πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
26.1K subscribers
89.3K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
ATENTIONβ€Ό New - CVE-2017-13891

In iOS before 11.2, an inconsistent user interface issue was addressed through improved state management.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2017-13889

In macOS High Sierra before 10.13.3, Security Update 2018-001 Sierra, and Security Update 2018-001 El Capitan, a logic error existed in the validation of credentials. This was addressed with improved credential validation.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2017-13888

In iOS before 11.2, a type confusion issue was addressed with improved memory handling.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2017-13887

In macOS High Sierra before 10.13.2, a logic issue existed in APFS when deleting keys during hibernation. This was addressed with improved state management.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2017-13886

In macOS High Sierra before 10.13.2, an access issue existed with privileged WiFi system configuration. This issue was addressed with additional restrictions.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2016-7576

In iOS before 9.3.3, a memory corruption issue existed in the kernel. This issue was addressed through improved memory handling.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2016-4644

In iOS before 9.3.3, tvOS before 9.2.2, and OS X El Capitan before v10.11.6 and Security Update 2016-004, a downgrade issue existed with HTTP authentication credentials saved in Keychain. This issue was addressed by storing the authentication types with the credentials.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2016-4643

In iOS before 9.3.3, tvOS before 9.2.2, and OS X El Capitan before v10.11.6 and Security Update 2016-004, a validation issue existed in the parsing of 407 responses. This issue was addressed through improved response validation.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2016-4642

In iOS before 9.3.3, tvOS before 9.2.2, and OS X El Capitan before v10.11.6 and Security Update 2016-004, proxy authentication incorrectly reported HTTP proxies received credentials securely. This issue was addressed through improved warnings.

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ SCOTUS Says Suit Over Fiat-Chrysler Hack Can Move Forward πŸ•΄

A class-action suit over a 2015 attack demonstration against a Jeep Cherokee can move forward, US Supreme Court rules.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ How Enterprises Are Attacking the Cybersecurity Problem πŸ•΄

Data breach fears and the need to comply with regulations such as GDPR are two major drivers increased spending on security products and technologies. But other factors are contributing to the trend as well. Find out more about how enterprises are attacking the cybersecurity problem by reading our report today.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Government Shutdown Brings Certificate Lapse Woes πŸ•΄

Among the problems: TLS certificates are expiring and websites are becoming inaccessible.

πŸ“– Read

via "Dark Reading: ".
❌ Pre-Installed Android App Impacts Millions with Slew of Malicious Activity ❌

The app was developed by legitimate Chinese manufacturing giant TCL.

πŸ“– Read

via "Threatpost | The first stop for security news".
πŸ” Good data in, good data out: How innovation in technology has evolved πŸ”

Xerox's CISO Alissa Abdullah discusses how innovation in technology and security has changed throughout her career.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Good data in, good data out: How innovation in technology has evolved πŸ”

Xerox's CISO Alissa Abdullah discusses how innovation in technology and security has changed throughout her career.

πŸ“– Read

via "Security on TechRepublic".
⚠ Ep. 014 – Rickrolls, Acrobat and zombie hands [PODCAST] ⚠

Here's the latest Naked Security podcast - enjoy!

πŸ“– Read

via "Naked Security".
⚠ Monday review – the hot 22 stories of the week ⚠

From vulnerable 2FA codes to phishing to critical flaws for Adobe Acrobat and Reader, and everything in between. It's weekly roundup time.

πŸ“– Read

via "Naked Security".
⚠ Facebook exec gets SWATted ⚠

The imposter claimed to be the Facebook exec and said he'd shot his wife, tied up his kids and planted pipe bombs β€œall over the place.”

πŸ“– Read

via "Naked Security".
⚠ USB-C Authentication sounds great, so why are people worried? ⚠

USB-C Authentication could banish USB threats forever, but it might also mean you're tied to buying β€˜approved’ accessories.

πŸ“– Read

via "Naked Security".
⚠ 10 years for Boston Children’s Hospital DDoSer ⚠

Martin Gottesfeld said he wishes he β€œhad done more” than knock out BCH’s network for at least two weeks.

πŸ“– Read

via "Naked Security".
❌ Podcast: Emotet Grows With Fast-Evolving Tactics ❌

Threatpost discusses the future of the Emotet banking trojan with Cylance.

πŸ“– Read

via "Threatpost | The first stop for security news".