πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ•΄ Cyber Insurance and War Exclusions πŸ•΄

Here's what a cybersecurity lawyer thinks security pros need to know in light of Russia's invasion of Ukraine.

πŸ“– Read

via "Dark Reading".
πŸ•΄ Could Gaming Close the Cyberskills Gap? πŸ•΄

The Wicked6 hackathon helps women to develop their professional cybersecurity skills while networking and playing games.

πŸ“– Read

via "Dark Reading".
⚠ Serious Security: DEADBOLT – the ransomware that goes straight for for your backups ⚠

Some tips on how to keep your network safe - even (or perhaps especially!) if you think you're safe already.

πŸ“– Read

via "Naked Security".
β€Ό CVE-2021-43736 β€Ό

CmsWing CMS 1.3.7 is affected by a Remote Code Execution (RCE) vulnerability via parameter: log rule

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-43738 β€Ό

An issue was discovered in xiaohuanxiong CMS 5.0.17. There is a CSRF vulnerability that can that can add the administrator account.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-22316 β€Ό

IBM MQ Appliance 9.2 CD and 9.2 LTS could allow an authenticated and authorized user to cause a denial of service due to incorrectly configured authorization checks. IBM X-Force ID: 218276.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-44139 β€Ό

Sentinel 1.8.2 is vulnerable to Server-side request forgery (SSRF).

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-43737 β€Ό

An issus was discovered in xiaohuanxiong CMS 5.0.17. There is a CSRF vulnerability that can modify administrator account's password.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-43735 β€Ό

CmsWing 1.3.7 is affected by a SQLi vulnerability via parameter: behavior rule.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-23242 β€Ό

TeamViewer Linux versions before 15.28 do not properly execute a deletion command for the connection password in case of a process crash. Knowledge of the crash event and the TeamViewer ID as well as either possession of the pre-crash connection password or local authenticated access to the machine would have allowed to establish a remote connection by reusing the not properly deleted connection password.

πŸ“– Read

via "National Vulnerability Database".
πŸ” Cybercrime Cost U.S. $6.9 Billion in 2021 πŸ”

The FBI's annual look at phishing, scam, and personal data breach statistics is out.

πŸ“– Read

via "".
πŸ•΄ Okta Says 366 Customers Impacted via Third-Party Breach πŸ•΄

Microsoft meanwhile confirms Lapsus$ group compromised it as well and issues warning on threat actor.

πŸ“– Read

via "Dark Reading".
πŸ•΄ FBI: Cybercrime Victims Suffered Losses of Over $6.9B in 2021 πŸ•΄

The Internet Crime Complaint Center fielded 847,376 cybercrime reports last year, an increase of 7% from 2020.

πŸ“– Read

via "Dark Reading".
β€Ό CVE-2021-38278 β€Ό

Tenda AC10-1200 v15.03.06.23_EN was discovered to contain a buffer overflow via the urls parameter in the saveParentControlInfo function.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-46064 β€Ό

IrfanView 4.59 is vulnerable to buffer overflow via the function at address 0x413c70 (in 32bit version of the binary). The vulnerability triggers when the user opens malicious .tiff image.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-26243 β€Ό

Tenda AC10-1200 v15.03.06.23_EN was discovered to contain a buffer overflow in the setSmartPowerManagement function.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2021-38772 β€Ό

Tenda AC10-1200 v15.03.06.23_EN was discovered to contain a buffer overflow via the list parameter in the fromSetIpMacBind function.

πŸ“– Read

via "National Vulnerability Database".
β™ŸοΈ A Closer Look at the LAPSUS$ Data Extortion Group β™ŸοΈ

Microsoft and identity management platform Okta both disclosed this week breaches involving LAPSUS$, a relatively new cybercrime group that specializes in stealing data from big companies and threatening to publish the information unless a ransom demand is paid. Here's a closer look at LAPSUS$, and some of the low-tech but high-impact methods the group uses to gain access to targeted organizations.

πŸ“– Read

via "Krebs on Security".
β€Ό CVE-2021-3748 β€Ό

A use-after-free vulnerability was found in the virtio-net device of QEMU. It could occur when the descriptor's address belongs to the non direct access region, due to num_buffers being set after the virtqueue elem has been unmapped. A malicious guest could use this flaw to crash QEMU, resulting in a denial of service condition, or potentially execute code on the host with the privileges of the QEMU process.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-25223 β€Ό

Money Transfer Management System Version 1.0 allows an authenticated user to inject SQL queries in 'mtms/admin/?page=transaction/view_details' via the 'id' parameter.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-23881 β€Ό

ZZZCMS zzzphp v2.1.0 was discovered to contain a remote command execution (RCE) vulnerability via danger_key() at zzz_template.php.

πŸ“– Read

via "National Vulnerability Database".