🛡 Cybersecurity & Privacy 🛡 - News
25.8K subscribers
89.2K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
🕴 CrowdStrike Agrees to Acquire Preemptive Security for $96M 🕴

CrowdStrike plans to use Preemptive Security's conditional access technology to strengthen its Falcon platform.

📖 Read

via "Dark Reading: ".
🔐 How to install the Graylog system log manager on Ubuntu Server 20.04 🔐

Combing through logs on numerous servers can be a chore. Learn how to simplify that with the Graylog monitoring server.

📖 Read

via "Security on TechRepublic".
🕴 CrowdStrike Agrees to Acquire Preempt Security for $96M 🕴

CrowdStrike plans to use Preempt Security's conditional access technology to strengthen its Falcon platform.

📖 Read

via "Dark Reading: ".
Free Apple iPhone 12? Chatbot Scam Spreads Via Texts

Convincing SMS messages tell victims that they've been selected for a pre-release trial for the soon-to-be-launched device.

📖 Read

via "Threatpost".
🔏 SEC Looks to Tamp Down Credential Stuffing 🔏

The SEC's compliance arm is encouraging banks and financial institutions to remain vigilant in the face of an uptick in credential stuffing attacks.

📖 Read

via "Subscriber Blog RSS Feed ".
🛠 Falco 0.26.0 🛠

Sysdig Falco is a behavioral activity monitoring agent that is open source and comes with native support for containers. Falco lets you define highly granular rules to check for activities involving file and network activity, process execution, IPC, and much more, using a flexible syntax. Falco will notify you when these rules are violated. You can think about falco as a mix between snort, ossec and strace.

📖 Go!

via "Security Tool Files ≈ Packet Storm".
🛠 Wireshark Analyzer 3.2.7 🛠

Wireshark is a GTK+-based network protocol analyzer that lets you capture and interactively browse the contents of network frames. The goal of the project is to create a commercial-quality analyzer for Unix and Win32 and to give Wireshark features that are missing from closed-source sniffers. This is the source code release.

📖 Go!

via "Security Tool Files ≈ Packet Storm".
🕴 Critical Instagram Flaw Could Let Attackers Spy on Victims 🕴

A now-patched remote code execution vulnerability could be exploited with a specially sized image file, researchers report.

📖 Read

via "Dark Reading: ".
Cisco Patch-Palooza Tackles 29 High-Severity Bugs

Patches and workaround fixes address flaws on networking hardware running Cisco IOS XE software.

📖 Read

via "Threatpost".
Feds Hit with Successful Cyberattack, Data Stolen

The attack featured a unique, multistage malware and a likely PulseSecure VPN exploit.

📖 Read

via "Threatpost".
🕴 Bluetooth Security Weaknesses Pile Up, While Patching Remains Problematic 🕴

Turns out, creating wireless ecosystems for a vast number of different architectures, configurations, and use cases is hard.

📖 Read

via "Dark Reading: ".
🕴 Malware Attacks Declined But Became More Evasive in Q2 🕴

Most of the malware used in attacks last quarter were designed to evade signature-based detection tools, WatchGuard says.

📖 Read

via "Dark Reading: ".
ATENTION New - CVE-2016-11086

lib/oauth/consumer.rb in the oauth-ruby gem through 0.5.4 for Ruby does not verify server X.509 certificates if a certificate bundle cannot be found, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information.

📖 Read

via "National Vulnerability Database".
ATENTION New - CVE-2018-10585

Pexip Infinity before 18 allows remote Denial of Service (XML parsing).

📖 Read

via "National Vulnerability Database".
ATENTION New - CVE-2018-10432

Pexip Infinity before 18 allows Remote Denial of Service (TLS handshakes in RTMP).

📖 Read

via "National Vulnerability Database".
ATENTION New - CVE-2017-17477

Pexip Infinity before 17 allows an unauthenticated remote attacker to achieve stored XSS via management web interface views.

📖 Read

via "National Vulnerability Database".
ATENTION New - CVE-2019-11556

Pagure before 5.6 allows XSS via the templates/blame.html blame view.

📖 Read

via "National Vulnerability Database".
🕴 WannaCry Has IoT in Its Crosshairs 🕴

The wide variety of devices attached to the Internet of Things offers a rich target for purveyors of ransomware.

📖 Read

via "Dark Reading: ".
🕴 RASP 101: Staying Safe With Runtime Application Self-Protection 🕴

The dream of RASP is to empower applications to protect themselves. How close do current implementations get to living the dream? Here's what to know.

📖 Read

via "Dark Reading: ".
🔏 Friday Five 9/25 🔏

Insider data breaches, COVID contact tracing apps, and FBI indictments - catch up on the week's news with the Friday Five!

📖 Read

via "Subscriber Blog RSS Feed ".