πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ“’ The UK's IoT proposals are riddled with β€˜astonishing’ gaps πŸ“’

The Product Security and Telecommunications Infrastructure (PTSI) Bill aims to address the connected devices security nightmare, but experts agree it doesn’t go far enough

πŸ“– Read

via "ITPro".
πŸ“’ Windows Server admins agree to forgo broken patches πŸ“’

Many administrators have agreed to wait until February's round of patches to avoid operational disruption caused by broken fixes

πŸ“– Read

via "ITPro".
πŸ“’ Russia's "politically motivated" REvil raid could be used as leverage, experts warn πŸ“’

The cyber security industry says the FSB's arrests are β€œunlikely” to signal a change in Russia’s policy

πŸ“– Read

via "ITPro".
πŸ“’ FireEye and McAfee Enterprise relaunch as Trellix πŸ“’

The new pure-play cyber security firm’s platform combines automation, machine learning, and threat intelligence

πŸ“– Read

via "ITPro".
πŸ“’ White House issues memorandum to bolster national security systems πŸ“’

Agencies must now implement multi-factor authentication within 180 days, along with encryption for data at rest and in transit

πŸ“– Read

via "ITPro".
πŸ“’ Red Cross "appalled" by data breach targeting 515,000 vulnerable people πŸ“’

The charitable organisation has begged cyber attackers not to leak the data online in emotional plea

πŸ“– Read

via "ITPro".
πŸ“’ DHL overtakes Microsoft as the most imitated brand in phishing attacks πŸ“’

Check Point Research reveals that the logistics giant accounted for almost a quarter of global phishing attacks in 2021

πŸ“– Read

via "ITPro".
πŸ“’ UK and Australia partner on cyber security investment πŸ“’

The countries are set to invest in infrastructure for Indo-Pacific states as well, in the areas of energy, investment, and technology

πŸ“– Read

via "ITPro".
πŸ“’ Ransomware: Why only the bravest businesses will survive πŸ“’

With ransomware attacks a matter of when, not if, the secret to protecting your reputation lies in honesty and transparency

πŸ“– Read

via "ITPro".
πŸ“’ NordVPN launches open source VPN speed testing tool πŸ“’

The unified speed-testing software can be downloaded from GitHub

πŸ“– Read

via "ITPro".
πŸ“’ The government’s anti-encryption campaign shows it’s learned nothing from the war on drugs πŸ“’

Criminalisation has almost always backfired through history, pushing illicit materials further into the hands of criminals

πŸ“– Read

via "ITPro".
β€Ό CVE-2022-21933 β€Ό

ASUS VivoMini/Mini PC device has an improper input validation vulnerability. A local attacker with system privilege can use system management interrupt (SMI) to modify memory, resulting in arbitrary code execution for controlling the system or disrupting service.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-0326 β€Ό

NULL Pointer Dereference in Homebrew mruby prior to 3.2.

πŸ“– Read

via "National Vulnerability Database".
πŸ—“οΈ BitLocker encryption: Clear text key storage prompts security debate online πŸ—“οΈ

Many are questioning why keys are saved in the clear ahead of sign-in

πŸ“– Read

via "The Daily Swig".
β€Ό CVE-2022-0318 β€Ό

Heap-based Buffer Overflow in Conda vim prior to 8.2.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-0329 β€Ό

Code Injection in Conda loguru prior to master.

πŸ“– Read

via "National Vulnerability Database".
πŸ—“οΈ Open debug mode in Cisco mobile networking software created critical security hole πŸ—“οΈ

Patch issued after testing engineers uncover RCE threat

πŸ“– Read

via "The Daily Swig".
❌ Spyware Blitzes Compromise, Cannibalize ICS Networks ❌

The brief spearphishing campaigns spread malware and use compromised networks to steal credentials that can be sold or used to commit financial fraud.

πŸ“– Read

via "Threat Post".
πŸ•΄ Looking Beyond Biden's Binding Security Directive πŸ•΄

Implementing these and other security procedures will greatly improve the security posture of the United States and its private partners.

πŸ“– Read

via "Dark Reading".
β€Ό CVE-2022-0319 β€Ό

Out-of-bounds Read in Conda vim prior to 8.2.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2020-19858 β€Ό

Platinum Upnp SDK through 1.2.0 has a directory traversal vulnerability. The attack could remote attack victim by sending http://ip:port/../privacy.avi URL to compromise a victim's privacy.

πŸ“– Read

via "National Vulnerability Database".