πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ” How to install the OPNsense Firewall/Router Linux distribution πŸ”

Need a dedicated firewall appliance? OPNsense is a free, open-source solution, ready to protect your network from intrusion.

πŸ“– Read

via "Security on TechRepublic".
❌ Easter Attack Affects Half a Billion Apple iOS Users via Chrome Bug ❌

The U.S-focused eGobbler malvertising attacks are exploiting an unpatched Google Chrome bug.

πŸ“– Read

via "Threatpost".
πŸ•΄ Former Student Admits to USB Killer Attack πŸ•΄

An Indian national used device to attack computers and peripherals at a New York college.

πŸ“– Read

via "Dark Reading: ".
πŸ” Breaking Down the Best Practices & Tools for Data-Centric Audit and Protection (DCAP) πŸ”

Data classification, discovery, and encryption: We reached out to 18 security experts for insight on implementing a data-centric audit and protection program in an organization.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
❌ Poll: Facebook Harvests Email Contacts for 1.5M Users – Is Enough, Enough? ❌

Take our short poll on how far Facebook can push its luck.

πŸ“– Read

via "Threatpost".
ATENTIONβ€Ό New - CVE-2016-10746

libvirt-domain.c in libvirt before 1.3.1 supports virDomainGetTime API calls by guest agents with an RO connection, even though an RW connection was supposed to be required, a different vulnerability than CVE-2019-3886.

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ How to Raise the Level of AppSec Competency in Your Organization πŸ•΄

Improving processes won't happen overnight, but it's not complicated either.

πŸ“– Read

via "Dark Reading: ".
❌ Shopify Flaw Exposed Thousands of Merchants’ Revenue, Traffic Numbers ❌

The flaw, which existed in a Shopify API endpoint, has been patched.

πŸ“– Read

via "Threatpost".
πŸ•΄ The Cybersecurity Automation Paradox πŸ•΄

Recent studies show that before automation can reduce the burden on understaffed cybersecurity teams, they need to bring in enough automation skills to run the tools.

πŸ“– Read

via "Dark Reading: ".
❌ Weather Channel Knocked Off-Air in Dangerous Precedent ❌

The incident was the work of malicious cyberattackers.

πŸ“– Read

via "Threatpost".
ATENTIONβ€Ό New - CVE-2018-16878

A flaw was found in pacemaker up to and including version 2.0.1. An insufficient verification inflicted preference of uncontrolled processes can lead to DoS

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2018-16877

A flaw was found in the way pacemaker's client-server authentication was implemented in versions up to and including 2.0.0. A local attacker could use this flaw, and combine it with other IPC weaknesses, to achieve local privilege escalation.

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ Cloud Security Spend Set to Reach $12.6B by 2023 πŸ•΄

Growth corresponds with a greater reliance on public cloud services.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ 6 Takeaways from Ransomware Attacks in Q1 πŸ•΄

Customized, targeted ransomware attacks were all the rage.

πŸ“– Read

via "Dark Reading: ".
πŸ” GDPR: A cheat sheet πŸ”

Enforcement of the EU General Data Protection Regulation (GDPR) applies to any company that transacts with European Union citizens. Here's your GDPR go-to guide.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Cisco Issues 31 Mid-April Security Alerts πŸ•΄

Among them, two are critical and six are of high importance.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Third-Party Cyber-Risk by the Numbers πŸ•΄

Recent stats show that the state of third-party cyber-risk and vendor risk management remains largely immature at most organizations.

πŸ“– Read

via "Dark Reading: ".
πŸ” Hackers are targeting these employees the most (hint: it's not the C-suite πŸ”

Cybercriminals are turning their attention away from the C-suite, though they are still targeting users with high levels of access.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Why We Need a 'Cleaner Internet' πŸ•΄

Introducing a Β‘Cleaner InternetΒ’

πŸ“– Read

via "Dark Reading: ".
⚠ Facebook: we logged 100x more Instagram plaintext passwords than we thought ⚠

Facebook has updated 'tens of thousands of plaintext Instagram passwords ended up in logfile' to say it was more like a million.

πŸ“– Read

via "Naked Security".