πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ” How companies can diversify their cybersecurity teams πŸ”

At RSA 2019, Elena Elkina of Women in Security and Privacy discussed how businesses can seek out female and minority candidates for cybersecurity jobs.

πŸ“– Read

via "Security on TechRepublic".
❌ RSA Conference 2019: Operational Technology Widens Supply Chain Attack Surfaces ❌

Between operational technology and open source, the supply chain is rapidly expanding - and companies that can't keep up will be the next security targets, said experts at RSA Conference 2019.

πŸ“– Read

via "Threatpost".
πŸ•΄ Citrix Hacked by 'International Cybercriminals' πŸ•΄

FBI informed Citrix this week of a data breach that appears to have begun with a 'password spraying' attack to steal weak credentials to access the company's network.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Shifting Attacks Put Increasing ID Fraud Burden on Consumers πŸ•΄

Card-present fraud is down, but attackers continue to find new strategies, and consumers are paying the price.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Tina Fey, RSAC, and Parallels Between Improv and Cyber πŸ•΄

This year's RSA Conference concluded with actress Tina Fey and program chair Hugh Thompson chatting about teambuilding, diversity, and improv.

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2017-3164

Server Side Request Forgery in Apache Solr, versions 1.3 until 7.6 (inclusive). Since the "shards" parameter does not have a corresponding whitelist mechanism, a remote attacker with access to the server could make Solr perform an HTTP GET request to any reachable URL.

πŸ“– Read

via "National Vulnerability Database".
πŸ” Will we see a federal privacy law in the US? πŸ”

At RSA 2019, Dana Simberkoff of AvePoint discussed how companies can reevaluate privacy policies.

πŸ“– Read

via "Security on TechRepublic".
❌ RSA Conference 2019: The Expanding Automation Platform Attack Surface ❌

Hacking into smart homes is becoming increasingly easy and a great way to steal victims' personal information, Trend Micro said at RSA 2019.

πŸ“– Read

via "Threatpost".
πŸ” Do bug bounties help open source security? πŸ”

The biggest problem of targeting open source software to find security issues relates to IT.

πŸ“– Read

via "Security on TechRepublic".
πŸ” How to protect your small business from the dark web πŸ”

Education, monitoring and response tools, and training about the dark web are essential to protecting your small business from cybercriminals.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Unintended inferences: The biggest threat to data privacy and cybersecurity πŸ”

Find out why data privacy breaches and scandals (think Facebook, Marriott, and Yahoo), artificial intelligence, and analytics have implications for how your business manages cybersecurity.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Everything you need to know about Windows updates πŸ”

Beyond Patch Tuesday: understanding the different monthly security and quality updates for Windows, and how they're getting more efficient.

πŸ“– Read

via "Security on TechRepublic".
⚠ Monday review – the hot 25 stories of the week ⚠

From a serious Chrome zero-day to Comcast's security nightmare, and everything in between - it's weekly roundup time.

πŸ“– Read

via "Naked Security".
⚠ FTC says taxpayer voice phishing scams are up nearly 20x ⚠

The real Social Security people will never call to threaten your benefits or tell you to wire money, send cash, or put money on gift cards.

πŸ“– Read

via "Naked Security".
⚠ Booking a restaurant? Let Google’s Duplex AI make the call for you ⚠

Bon appΓ©tit, Dave. Google's table-booking Duplex AI needs to pass the creepy test.

πŸ“– Read

via "Naked Security".
⚠ US Army clarifies its killer robot plans ⚠

The US Army has been forced to clarify its intentions for killer robots after unveiling a new program to build AI-powered targeting systems last month.

πŸ“– Read

via "Naked Security".
πŸ” Vulnerabilities in industrial Ethernet switches allow for credential theft, denial-of-service attacks πŸ”

Industrial Ethernet switches from Moxa were found to lack basic security measures, making it possible to brute-force access to the switch management console, according to Positive Technologies.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ IT Security Administrators Aren't Invincible πŸ•΄

IT security administrators and their teams are responsible for evaluating an organization's security tools and technologies, but are they armed with the proper tools, considerations, and budget to do so? Fourth in a six-part series.

πŸ“– Read

via "Dark Reading: ".
❌ Facebook Alleges Two Ukrainians Scraped Data From 63K Profiles ❌

Facebook is suing two Ukrainian men who were able to scrape data from 63,000 users' profiles by enticing users to download a malicious browser extension.

πŸ“– Read

via "Threatpost".
πŸ•΄ Georgia's Jackson County Pays $400K to Ransomware Attackers πŸ•΄

The ransomware campaign started March 1 and shut down most of Jackson County's IT systems.

πŸ“– Read

via "Dark Reading: ".
πŸ” 10 popular malware campaigns your business should avoid πŸ”

Coinhive is at the top of the global threat index for the 15th consecutive month, according to a Check Point report.

πŸ“– Read

via "Security on TechRepublic".