πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
ATENTIONβ€Ό New - CVE-2019-10580

When kernel thread unregistered listener, Use after free issue happened as the listener client`s private data has been already freed in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MDM9607, MSM8909W, Nicobar, QCM2150, QCS405, QCS605, Saipan, SC8180X, SDM429W, SDX55, SM8150, SM8250, SXR2130

πŸ“– Read

via "National Vulnerability Database".
❌ Critical, High-Severity Cisco Flaws Fixed in Data Center Network Manager ❌

The flaw could allow a remote, unauthenticated attacker to bypass authentication on vulnerable devices.

πŸ“– Read

via "Threatpost".
πŸ” How to find and fix vulnerable default credentials on your network πŸ”

Network appliances and devices that still have their default credentials present a risk to your organization, says SecurityHQ.

πŸ“– Read

via "Security on TechRepublic".
⚠ Servers at risk from β€œBootHole” bug – what you need to know ⚠

We explain the "BootHole" vulnerablity - as usual, in plain English and without hype. Find if you're affected and what to do.

πŸ“– Read

via "Naked Security".
πŸ•΄ Black Hat Virtually: An Important Time to Come Together as a Community πŸ•΄

The significance of this year's event hasn't changed a whit. It's an opportunity to share what we've learned, and plan how to protect each other and the public for the remainder of the pandemic and beyond.

πŸ“– Read

via "Dark Reading: ".
πŸ” How to set up passwordless SSH authentication for Ubuntu Server πŸ”

Learn how to enable passwordless SSH authentication on both Linux and macOS.

πŸ“– Read

via "Security on TechRepublic".
❌ Doki Backdoor Infiltrates Docker Servers in the Cloud ❌

The malware is a new payload that uses Dogecoin wallets for its C2, and spreads via the Ngrok botnet.

πŸ“– Read

via "Threatpost".
πŸ•΄ Citizens Are Increasingly Worried About How Companies Use Their Data πŸ•΄

With data privacy important to almost every American, more than two-thirds of those surveyed say they don't trust companies to ethically sell their data.

πŸ“– Read

via "Dark Reading: ".
πŸ” FBI Warns of Hackers Exploiting Built-In Network Protocols πŸ”

The FBI warned organizations last week that attackers are increasingly using built-in network protocols to launch destructive distributed denial of service attacks.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
πŸ•΄ Google Adds Security Updates to Chrome Autofill πŸ•΄

Chrome users can retrieve payment card numbers via biometric authentication and use a new "touch-to-fill: feature to log in to accounts.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ 5 Tips for Optimizing Your Company's Cyber-Crisis Preparedness πŸ•΄

Cyber-incident response often addresses short-term needs, but we need to broaden the view of crisis management to be more forward-thinking.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Poll: Endpoint Extravaganza πŸ•΄

What shape do you expect remote endpoints to be in when they start winging their way back to the office?

πŸ“– Read

via "Dark Reading: ".
πŸ” How to add fingerprint authentication to your Windows 10 computer πŸ”

You can easily add a fingerprint reader to your computer if one isn't already built in.

πŸ“– Read

via "Security on TechRepublic".
❌ Zoom Flaw Could Have Allowed Hackers To Crack Meeting Passcodes ❌

Zoom has fixed the issue, which stemmed from a lack of checks against incorrect passcode attempts.

πŸ“– Read

via "Threatpost".
πŸ•΄ Mimecast Buys MessageControl πŸ•΄

The email security provider brings into its fold social engineering and human identity capabilities.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Dark Web Travel Fraudsters Left Hurting From Lockdowns πŸ•΄

Shadow travel businesses that depend on loyalty program fraud have been impacted just like the legitimate travel orgs they prey on.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Browsers to Enforce Shorter Certificate Life Spans: What Businesses Should Know πŸ•΄

Apple, Google, and Mozilla will shorten the life span for TLS certificates in a move poised to aid security but cause operational troubles.

πŸ“– Read

via "Dark Reading: ".
❌ Black Hat USA 2020 Preview: Election Security, COVID Disinformation and More ❌

Threatpost editors break down the top themes, speakers and sessions to look out for this year at Black Hat 2020 - from election security to remote work and the pandemic.

πŸ“– Read

via "Threatpost".
πŸ•΄ 'Hidden Property Abusing' Allows Attacks on Node.js Applications πŸ•΄

A team of researchers from Georgia Tech find a new attack technique that targets properties in Node.js and plan to publicly release a tool that has already identified 13 new vulnerabilities.

πŸ“– Read

via "Dark Reading: ".
❌ Twitter: Epic Account Hack Caused by Mobile Spearphishing ❌

Hackers "mislead certain employees" to gain access to internal tools to take over high-profile accounts and push out a Bitcoin scam.

πŸ“– Read

via "Threatpost".