πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ•΄ What to Tell Young People of Color About InfoSec Careers πŸ•΄

CEO and founder of Revolution Cyber Juliet Okafor and Baker Hughes Director of Global OT Security Programs Paul Brager talk about the unique lessons and hard truths they provide when mentoring young black cybersecurity professionals.

πŸ“– Read

via "Dark Reading: ".
❌ Twitter Fixes High-Severity Flaw Affecting Android Users ❌

A vulnerability in Twitter for Android could have allowed attackers to access private direct messages (DMs) and other data.

πŸ“– Read

via "Threatpost".
πŸ•΄ Developing Community for Woman Infosec Pros in India πŸ•΄

Vandana Verma tells us how women in India are finding support, education and love of cybersecurity through the growing InfosecGirls community.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Supporting Women in InfoSec πŸ•΄

Maxine Holt, research director from Omdia, explains why the time is right for women to step into more cybersecurity jobs now.

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2020-13404

The ATOS/Sips (aka Atos-Magento) community module 3.0.0 to 3.0.5 for Magento allows command injection.

πŸ“– Read

via "National Vulnerability Database".
❌ Black Hat 2020: In a Turnaround, Voting Machine Vendor Embraces Ethical Hackers ❌

Voting machine technology seller Election Systems & Software (ES&S) offered an olive branch to security researchers with new safe harbor terms and vulnerability disclosure policies at Black Hat USA 2020.

πŸ“– Read

via "Threatpost".
❌ Black Hat 2020: Linux Spyware Stack Ties Together 5 Chinese APTs ❌

The groups, all tied to the Winnti supply-chain specialist gang, were seen using the same Linux rootkit and backdoor combo.

πŸ“– Read

via "Threatpost".
πŸ•΄ Tales from the Trenches Show Security Issues Endemic to Healthcare πŸ•΄

The CISO for Indiana University Health says simple policies, good communication, and strong authentication go much further than vendor tools in solving security problems.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ What A Security Engineer & Software Engineer Learned By Swapping Roles πŸ•΄

A security engineer and infrastructure engineer with Salesforce share lessons learned from their professional role reversal, and advice for people on both teams.

πŸ“– Read

via "Dark Reading: ".
❌ U.S. Offers Reward of $10M for Info Leading to Discovery of Election Meddling ❌

Government hopes to avoid interference in the upcoming November presidential vote with a hefty reward.

πŸ“– Read

via "Threatpost".
❌ Black Hat 2020: Using Botnets to Manipulate Energy Markets for Big Profits ❌

Black Hat 2020 session discusses how high-wattage connected devices like dishwashers and heating systems can be recruited into botnets and used to manipulate energy markets.

πŸ“– Read

via "Threatpost".
❌ Black Hat 2020: β€˜Zero-Click’ MacOS Exploit Chain Uses Microsoft Office Macros ❌

At Black Hat 2020, Patrick Wardle disclosed an exploit chain that bypasses Microsoft's malicious macros protections to infect MacOS users.

πŸ“– Read

via "Threatpost".
⚠ Porn blast disrupts bail hearing of alleged Twitter hacker ⚠

An alleged hacker's bail hearing held online via Zoom with screen sharing enabled... what could possibly go wrong?

πŸ“– Read

via "Naked Security".
πŸ” FBI announcement on Windows 7 end of life prompts worry from security experts πŸ”

Despite the FBI announcement, hospitals, schools, and government offices across the world still use Windows 7.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ 3 Tips For Better Security Across the Software Supply Chain πŸ•΄

It may sound look intimidating, but with a few tweaks to tools and processes already in use, it's not hard to get a head start on improving security posture of the software supply chain.

πŸ“– Read

via "Dark Reading: ".
πŸ” COVID-19-related scams cost Americans more than $98 million since the start of 2020 πŸ”

Online shopping is the most prevalent type of scam with people losing nearly $14 million to date, according to FTC data.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Security analysts want more help from developers to improve DevSecOps πŸ”

More training on security tools and better performance metrics can accomplish this, according to a new survey.

πŸ“– Read

via "Security on TechRepublic".
❌ High-Severity Cisco DoS Flaw Plagues Small-Business Switches ❌

Cisco recently patched the high-severity flaw, which could allow remote, unauthenticated attackers to launch DoS attacks against its popular small business switches.

πŸ“– Read

via "Threatpost".
πŸ•΄ Ripple20: More Vulnerable Devices Identified πŸ•΄

Security researchers find 34 additional vendors, and 47 devices, affected by the widespread Ripple20 vulnerabilities.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Energy Market Manipulation with High-Wattage IoT Botnets πŸ•΄

Attackers that can compromise enough products such as smart ACs and heaters can tweak power demand in subtle ways for financial gain or to hurt market players, researchers at Black Hat say.

πŸ“– Read

via "Dark Reading: ".