πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.9K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
β€Ό CVE-2021-43180 β€Ό

In JetBrains Hub before 2021.1.13690, information disclosure via avatar metadata is possible.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-43203 β€Ό

In JetBrains Ktor before 1.6.4, nonce verification during the OAuth2 authentication process is implemented improperly.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2019-18914 β€Ό

A potential security vulnerability has been identified for certain HP printers and MFPs that would allow redirection page Cross-Site Scripting in a clientÒ€ℒs browser by clicking on a third-party malicious link.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-43194 β€Ό

In JetBrains TeamCity before 2021.1.2, user enumeration was possible.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-43199 β€Ό

In JetBrains TeamCity before 2021.1.2, permission checks in the Create Patch functionality are insufficient.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-43192 β€Ό

In JetBrains YouTrack Mobile before 2021.2, iOS URL scheme hijacking is possible.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-43196 β€Ό

In JetBrains TeamCity before 2021.1, information disclosure via the Docker Registry connection dialog is possible.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-43198 β€Ό

In JetBrains TeamCity before 2021.1.2, stored XSS is possible.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-43184 β€Ό

In JetBrains YouTrack before 2021.3.21051, stored XSS is possible.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-43200 β€Ό

In JetBrains TeamCity before 2021.1.2, permission checks in the Agent Push functionality were insufficient.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-43188 β€Ό

In JetBrains YouTrack Mobile before 2021.2, access token protection on iOS is incomplete.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-43195 β€Ό

In JetBrains TeamCity before 2021.1.2, some HTTP security headers were missing.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-43181 β€Ό

In JetBrains Hub before 2021.1.13690, stored XSS is possible.

πŸ“– Read

via "National Vulnerability Database".
πŸ“’ Avast Antivirus Free review: Our free favourite for older Windows PCs πŸ“’

Effective free antivirus that’ll work on operating systems all the way back to Windows 7

πŸ“– Read

via "ITPro".
πŸ“’ Sitecore XP RCE vulnerability actively exploited, ACSC warns πŸ“’

Flaw was fixed last month but hackers now moving against patching laggards

πŸ“– Read

via "ITPro".
πŸ“’ Investor group snaps up McAfee for $14 billion πŸ“’

The cyber security firm is to be taken private just a year after it returned to the stock market

πŸ“– Read

via "ITPro".
πŸ“’ Expired certificate to blame for broken Windows 11 apps πŸ“’

Microsoft has released a patch but users are still unable to access the Snipping Tool

πŸ“– Read

via "ITPro".
πŸ“’ A guide to cyber security certification and training πŸ“’

Cyber security skills are in demand from every organisation, but what training and certification is needed?

πŸ“– Read

via "ITPro".
πŸ“’ Vulnerability in Linux kernel could let hackers remotely take over systems πŸ“’

Heap overflow attacks can exploit TIPC module in all common Linux distributions

πŸ“– Read

via "ITPro".
πŸ“’ What is Maze ransomware? πŸ“’

This Windows ransomware has targeted many organisations worldwide

πŸ“– Read

via "ITPro".
πŸ“’ US government sanctions crypto-exchange Chatex over ransomware allegations πŸ“’

Treasury department moves to sanction another exchange following restriction of Suex in September

πŸ“– Read

via "ITPro".