🛡 Cybersecurity & Privacy 🛡 - News
25.8K subscribers
89.2K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
🦿 If you're serious about privacy, it's time to use DuckDuckGo as your default Android browser 🦿

Third-party app trackers have become a real problem on Android, and DuckDuckGo is doing something about it. Find out why Jack Wallen believes this is the browser you need to use.

📖 Read

via "Tech Republic".
🕴 How Sun Tzu's Wisdom Can Rewrite the Rules of Cybersecurity 🕴

The ancient Chinese military strategist Sun Tzu would agree: The best defense is to avoid an attack in the first place.

📖 Read

via "Dark Reading".
🗓️ Research has come a long way, but gaps remain – security researcher Artur Janc on the state of XS-Leaks 🗓️

‘By focusing on XS-Leaks as a fundamental vulnerability class, we help raise their profile and make it easier for developers to understand their impact’

📖 Read

via "The Daily Swig".
🦿 Dump Chrome as your default browser on Android 🦿

Jack Wallen tells us why Android users should switch from Chrome as their default browsers.

📖 Read

via "Tech Republic".
CVE-2021-37004

There is a Improper Input Validation vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause kernel crash.

📖 Read

via "National Vulnerability Database".
CVE-2021-37012

There is a Data Processing Errors vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause kernel crash.

📖 Read

via "National Vulnerability Database".
CVE-2021-37034

There is an Unstandardized field names in Huawei Smartphone.Successful exploitation of this vulnerability may affect service confidentiality.

📖 Read

via "National Vulnerability Database".
CVE-2021-22410

There is a XSS injection vulnerability in iMaster NCE-Fabric V100R019C10. A module of the client does not verify the input sufficiently. Attackers can exploit this vulnerability by modifying input after logging onto the client. This may compromise the normal service of the client.

📖 Read

via "National Vulnerability Database".
CVE-2021-37019

There is a Improper Input Validation vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause kernel crash.

📖 Read

via "National Vulnerability Database".
CVE-2021-39976

There is a privilege escalation vulnerability in CloudEngine 5800 V200R020C00SPC600. Due to lack of privilege restrictions, an authenticated local attacker can perform specific operation to exploit this vulnerability. Successful exploitation may cause the attacker to obtain a higher privilege.

📖 Read

via "National Vulnerability Database".
CVE-2021-37003

There is a Improper Input Validation vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause kernel crash.

📖 Read

via "National Vulnerability Database".
CVE-2021-37025

There is a Improper Input Validation vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause kernel crash.

📖 Read

via "National Vulnerability Database".
CVE-2021-37024

There is a Improper Input Validation vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause kernel crash.

📖 Read

via "National Vulnerability Database".
CVE-2021-37006

There is a Improper Preservation of Permissions vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause the confidentiality of users is affected.

📖 Read

via "National Vulnerability Database".
CVE-2021-37017

There is a Improper Input Validation vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause kernel crash.

📖 Read

via "National Vulnerability Database".
CVE-2021-37007

There is a Out-of-bounds Read vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause kernel crash.

📖 Read

via "National Vulnerability Database".
CVE-2021-37026

There is a Improper Input Validation vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause kernel crash.

📖 Read

via "National Vulnerability Database".
CVE-2021-37031

There is a Remote DoS vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause the app to exit unexpectedly.

📖 Read

via "National Vulnerability Database".
CVE-2021-20601

Improper input validation vulnerability in GOT2000 series GT27 model all versions, GOT2000 series GT25 model all versions, GOT2000 series GT23 model all versions, GOT2000 series GT21 model all versions, GOT SIMPLE series GS21 model all versions, and GT SoftGOT2000 all versions allows an remote unauthenticated attacker to write a value that exceeds the configured input range limit by sending a malicious packet to rewrite the device value. As a result, the system operation may be affected, such as malfunction.

📖 Read

via "National Vulnerability Database".
CVE-2021-37029

There is an Identity verification vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect service availability.

📖 Read

via "National Vulnerability Database".
CVE-2021-37102

There is a command injection vulnerability in CMA service module of FusionCompute product when processing the default certificate file. The software constructs part of a command using external special input from users, but the software does not sufficiently validate the user input. Successful exploit could allow the attacker to inject certain commands to the system. Affected product versions include: FusionCompute 6.0.0, 6.3.0, 6.3.1, 6.5.0, 6.5.1, 8.0.0.

📖 Read

via "National Vulnerability Database".