πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ“’ Apple sues NSO Group over Pegasus attacks on its customers πŸ“’

The lawsuit claims 'flagrant' violations of US federal and state law from the Israeli firm behind the infamous spyware

πŸ“– Read

via "ITPro".
πŸ“’ Thousands of printers at risk of denial of service attacks πŸ“’

Attackers can easily manipulate the 9100 port to hijack hardware and steal data, researchers claim

πŸ“– Read

via "ITPro".
πŸ“’ Wind turbine maker Vestas hit by cyber attack πŸ“’

Danish firm says hackers managed to obtain company data and knock out parts of its IT network

πŸ“– Read

via "ITPro".
πŸ“’ Hackers use Linux backdoor on compromised e-commerce sites with software skimmer πŸ“’

Cyber criminals in China control the malware

πŸ“– Read

via "ITPro".
πŸ“’ CronRat Magecart malware uses 31st February date to remain undetected πŸ“’

The malware allows for server-side payment skimming that bypasses browser security

πŸ“– Read

via "ITPro".
πŸ“’ Iranian hackers ramp up attacks against IT services sector πŸ“’

Microsoft security researchers warn hacking is part of broader cyber espionage effort

πŸ“– Read

via "ITPro".
πŸ“’ Fifth of UK security pros discriminated against in 2021 πŸ“’

The NCSC’s and KPMG’s Diversity and inclusion in cyber security report studied the obstacles faced by cyber security professionals

πŸ“– Read

via "ITPro".
πŸ“’ Meta delays product-wide end-to-end encryption rollout until 2023 πŸ“’

The company wants to 'take its time' to implement the technology in a way that both protects privacy and prevents exposure to online harms

πŸ“– Read

via "ITPro".
πŸ“’ Microsoft patch fails to fix Installer zero-day affecting every version of Windows πŸ“’

The exploit allows hackers to elevate privileges and create admin accounts

πŸ“– Read

via "ITPro".
πŸ“’ ID.me and Sterling Check partner on in-person identity verification πŸ“’

The joint solution improves equity and access to government benefits

πŸ“– Read

via "ITPro".
πŸ“’ Investors warned to be vigilant of fake SEC alerts πŸ“’

Hackers are targeting victims using phone calls and voice mails about cryptocurrency transactions

πŸ“– Read

via "ITPro".
πŸ•΄ Government-Industry Cooperation May Be the Most Potent Ransomware Antidote πŸ•΄

The side that's better at collaborating with allies will have the upper hand, and until now, that distinction has gone to the cybercriminals.

πŸ“– Read

via "Dark Reading".
❌ Panasonic’s Data Breach Leaves Open Questions ❌

Cyberattackers had unfettered access to the technology giant's file server for four months.

πŸ“– Read

via "Threat Post".
❌ Finland Faces Blizzard of FluBot-Spreading Text Messages ❌

Millions of texts leading to the Flubot spyware/banking trojan are targeting everyone who uses Androids in the country, in an "exceptional" attack.

πŸ“– Read

via "Threat Post".
β€Ό CVE-2021-38967 β€Ό

IBM MQ Appliance 9.2 CD and 9.2 LTS could allow a local privileged user to inject and execute malicious code. IBM X-Force ID: 212441.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-39000 β€Ό

IBM MQ Appliance 9.2 CD and 9.2 LTS could allow a local attacker to obtain sensitive information by inclusion of sensitive data within diagnostics. IBM X-Force ID: 213215.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-38958 β€Ό

IBM MQ Appliance 9.2 CD and 9.2 LTS is affected by a denial of service attack caused by a concurrency issue. IBM X-Force ID: 212042

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-38999 β€Ό

IBM MQ Appliance could allow a local attacker to obtain sensitive information by inclusion of sensitive data within trace.

πŸ“– Read

via "National Vulnerability Database".
❌ Lloyd’s Carves Out Cyber-Insurance Exclusions for State-Sponsored Attacks ❌

The insurer won’t pay for 'acts of cyber-war' or nation-state retaliation attacks.   

πŸ“– Read

via "Threat Post".
πŸ•΄ Attacker Sentenced in Multimillion-Dollar SIM Hijacking Scheme πŸ•΄

A sixth member of international hacking group The Community was sentenced to 10 months in prison and ordered to pay $121,549.37 in restitution.

πŸ“– Read

via "Dark Reading".
❌ How Decryption of Network Traffic Can Improve Security ❌

Most industry analyst firms conclude that between 80-90 percent of network traffic is encrypted today. Jeff Costlow, CISO at ExtraHop, explains why this might not be a good thing.

πŸ“– Read

via "Threat Post".