πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.9K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
ATENTIONβ€Ό New - CVE-2015-9275

ARC 5.21q allows directory traversal via a full pathname in an archive file.

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ Stronger DNS Security Stymies Would-Be Criminals πŸ•΄

2018 saw a reduced number of huge DNS-facilitated DDoS attacks. Vendors and service providers believe that malicious impact will drop with continued technology improvements.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Bug Bounty Awards Climb as Software Security Improves πŸ•΄

Top reward for iOS remote exploit hits $2 million, as companies who sell exploits to national governments have to offer more money to attract researchers to tackle increasingly secure software.

πŸ“– Read

via "Dark Reading: ".
⚠ LA sues The Weather Channel over selling users’ location data ⚠

The app is accused of being a β€œlocation data company powered by weather” and profiting from users' data without being upfront about it.

πŸ“– Read

via "Naked Security".
⚠ Hacker uses early warning system for fake message campaign ⚠

Australians got scary texts, emails and phone calls from a trusted emergency warning service late last week after a hacker broke into its systems and used it to send fake messages.

πŸ“– Read

via "Naked Security".
⚠ How to spot a social media hoax ⚠

Stop shaking your head about "WhatsApp Gold" flimflam and start spreading these REAL nuggets of hoax-clobbering advice!

πŸ“– Read

via "Naked Security".
⚠ Facial recognition on 42 Android phones beaten by photo test ⚠

How easy is it to bypass the average smartphone’s facial recognition security? In the case of Android, a lot easier than owners may think.

πŸ“– Read

via "Naked Security".
❌ Adobe Patches Important Bugs in Connect and Digital Edition ❌

The update comes on the heels of critical fixes in an unscheduled patch last week.

πŸ“– Read

via "Threatpost | The first stop for security news".
πŸ•΄ Security Matters When It Comes to Mergers & Acquisitions πŸ•΄

The recently disclosed Marriott breach exposed a frequently ignored issue in the M&A process.

πŸ“– Read

via "Dark Reading: ".
πŸ” How to tackle phishing with machine learning πŸ”

​Learn how one company is capitalizing on machine learning to address phishing problems.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Sophos Buys Cloud Security Company πŸ•΄

Deal gives Sophos a new AI-based cloud security platform.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Whitfield Diffie Joins Quantum Xchange Advisory Board πŸ•΄

The noted cryptography expert has joined the advisory board of the quantum key exchange provider.

πŸ“– Read

via "Dark Reading: ".
⚠ SMS phishing is alive and well… and simply believable ⚠

Sometimes, the limited length of an SMS makes it easier for the crooks to 'get it to look right' and reel you in to a phishing site...

πŸ“– Read

via "Naked Security".
πŸ•΄ Humana Breaches Reflect Chronic Credential Theft in Healthcare πŸ•΄

A series of 2018 cybersecurity incidents shows credential stuffing is a trend to watch among healthcare organizations.

πŸ“– Read

via "Dark Reading: ".
❌ Malvertising Campaign Delivers Double Whammy of Ransomware and Info-Stealing ❌

The whole attack takes place in under a minute.

πŸ“– Read

via "Threatpost | The first stop for security news".
πŸ•΄ Your Life Is the Attack Surface: The Risks of IoT πŸ•΄

To protect yourself, you must know where you're vulnerable - and these tips can help.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ 20-Year Old Student Admits to Massive Data Leak in Germany πŸ•΄

Hack was not politically motivated; no sign of third-party involvement, authorities say.

πŸ“– Read

via "Dark Reading: ".
❌ Microsoft Issues Multiple Critical Patches for Edge Browser ❌

Microsoft January Patch Tuesday roundup includes four critical patches for its Edge browser.

πŸ“– Read

via "Threatpost | The first stop for security news".
❌ Shipping Firms Speared with Targeted β€˜Whaling’ Attacks ❌

Bad actors are imitating high-level executives in the shipping industry to launch BEC attacks that could lead to credential theft or worse - system compromise.

πŸ“– Read

via "Threatpost | The first stop for security news".
πŸ” Phishing and spearphishing: A cheat sheet for business professionals πŸ”

When criminals use technology to propagate social engineering attacks, securing your organization can become complicated. Here's what you need to know about phishing and spearphishing.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Remote Code Execution Bugs Are Primary Focus of January Patch Tuesday πŸ•΄

This month's security update includes seven patches ranked Critical and one publicly known vulnerability.

πŸ“– Read

via "Dark Reading: ".