πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.9K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
⚠ Google researcher discovers new type of Windows security weakness ⚠

Microsoft will patch a new Windows security bug discovered by Google Project Zero - despite finding no evidence that it poses a threat.

πŸ“– Read

via "Naked Security".
πŸ” Why 91% of IT and security pros fear insider threats πŸ”

Insider threats are a larger concern for most organizations than cybercriminals or hacktivists, according to a BetterCloud report.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Vulnerability in SoftNAS Cloud allows attackers to bypass authentication πŸ”

The vulnerability allows attackers to run arbitrary commands as root, which clearly undermines the security of the SoftNAS Cloud platform and data stored on it.

πŸ“– Read

via "Security on TechRepublic".
⚠ Ep. 024 – Sextortion, malicious adverts and randomness [PODCAST] ⚠

Here's the latest Naked Security podcast - listen now!

πŸ“– Read

via "Naked Security".
πŸ•΄ TLS 1.3: A Good News/Bad News Scenario πŸ•΄

Stronger encryption standards are improving the privacy of data in motion, but enterprises will need to adapt their security architectures to maintain visibility into network traffic.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ What the Transition to Smart Cards Can Teach the US Healthcare Industry πŸ•΄

Healthcare information security suffers from the inherent weakness of using passwords to guard information. Chip-based smart cards could change that.

πŸ“– Read

via "Dark Reading: ".
❌ Uber Deployed β€˜Surfcam’ Spyware in Australia to Crush the Competition ❌

Until a report this week, Uber's Surfcam's use was thought to be limited to incidents uncovered in Singapore in 2017.

πŸ“– Read

via "Threatpost".
πŸ•΄ 'Critical' Denial-of-Service Bug Patched in Facebook Fizz πŸ•΄

Researchers report a now-patched DoS vulnerability in Facebook Fizz, its open source implementation of the TLS protocol.

πŸ“– Read

via "Dark Reading: ".
❌ Fin7 Ramps Up Campaigns With Two Fresh Malware Samples ❌

Despite the 2018 crackdown on Fin7, the cybercrime group has been ramping up its efforts with two new malware samples and an attack panel.

πŸ“– Read

via "Threatpost".
πŸ•΄ Less Than 3% of Recycled Computing Devices Properly Wiped πŸ•΄

Researchers find that companies that refurbish or accept old equipment as donations don't necessarily clean them of data as promised.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ The Insider Threat: It's More Common Than You Think πŸ•΄

A new study shows why security teams must look holistically across cybersecurity, compliance, technology, and human resources to truly address the business effects of workforce risk.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Google Photos Bug Let Criminals Query Friends, Location πŸ•΄

The vulnerability, now patched, let attackers query where, when, and with whom victims' photos were taken.

πŸ“– Read

via "Dark Reading: ".
πŸ” Global Aluminum Manufacturer Still Recovering From Ransomware Attack πŸ”

Norway's Norsk Hydro, the company ensnared in one of the week's biggest stories – a ransomware attack that crippled its systems – is still in the process of recovering.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
πŸ•΄ BEC Scammer Pleads Guilty πŸ•΄

Business email compromise (BEC) operation resulted in $100 million in losses to a multinational technology company and a social media firm, according to the US Attorney's Office.

πŸ“– Read

via "Dark Reading: ".
❌ Years-Long Phishing Campaign Targets Saudi Gov Agencies ❌

The campaign, codenamed β€œBad Tidings,” has sought out victims’ credentials with clever fake landing pages pretending to be the Saudi Arabian Ministry of Interior’s e-Service portal.

πŸ“– Read

via "Threatpost".
❌ Post-Perimeter Security: Addressing Evolving Mobile Enterprise Threats ❌

Experts from Gartner, Lookout and Google talk enterprise mobile security in this webinar replay.

πŸ“– Read

via "Threatpost".
❌ Mac-Focused Malvertising Campaign Abuses Google Firebase DBs ❌

Researchers said 1 million user sessions could have been exposed to the campaign, which downloads the Shlayer trojan.

πŸ“– Read

via "Threatpost".
πŸ•΄ Researchers Seek Out Ways to Search IPv6 Space πŸ•΄

Security researchers regularly search IPv4 address space looking for servers with ports exposing vulnerable software. With the massive number of IPv6 addresses, however, they have lost that ability. Can tricks and workarounds save the day?

πŸ“– Read

via "Dark Reading: ".
⚠ FBI crackdown on DDoS-for-hire sites led to 85% slash in attack sizes ⚠

According to a new report, average and maximum DDoS attack sizes decreased by 85.36% and 23.91%.

πŸ“– Read

via "Naked Security".
⚠ Opera brings back free VPN service to its Android browser ⚠

Opera lost its Android browser's VPN after it was sold to a Chinese consortium, but now it's back.

πŸ“– Read

via "Naked Security".