πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
ATENTIONβ€Ό New - CVE-2018-16257

There are multiple XSS vulnerabilities in WP All Import plugin 3.4.9 for WordPress via action=template.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2018-16256 (wp_all_import)

There is an XSS vulnerability in WP All Import plugin 3.4.9 for WordPress via Add Filtering Options(Add Rule).

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2018-16255

There is an XSS vulnerability in WP All Import plugin 3.4.9 for WordPress via action=evaluate.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2018-16254

There is an XSS vulnerability in WP All Import plugin 3.4.9 for WordPress via action=options.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2018-13137

The Events Manager plugin 5.9.4 for WordPress has XSS via the dbem_event_reapproved_email_body parameter to the wp-admin/edit.php?post_type=event&page=events-manager-options URI.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2017-7772

Heap-based Buffer Overflow in Graphite2 library in Firefox before 54 in lz4::decompress function.

πŸ“– Read

via "National Vulnerability Database".
⚠ Is there a link between videogaming and cybercrime? Police think so ⚠

UK police are planning to issue online warnings to young gamers hoping to deter them from a life of cybercrime, they revealed last week.

πŸ“– Read

via "Naked Security".
⚠ Microsoft’s Edge browser reborn after Chromium makeover ⚠

After three years of embarrassing rejection, might Microsoft’s newly-Chromed Edge browser be on the up?

πŸ“– Read

via "Naked Security".
⚠ Flood of exploits targetting ancient WinRAR flaw continues ⚠

An ancient WinRAR vulnerability made public in February is now well on its way to becoming one of the most widely and rapidly-exploited security flaws of recent times.

πŸ“– Read

via "Naked Security".
❌ Microsoft Outlook Breach Widens in Scope, Impacting MSN And Hotmail – Report ❌

A Microsoft Outlook breach that was disclosed on Friday is thought to be much larger than previously said, a new report found.

πŸ“– Read

via "Threatpost".
πŸ” Hackers accessed Outlook.com users' emails: How to secure your personal information πŸ”

Microsoft has declined to disclose how many users were affected by the breach, though the knock-on effects can be significant. Here's what professionals should do in the wake of the breach.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ The Single Cybersecurity Question Every CISO Should Ask πŸ•΄

The answer can lead to a scalable enterprise security solution for 2019 and beyond.

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2017-7777

Use of uninitialized memory in Graphite2 library in Firefox before 54 in graphite2::GlyphCache::Loader::read_glyph function.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2017-7776

Heap-based Buffer Overflow read in Graphite2 library in Firefox before 54 in graphite2::Silf::getClassGlyph.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2017-7774

Out-of-bounds read in Graphite2 Library in Firefox before 54 in graphite2::Silf::readGraphite function.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2017-7773

Heap-based Buffer Overflow write in Graphite2 library in Firefox before 54 in lz4::decompress src/Decompressor.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2017-7771

Out-of-bounds read in Graphite2 Library in Firefox before 54 in graphite2::Pass::readPass function.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2017-18366

Subrion CMS 4.1.5 has CSRF in blog/delete/.

πŸ“– Read

via "National Vulnerability Database".
πŸ” How to configure the Enpass clipboard timeout πŸ”

Jack Wallen shows you how to eke out a bit more security from the Enpass Password Manager, by changing the clipboard timeout.

πŸ“– Read

via "Security on TechRepublic".
πŸ” How to improve cybersecurity for your business: 6 tips πŸ”

Business cyber risks rates are holding steady for US companies, according to the US Chamber of Commerce and FICO. Here's how to stay safe.

πŸ“– Read

via "Security on TechRepublic".
❌ Authentication Bypass Bug Hits Top Enterprise VPNs ❌

Business users of Cisco, F5 Networks, Palo Alto Networks and Pulse Secure platforms are impacted, according the U.S. government.

πŸ“– Read

via "Threatpost".