πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
β€Ό CVE-2020-20796 β€Ό

FlameCMS 3.3.5 contains a SQL injection vulnerability in /master/article.php via the "Id" parameter.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2020-20799 β€Ό

JeeCMS 1.0.1 contains a stored cross-site scripting (XSS) vulnerability which allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the commentText parameter.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2020-20797 β€Ό

FlameCMS 3.3.5 contains a time-based blind SQL injection vulnerability in /account/register.php.

πŸ“– Read

via "National Vulnerability Database".
πŸ—“οΈ US retailer Neiman Marcus notifies 4.6 million customers of data breach πŸ—“οΈ

Department store chain forces password reset after discovering 2020 incident last month

πŸ“– Read

via "The Daily Swig".
β€Ό CVE-2021-23893 β€Ό

Privilege Escalation vulnerability in a Windows system driver of McAfee Drive Encryption (DE) prior to 7.3.0 could allow a local non-admin user to gain elevated system privileges via exploiting an unutilized memory buffer.

πŸ“– Read

via "National Vulnerability Database".
πŸ“’ Cloudflare enters the email security business πŸ“’

New email routing and DNS Wizard capabilities make email management a breeze

πŸ“– Read

via "ITPro".
πŸ“’ Android Trojan charges millions of victims €36 per month πŸ“’

Up to 10 million users across 70 countries are thought to have been affected

πŸ“– Read

via "ITPro".
πŸ“’ Account takeovers rise nearly threefold during pandemic πŸ“’

Financial services hit hardest by account hijackers, says Sift report

πŸ“– Read

via "ITPro".
πŸ“’ The worst hacks of all time πŸ“’

Yahoo, LinkedIn, Facebook, here is a quick guide to some of the biggest data breaches in history

πŸ“– Read

via "ITPro".
πŸ“’ Akamai to acquire cyber security firm Guardicore πŸ“’

Guardicore’s micro-segmentation solution will add to Akamai’s Zero Trust Security portfolio

πŸ“– Read

via "ITPro".
πŸ“’ Detained Russian cyber sec tycoon 'exposed classified data', state media claims πŸ“’

Ilya Sachkov is accused of handing over security data to foreign intelligence services

πŸ“– Read

via "ITPro".
πŸ“’ NSA and CISA offer new security guidance for VPNs πŸ“’

Multiple nation-state threat actors using known flaws to access systems

πŸ“– Read

via "ITPro".
πŸ“’ Cellebrite launches industry-first remote data collection solution πŸ“’

New solution aids organizations’ e-discovery and corporate investigation procedures

πŸ“– Read

via "ITPro".
πŸ“’ Visa card holders using Apple Pay warned of payment exploit that bypasses user authentication πŸ“’

Commuters are being urged to disable Apple Pay express transit mode for Visa cards

πŸ“– Read

via "ITPro".
πŸ“’ Alkira offers Check Point CloudGuard Security to secure virtual cloud networks πŸ“’

New service allows admins to connect cloud services, data centers and VPNs

πŸ“– Read

via "ITPro".
πŸ“’ Two-thirds of organizations have fallen victim to ransomware πŸ“’

New report finds ransomware attacks grew by over 1,000%

πŸ“– Read

via "ITPro".
πŸ“’ How to turn on Windows Defender πŸ“’

Find out how to turn on, or off, Windows Defender on Windows 10 and older versions of Windows

πŸ“– Read

via "ITPro".
πŸ“’ SolarWinds hackers are targeting Microsoft AD servers πŸ“’

The β€œpassive and highly targeted" FoggyWeb backdoor has been around since at least April 2021

πŸ“– Read

via "ITPro".
πŸ“’ Telegram bots are out to steal your one-time passwords πŸ“’

New scam lets cyber criminals steal money from victims

πŸ“– Read

via "ITPro".
❌ New APT ChamelGang Targets Russian Energy, Aviation Orgs ❌

First appearing in March, the group has been leveraging ProxyShell against targets in 10 countries and employs a variety of malware to steal data from compromised networks.

πŸ“– Read

via "Threat Post".
⚠ S3 Ep52: Let’s Encrypt, Outlook leak, and VMware exploit [Podcast] ⚠

Latest episode - listen now!

πŸ“– Read

via "Naked Security".