🛡 Cybersecurity & Privacy 🛡 - News
25.8K subscribers
89.2K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
Doki Backdoor Infiltrates Docker Servers in the Cloud

The malware is a new payload that uses Dogecoin wallets for its C2, and spreads via the Ngrok botnet.

📖 Read

via "Threatpost".
🕴 Citizens Are Increasingly Worried About How Companies Use Their Data 🕴

With data privacy important to almost every American, more than two-thirds of those surveyed say they don't trust companies to ethically sell their data.

📖 Read

via "Dark Reading: ".
🔏 FBI Warns of Hackers Exploiting Built-In Network Protocols 🔏

The FBI warned organizations last week that attackers are increasingly using built-in network protocols to launch destructive distributed denial of service attacks.

📖 Read

via "Subscriber Blog RSS Feed ".
🕴 Google Adds Security Updates to Chrome Autofill 🕴

Chrome users can retrieve payment card numbers via biometric authentication and use a new "touch-to-fill: feature to log in to accounts.

📖 Read

via "Dark Reading: ".
🕴 5 Tips for Optimizing Your Company's Cyber-Crisis Preparedness 🕴

Cyber-incident response often addresses short-term needs, but we need to broaden the view of crisis management to be more forward-thinking.

📖 Read

via "Dark Reading: ".
🕴 Poll: Endpoint Extravaganza 🕴

What shape do you expect remote endpoints to be in when they start winging their way back to the office?

📖 Read

via "Dark Reading: ".
🔐 How to add fingerprint authentication to your Windows 10 computer 🔐

You can easily add a fingerprint reader to your computer if one isn't already built in.

📖 Read

via "Security on TechRepublic".
Zoom Flaw Could Have Allowed Hackers To Crack Meeting Passcodes

Zoom has fixed the issue, which stemmed from a lack of checks against incorrect passcode attempts.

📖 Read

via "Threatpost".
🕴 Mimecast Buys MessageControl 🕴

The email security provider brings into its fold social engineering and human identity capabilities.

📖 Read

via "Dark Reading: ".
🕴 Dark Web Travel Fraudsters Left Hurting From Lockdowns 🕴

Shadow travel businesses that depend on loyalty program fraud have been impacted just like the legitimate travel orgs they prey on.

📖 Read

via "Dark Reading: ".
🕴 Browsers to Enforce Shorter Certificate Life Spans: What Businesses Should Know 🕴

Apple, Google, and Mozilla will shorten the life span for TLS certificates in a move poised to aid security but cause operational troubles.

📖 Read

via "Dark Reading: ".
Black Hat USA 2020 Preview: Election Security, COVID Disinformation and More

Threatpost editors break down the top themes, speakers and sessions to look out for this year at Black Hat 2020 - from election security to remote work and the pandemic.

📖 Read

via "Threatpost".
🕴 'Hidden Property Abusing' Allows Attacks on Node.js Applications 🕴

A team of researchers from Georgia Tech find a new attack technique that targets properties in Node.js and plan to publicly release a tool that has already identified 13 new vulnerabilities.

📖 Read

via "Dark Reading: ".
Twitter: Epic Account Hack Caused by Mobile Spearphishing

Hackers "mislead certain employees" to gain access to internal tools to take over high-profile accounts and push out a Bitcoin scam.

📖 Read

via "Threatpost".
🕴 3 Ways Social Distancing Can Strengthen your Network 🕴

Security teams can learn a lot from the current pandemic to make modern hybrid business networks stronger and more resilient. Here's how.

📖 Read

via "Dark Reading: ".
ATENTION New - CVE-2020-10731

A flaw was found in the nova_libvirt container provided by the Red Hat OpenStack Platform 16, where it does not have SELinux enabled. This flaw causes sVirt, an important isolation mechanism, to be disabled for all running virtual machines.

📖 Read

via "National Vulnerability Database".
🔐 Breach of high-profile Twitter accounts caused by phone spear phishing attack 🔐

Twitter confirmed its employees were tricked into giving hackers their credentials, which gave them access to the accounts of Bill Gates, Jeff Bezos, Joe Biden, and others.

📖 Read

via "Security on TechRepublic".
Anti-NATO Disinformation Campaign Leveraged CMS Compromises

Researchers uncovered a disinformation campaign aiming to discredit NATO via fake news content on compromised news websites.

📖 Read

via "Threatpost".
CWT Travel Agency Faces $4.5M Ransom in Cyberattack, Report

The corporate-travel leader has confirmed an attack that knocked systems offline.

📖 Read

via "Threatpost".
🕴 Twitter: Employees Compromised in Phone Spear-Phishing Attack 🕴

The attack earlier this month started with a spear-phishing attack targeting Twitter employees, the company says in a new update.

📖 Read

via "Dark Reading: ".