ATENTIONβΌ New - CVE-2020-0265
π Read
via "National Vulnerability Database".
In Telephony, there are possible leaks of sensitive data due to missing permission checks. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-150155839π Read
via "National Vulnerability Database".
ATENTIONβΌ New - CVE-2020-0263
π Read
via "National Vulnerability Database".
In the Accessibility service, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-154913130π Read
via "National Vulnerability Database".
β SecOps Teams Wrestle with Manual Processes, HR Gaps β
π Read
via "Threatpost".
Enterprise security teams are "drowning in alerts."π Read
via "Threatpost".
Threat Post
SecOps Teams Wrestle with Manual Processes, HR Gaps
Enterprise security teams are "drowning in alerts."
π How to encrypt files on your Linux servers with gocryptfs π
π Read
via "Security on TechRepublic".
Looking for an easy to use encryption tool to protect data on your Linux servers? Jack Wallen shows you how to install and use gocryptfs to serve that very purpose.π Read
via "Security on TechRepublic".
TechRepublic
How to encrypt files on your Linux servers with gocryptfs
Looking for an easy to use encryption tool to protect data on your Linux servers? Jack Wallen shows you how to install and use gocryptfs to serve that very purpose.
π΄ Deadly Ransomware Story Continues to Unfold π΄
π Read
via "Dark Reading: ".
A ransomware attack with fatal consequences is attracting notice and comment from around the world.π Read
via "Dark Reading: ".
Dark Reading
Deadly Ransomware Story Continues to Unfold
A ransomware attack with fatal consequences is attracting notice and comment from around the world.
π΄ A Hacker's Playlist π΄
π Read
via "Dark Reading: ".
Nine security researchers share their favorite songs and genres.π Read
via "Dark Reading: ".
Dark Reading
A Hacker's Playlist
Nine security researchers share their favorite songs and genres.
β Stubborn WooCommerce Plugin Bugs Get Third Patch β
π Read
via "Threatpost".
Users of the Discount Rules for WooCommerce WordPress plugin are urged to apply a third and (hopefully) final patch.π Read
via "Threatpost".
Threat Post
Stubborn WooCommerce Plugin Bug Gets Third Patch
Users of the Discount Rules for WooCommerce WordPress plugin are urged to apply a third and (hopefully) final patch.
β The TikTok Ban: Security Experts Weigh in on the Appβs Risks β
π Read
via "Threatpost".
With no hard evidence of abuse, are bans warranted? The real security concerns will likely come after the ban goes into effect, researchers said in our exclusive roundtable.π Read
via "Threatpost".
Threat Post
UPDATE β TikTok Ban: Security Experts Weigh in on the Appβs Risks
With no hard evidence of abuse, are bans warranted? The real security concerns will likely come after the ban goes into effect, researchers said in our exclusive roundtable.
β Naked Security Live β βThe Zerologon hole: are you at risk?β β
π Read
via "Naked Security".
Naked Security Live - here's the recorded version of our latest video. Enjoy.π Read
via "Naked Security".
Naked Security
Naked Security Live β βThe Zerologon hole: are you at risk?β
Naked Security Live β hereβs the recorded version of our latest video. Enjoy.
π Windows Server: Patch this critical flaw now says Homeland Security in emergency warning π
π Read
via "Security on TechRepublic".
Government agencies in the US have until today to patch a Windows Server vulnerability that could give hackers control over federal networks.π Read
via "Security on TechRepublic".
TechRepublic
Patch this critical software flaw now, says Homeland Security in emergency warning
Government agencies in the US have until today to patch a Windows Server vulnerability that could give hackers control over federal networks.
π΄ Hacking Yourself: Marie Moe and Pacemaker Security π΄
π Read
via "Dark Reading: ".
Future consumer devices, including pacemakers, should be built with security from the start.π Read
via "Dark Reading: ".
Dark Reading
Hacking Yourself: Marie Moe and Pacemaker Security
Future consumer devices, including pacemakers, should be built with security from the start.
