🛡 Cybersecurity & Privacy 🛡 - News
25.8K subscribers
89.2K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
📢 Ransomware and Microsoft 365 for business 📢

What you need to know about reducing ransomware risk

📖 Read

via "ITPro".
📢 What is the Computer Misuse Act? 📢

If your computer systems are attacked, is the law effective enough to put those criminals behind bars?

📖 Read

via "ITPro".
👍1
📢 The sweet spot of modern enterprise computing 📢

Achieve security, reliability, scalability, and sustainability with hybrid IT infrastructure

📖 Read

via "ITPro".
📢 Google will cull out-of-date Play store apps in bid to improve Android security 📢

The rules will take effect later this year and could see unsupported apps de-listed from the store

📖 Read

via "ITPro".
📢 Report: Apple "neglects" to patch zero-days for older macOS versions 📢

Analysis shows large proportion of Macs in operation remain unprotected to the actively exploited flaws patched last week

📖 Read

via "ITPro".
📢 How a platform approach to security monitoring initiatives adds value 📢

Integration, orchestration, analytics, automation, and the need for speed

📖 Read

via "ITPro".
📢 UK retailer The Works suffers ransomware attack leading to store closures 📢

An employee falling victim to a malicious phishing email facilitated the attack but customer payment data has not been compromised

📖 Read

via "ITPro".
📢 Unified endpoint management solutions 2021-22 📢

Analysing the UEM landscape

📖 Read

via "ITPro".
📢 Google claims US government is too reliant on unsecure Microsoft products 📢

The tech giant suggested it might be time for the government to rethink its approach to procurement

📖 Read

via "ITPro".
📢 Six myths of SIEM 📢

Things have changed when it comes to SIEM solutions

📖 Read

via "ITPro".
🤯1
📢 Microsoft 365 protection made MSPEasy 📢

The cloud protection solution built for MSPs

📖 Read

via "ITPro".
CVE-2022-1219

SQL injection in RecyclebinController.php in GitHub repository pimcore/pimcore prior to 10.3.5. This vulnerability is capable of steal the data

📖 Read

via "National Vulnerability Database".
CVE-2022-27352

Simple House Rental System v1 was discovered to contain an arbitrary file upload vulnerability via /app/register.php. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file.

📖 Read

via "National Vulnerability Database".
CVE-2022-27357

Ecommerce-Website v1 was discovered to contain an arbitrary file upload vulnerability via /customer_register.php. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file.

📖 Read

via "National Vulnerability Database".
CVE-2022-28805

singlevar in lparser.c in Lua through 5.4.4 lacks a certain luaK_exp2anyregup call, leading to a heap-based buffer over-read that might affect a system that compiles untrusted Lua code.

📖 Read

via "National Vulnerability Database".
CVE-2022-28796

jbd2_journal_wait_updates in fs/jbd2/transaction.c in the Linux kernel before 5.17.1 has a use-after-free caused by a transaction_t race condition.

📖 Read

via "National Vulnerability Database".
CVE-2022-27061

AeroCMS v0.0.1 was discovered to contain an arbitrary file upload vulnerability via the Post Image function under the Admin panel. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file.

📖 Read

via "National Vulnerability Database".
CVE-2022-26624

Bootstrap v3.1.11 and v3.3.7 was discovered to contain a cross-site scripting (XSS) vulnerability via the Title parameter in /vendor/views/add_product.php.

📖 Read

via "National Vulnerability Database".
CVE-2022-27349

Social Codia SMS v1 was discovered to contain an arbitrary file upload vulnerability via addteacher.php. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file.

📖 Read

via "National Vulnerability Database".
CVE-2022-27991

Online Banking System in PHP v1 was discovered to contain multiple SQL injection vulnerabilities at /staff_login.php via the Staff ID and Staff Password parameters.

📖 Read

via "National Vulnerability Database".
CVE-2022-27351

Zoo Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via /public_html/apply_vacancy. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file.

📖 Read

via "National Vulnerability Database".