πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ•΄ Cybersecurity Companies Among Smaller Firms Hit with Brand Spoofing πŸ•΄

Researchers find smaller organizations, including some in the cybersecurity space, increasingly targeted with these impersonation attacks.

πŸ“– Read

via "Dark Reading: ".
πŸ” Top 5 decentralized platforms πŸ”

Decentralized platforms are aiming to solve the issue of data ownership. Tom Merritt lists five platforms you should know about.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Top 5 decentralized platforms πŸ”

Decentralized platforms are aiming to solve the issue of data ownership. Tom Merritt lists five platforms you should know about.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Reported Breach Count for H1 2020 Lowest in Five Years πŸ•΄

While reported breach numbers are down, a handful of "mega" breaches resulted in more data records being exposed than ever before, analysis shows.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Advent Completes Forescout Purchase πŸ•΄

The purchase by a private equity fund was announced in February and completed today.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Firms Still Struggle to Prioritize Security Vulnerabilities πŸ•΄

Security debt continues to pile up, with 42% of organizations attributing remediation backlogs to a breach, a new study shows.

πŸ“– Read

via "Dark Reading: ".
πŸ” Top 5 password hygiene security protocols companies should follow πŸ”

Proper password methodologies can be a challenge to master. Learn some tips from industry experts on how to streamline the process and safeguard your organization.

πŸ“– Read

via "Security on TechRepublic".
❌ IcedID Trojan Rebooted with New Evasive Tactics ❌

Juniper identifies phishing campaign targeting business customers with malware using password protection, among other techniques, to avoid detection.

πŸ“– Read

via "Threatpost".
πŸ” Carnival Cruises hit with a costly ransomware attack πŸ”

The company says in SEC filing it is preparing for potential claims from guests, employees, and shareholders based on the data accessed.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Why Quality & Security Both Matter in Software πŸ•΄

It's time to position quality and security as equals under the metric of software integrity.

πŸ“– Read

via "Dark Reading: ".
❌ AWS Cryptojacking Worm Spreads Through the Cloud ❌

The malware harvests AWS credentials and installs Monero cryptominers.

πŸ“– Read

via "Threatpost".
πŸ•΄ How to Stay Secure on GitHub πŸ•΄

GitHub, used badly, can be a source of more vulnerabilities than successful collaborations. Here are ways to keep your development team from getting burned on GitHub.

πŸ“– Read

via "Dark Reading: ".
πŸ” What is CISM? πŸ”

CISM (Certified Information Security Manager) is an advanced certification designed for IT professionals who focus on information security management. In this post, we’ll discuss what CISM is, the CISM certification process, and the benefits of being CISM-certified.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
πŸ” How to customize PowerShell settings using profiles πŸ”

Learn to create profiles within PowerShell to customize your settings based on your working environment for optimal performance and efficiency.

πŸ“– Read

via "Security on TechRepublic".
πŸ›  UFONet 1.6 πŸ› 

UFONet abuses OSI Layer 7-HTTP to create/manage 'zombies' and to conduct different attacks using GET/POST, multi-threading, proxies, origin spoofing methods, cache evasion techniques, etc.

πŸ“– Go!

via "Security Tool Files β‰ˆ Packet Storm".
πŸ›  Encrypted Linux x86-64 Loadable Kernel Modules (ELKM) πŸ› 

In this paper, the author presents ELKM, a Linux tool that provides a mechanism to securely transport and load encrypted Loadable Kernel Modules (LKM). The aim is to protect kernel-based rootkits and implants against observation by Endpoint Detection and Response (EDR) software and to neutralize the effects of recovery by disk forensics tooling. The tool as well as the whitepaper is provided in this archive.

πŸ“– Go!

via "Security Tool Files β‰ˆ Packet Storm".
πŸ›  ClamOne 0.102.4-1 πŸ› 

ClamOne is an open source Linux front-end to the ClamAV Antivirus Engine. A basic graphical user interface, designed for a Desktop environment, to provide instant feedback when threats are detected on the local system. Features include configuring the clamd daemon directly from the GUI, indication of threats via visual cues as well as notifications, monitoring and updating the virus definitions, monitoring various clam-related event logs and messages, quarantining of detected threats, and visual graphing of antivirus activity.

πŸ“– Go!

via "Security Tool Files β‰ˆ Packet Storm".
⚠ US liquor giant hit by ransomware – what the rest of us can do to help ⚠

If blackmailers dump data stolen from a company that refused to pay - don't even peek at the data, Reward the refusal...

πŸ“– Read

via "Naked Security".
πŸ” Credential stuffing attacks can be stopped, says Auth0 πŸ”

Stolen credentials are a thorn in any internet-facing organization's side. Auth0 claims it can reduce the effectiveness of attacks using them by 85% with its new bot detection tool.

πŸ“– Read

via "Security on TechRepublic".
❌ Large Orgs Plagued with Bugs, Face Giant Patch Backlogs ❌

Vulnerability management continues to challenge businesses, as they face tens of thousands of bugs with every scan.

πŸ“– Read

via "Threatpost".
πŸ•΄ New 'Duri' Campaign Uses HTML Smuggling to Deliver Malware πŸ•΄

Researchers who detected the attack explain what businesses should know about the HTML smuggling technique.

πŸ“– Read

via "Dark Reading: ".