πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
❌ Lazarus Group Brings APT Tactics to Ransomware ❌

A new ransomware, VHD, was seen being delivered by the nation-state group's multiplatform malware platform, MATA.

πŸ“– Read

via "Threatpost".
πŸ•΄ Lazarus Group Shifts Gears with Custom Ransomware πŸ•΄

The North Korea-linked APT group has developed its own ransomware strain to better conduct financial theft, researchers report.

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2020-10985

Gambio GX before 4.0.1.0 allows XSS in admin/coupon_admin.php.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2020-10984

Gambio GX before 4.0.1.0 allows admin/admin.php CSRF.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2020-10983

Gambio GX before 4.0.1.0 allows SQL Injection in admin/mobile.php.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2020-10982

Gambio GX before 4.0.1.0 allows SQL Injection in admin/gv_mail.php.

πŸ“– Read

via "National Vulnerability Database".
πŸ” IBM finds cyberattacks costing companies nearly $4 million per breach πŸ”

The study showed concrete financial benefits to having security systems and teams in place.

πŸ“– Read

via "Security on TechRepublic".
πŸ” The future of encryption: Getting ready for the quantum computer attack πŸ”

PQShield, a spin-out from the UK's Oxford University, is developing advanced cryptographic solutions for hardware, software and communications to protect businesses' data from the quantum threat.

πŸ“– Read

via "Security on TechRepublic".
❌ OkCupid Security Flaw Threatens Intimate Dater Details ❌

Attackers could exploit various flaws in OkCupid's mobile app and webpage to steal victims' sensitive data and even send messages out from their profiles.

πŸ“– Read

via "Threatpost".
❌ Facial-Recognition Flop: Face Masks Thwart Virus, Stump Security Systems ❌

Algorithms clocked error rates of between 5% to 50% when comparing photos of people wearing digitally created masks with unmasked faces.

πŸ“– Read

via "Threatpost".
πŸ” 87% of Americans view data privacy as a human right, but most still use risky security practices πŸ”

While 56% of Americans want more control over personal data, more than 40% said they reuse passwords, use public Wi-Fi, or save a credit card to an online store, KPMG found.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ The Future's Biggest Cybercrime Threat May Already Be Here πŸ•΄

Current attacks will continue to be refined, and what may seem a weakness now could turn out to be a disaster.

πŸ“– Read

via "Dark Reading: ".
πŸ” How to protect your website's database from hackers πŸ”

A recent investigation by NordPass and a white hat hacker discovered more than 9,000 unsecured databases online with more than 10 billion individual entries.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ How to Decipher InfoSec Job Titles' Mysteries πŸ•΄

Figuring out which cybersecurity job you want -- or are qualified for -- can be difficult when words have no consistent meaning in the industry.

πŸ“– Read

via "Dark Reading: ".
πŸ” How IT leaders were unprepared for the security challenges posed by COVID-19 πŸ”

The top three challenges cited in a Tanium survey were identifying new computing devices, overwhelmed IT capacity due to VPN requirements, and increased risks from video conferencing.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Most consumers do not trust big tech with their privacy πŸ”

Social media and online shopping sites top the list of services consumers feel do not adequately protect their personal information.

πŸ“– Read

via "Security on TechRepublic".
πŸ” It's not OK, Cupid: Security flaws could expose user data and more πŸ”

Researchers found a number of vulnerabilities that could give attackers access to a treasure trove of personally identifying information about members.

πŸ“– Read

via "Security on TechRepublic".
⚠ US tax service says, β€œ2FA is a must!” ⚠

We know it's an old drum, but we're not tired of beating it yet: 2FA is your friend.

πŸ“– Read

via "Naked Security".
❌ Critical Security Flaw in WordPress Plugin Allows RCE ❌

WordPress plugin Comments – wpDiscuz, which is installed on over 70,000 sites, has issued a patch.

πŸ“– Read

via "Threatpost".
❌ Critical Bugs in Utilities VPNs Could Cause Physical Damage ❌

Gear from Secomea, Moxa and HMS Networks are affected by remote code-execution flaws, researchers warn.

πŸ“– Read

via "Threatpost".
πŸ•΄ Technical Challenges of IoT Cybersecurity in a Post-COVID-19 World πŸ•΄

Effective management of vulnerabilities can be done only when information about supply chain dependencies is accurate and recent.

πŸ“– Read

via "Dark Reading: ".