πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ“’ GitHub goes open source on security research πŸ“’

Community members, enthusiasts, researchers, and academics are now able to submit their own research to widen the understanding of security vulnerabilities

πŸ“– Read

via "ITPro".
πŸ“’ Ten ways to protect your company from the next big data breach πŸ“’

Even big-name corporations can’t prevent all breaches, but there are ways to protect your business

πŸ“– Read

via "ITPro".
πŸ“’ More than 80% of UK businesses paid ransomware demands in 2021 πŸ“’

The figure means UK organisations are twice as likely to pay a ransom demand compared to the global average

πŸ“– Read

via "ITPro".
πŸ“’ Only ever use black bars to redact text, warns security researcher πŸ“’

Researcher Dan Petro shows how pixelation can be easily reversed using algorithms

πŸ“– Read

via "ITPro".
πŸ“’ US pledges to take a 'hands-on' approach to disrupting cyber criminals πŸ“’

The country has promised 'proactivity' on cyber warfare as it launches new government cyber crime taskforces

πŸ“– Read

via "ITPro".
πŸ“’ Why AI and machine learning are vital cybersecurity tools for 2022 πŸ“’

Matt Aldridge, Principal Solutions Consultant at Carbonite + Webroot, explores how understanding of AI/ML is lagging behind

πŸ“– Read

via "ITPro".
πŸ“’ Adobe forced to patch its own failed security update πŸ“’

Company issues new fix for e-commerce vulnerability after researchers bypass the original update

πŸ“– Read

via "ITPro".
πŸ“’ GitHub launches code scanning tool for JavaScript and TypeScript projects πŸ“’

The experimental, machine learning-powered feature aims to identify security vulnerabilities using open source expertise

πŸ“– Read

via "ITPro".
πŸ“’ Microsoft releases analysis of Web3 'ice phishing' attack πŸ“’

New phishing method targets an immature technology stack on the next generation of the internet

πŸ“– Read

via "ITPro".
πŸ“’ NordPass teams up with insurance provider Cowbell Cyber to improve security awareness πŸ“’

Policy holders will be eligible for a 15% discount on NordPass Business

πŸ“– Read

via "ITPro".
β€Ό CVE-2022-0736 β€Ό

Insecure Temporary File in GitHub repository mlflow/mlflow prior to 1.23.1.

πŸ“– Read

via "National Vulnerability Database".
πŸ—“οΈ Google Groups unsubscribe feature abused to remove members without consent πŸ—“οΈ

β€˜This could have destroyed the Google Payment system flow,’ security researcher tells The Daily Swig

πŸ“– Read

via "The Daily Swig".
πŸ‘1
β€Ό CVE-2022-0724 β€Ό

Insecure Storage of Sensitive Information in GitHub repository microweber/microweber prior to 1.3.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-0719 β€Ό

Cross-site Scripting (XSS) - Reflected in GitHub repository microweber/microweber prior to 1.3.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-0721 β€Ό

Insertion of Sensitive Information Into Debugging Code in GitHub repository microweber/microweber prior to 1.3.

πŸ“– Read

via "National Vulnerability Database".
πŸ—“οΈ India’s Personal Data Privacy Bill: What does it mean for individuals and businesses? πŸ—“οΈ

New legislation sets out to bring India in line with international best practice, but what will this look like in action?

πŸ“– Read

via "The Daily Swig".
πŸ›  OpenSSH 8.9p1 πŸ› 

This is a Linux/portable port of OpenBSD's excellent OpenSSH. OpenSSH is based on the last free version of Tatu Ylonen's SSH with all patent-encumbered algorithms removed, all known security bugs fixed, new features reintroduced, and many other clean-ups.

πŸ“– Read

via "Packet Storm Security".
β€Ό CVE-2022-0727 β€Ό

Improper Access Control in GitHub repository chocobozzz/peertube prior to 4.1.0.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-0726 β€Ό

Improper Authorization in GitHub repository chocobozzz/peertube prior to 4.1.0.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-0729 β€Ό

Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 8.2.

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ Why Passwordless Is at an Impasse πŸ•΄

Many widely used business applications aren't built to support passwordless login because identity and authentication remain siloed.

πŸ“– Read

via "Dark Reading".