM Terminals Jackpotted Using Machine’s Own Software ❌

The company warned that cybercriminals are using a black box with proprietary code in attacks to illegally dispense cash across Europe.

πŸ“– Read

via "Threatpost".
πŸ” Phishing attacks hiding in Google Cloud to steal Microsoft account credentials πŸ”

By hosting phishing pages at a legitimate cloud service, cybercriminals try to avoid arousing suspicion, says Check Point Research.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Leading Through Uncertainty: Be Proactive in Your Dark Web Intelligence Strategy πŸ•΄

Having a strong Dark Web intelligence posture helps security teams understand emerging vulnerability trends.

πŸ“– Read

via "Dark Reading: ".
πŸ” 5 apps for cleaning and speeding up your PC πŸ”

Before you ditch your slow computer in favor of a new model, try using one of these apps to clean and speed it up.

πŸ“– Read

via "Security on TechRepublic".
❌ Critical Adobe Photoshop Flaws Patched in Emergency Update ❌

Adobe issued out-of-band patches for critical flaws tied to 12 CVEs in Photoshop and other applications.

πŸ“– Read

via "Threatpost".
πŸ•΄ G Suite Security Updates Bring New Features to Gmail, Meet & Chat πŸ•΄

New security features include support for a new standard in Gmail, phishing protection in Chat, and additional admin controls.

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2018-21036

Sails.js before v1.0.0-46 allows attackers to cause a denial of service with a single request because there is no error handler in sails-hook-sockets to handle an empty pathname in a WebSocket request.

πŸ“– Read

via "National Vulnerability Database".