π΄ 5 Steps to Greater Cyber Resiliency π΄
π Read
via "Dark Reading: ".
Work from home isn't going away anytime soon, and the increased vulnerability means cyber resiliency will continue to be critical to business resiliency.π Read
via "Dark Reading: ".
Dark Reading
5 Steps to Greater Cyber Resiliency
Work from home isn't going away anytime soon, and the increased vulnerability means cyber resiliency will continue to be critical to business resiliency.
π΄ Patch by Tonight: CISA Issues Emergency Directive for Critical Netlogon Flaw π΄
π Read
via "Dark Reading: ".
The directive requires all federal agencies to apply a patch for Windows Netlogon vulnerability CVE-2020-1472 by midnight on Sept. 21.π Read
via "Dark Reading: ".
Dark Reading
Patch by Tonight: CISA Issues Emergency Directive for Critical Netlogon Flaw
The directive requires all federal agencies to apply a patch for Windows Netlogon vulnerability CVE-2020-1472 by midnight on Sept. 21.
β Android Malware Bypasses 2FA And Targets Telegram, Gmail Passwords β
π Read
via "Threatpost".
A new Android malware strain has been uncovered, part of the Rampant Kitten threat group's widespread surveillance campaign that targets Telegram credentials and more.π Read
via "Threatpost".
Threat Post
Android Malware Bypasses 2FA And Targets Telegram, Gmail Passwords
A new Android malware strain has been uncovered, part of the Rampant Kitten threat group's widespread surveillance campaign that targets Telegram credentials and more.
β Firefox for Android Bug Allows βEpic Rick-Rollingβ β
π Read
via "Threatpost".
Anyone on the same Wi-Fi network can force websites to launch, with no user interaction.π Read
via "Threatpost".
Threat Post
Firefox for Android Bug Allows βEpic Rick-Rollingβ
Anyone on the same Wi-Fi network can force websites to launch, with no user interaction.
π΄ Defending Against Deepfakes: From Tells to Crypto π΄
π Read
via "Dark Reading: ".
Detecting doctored media has become tricky -- and risky -- business. Here's how organizations can better protect themselves from fake video, audio, and other forms of content.π Read
via "Dark Reading: ".
Dark Reading
Defending Against Deepfakes: From Tells to Crypto
Detecting doctored media has become tricky -- and risky -- business. Here's how organizations can better protect themselves from fake video, audio, and other forms of content.
π Mozilla's VPN service works across mobile and desktop platforms π
π Read
via "Security on TechRepublic".
Mozilla now offers a VPN service that protects Windows and mobile devices, and soon your Linux and macOS desktops. Jack Wallen shows you how to use the new offering.π Read
via "Security on TechRepublic".
TechRepublic
Mozilla's VPN service works across mobile and desktop platforms
Mozilla now offers a VPN service that protects Windows and mobile devices, and soon your Linux and macOS desktops. Jack Wallen shows you how to use the new offering.
π CISA Asks Federal Agencies to Patch Zerologon Vulnerability ASAP π
π Read
via "Subscriber Blog RSS Feed ".
In a rare emergency directive, CISA asked all federal agencies to immediately deploy last month's Windows Security Update to remediate a critical vulnerability in Netlogon.π Read
via "Subscriber Blog RSS Feed ".
Digital Guardian
CISA Asks Federal Agencies to Patch 'Zerologon' Vulnerability ASAP
In a rare emergency directive, CISA asked all federal agencies to immediately deploy last month's Windows Security Update to remediate a critical vulnerability in Netlogon.
β DHS Issues Dire Patch Warning for βZerologonβ β
π Read
via "Threatpost".
The deadline looms for U.S. Cybersecurity and Infrastructure Security Agencyβs emergency directive for federal agencies to patch against the so-called βZerologonβ vulnerability.π Read
via "Threatpost".
Threat Post
DHS Issues Dire Patch Warning for βZerologonβ
The deadline looms for U.S. Cybersecurity and Infrastructure Security Agencyβs emergency directive for federal agencies to patch against the so-called βZerologonβ vulnerability.