🛡 Cybersecurity & Privacy 🛡 - News
25.8K subscribers
89.2K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
🕴 Upgrades for Spring Framework Have Stalled 🕴

Upgrading and fixing the vulnerability in the Spring Framework doesn't seem to have the same level of urgency or energy as patching the Log4j library did back in December

📖 Read

via "Dark Reading".
👍1
📢 Cloud security market to hit $106 billion by 2029 📢

The Asian-Pacific region is expected to see the highest growth rate over the forecast period

📖 Read

via "ITPro".
📢 Authorities finally confirm leading hacker platform RaidForums has been seized 📢

A 21-year-old was arrested in the UK in connection with the prolific hacker platform

📖 Read

via "ITPro".
📢 Denonia named as first malware to target AWS Lambda platform 📢

Deployment demonstrates how attackers are using advanced cloud-specific knowledge to exploit complex cloud infrastructure, Cado Security says

📖 Read

via "ITPro".
📢 DuckDuckGo app arrives on Mac 📢

New browser app comes with a cookie popup blocker and a password manager

📖 Read

via "ITPro".
📢 Ransomware activity falls 25% in Q1 2022 📢

The drop in ransomware has been attributed to larger ransomware gangs being less active compared to the end of 2021

📖 Read

via "ITPro".
📢 Critical security flaw discovered in NFT marketplace Rarible 📢

If exploited, the vulnerability could have led to the theft of NFTs and crypto tokens in a single transaction

📖 Read

via "ITPro".
📢 The pros and cons of net neutrality 📢

Still on the fence about net neutrality? Here are both sides of the argument

📖 Read

via "ITPro".
📢 T-Mobile allegedly tried to buy leaked data from a hacker forum for $200k 📢

The stolen information was still up for sale long after payment, court papers suggest

📖 Read

via "ITPro".
📢 17 Windows 10 problems - and how to fix them 📢

Tips and tricks for everything from upgrade issues and freeing up storage, to solving privacy errors and using safe mode

📖 Read

via "ITPro".
📢 Shiseido reportedly suffers data breach 📢

The Japanese cosmetics company has been accused of failing to notify affected staff of the leak

📖 Read

via "ITPro".
📢 Microsoft's massive 145-vulnerability Patch Tuesday fixes ten critical exploits 📢

This month's round of patches is now available with some exploits proving to be particularly dangerous

📖 Read

via "ITPro".
📢 Palo Alto Networks' new tool shields businesses from unsecure home networks 📢

Okyo Garde Enterprise Edition separates corporate and personal Wi-Fi to prevent lateral threats

📖 Read

via "ITPro".
📢 Thoma Bravo acquires SailPoint for $6.9 billion 📢

Following the acquisition, SailPoint will no longer be listed on any public market

📖 Read

via "ITPro".
📢 Darktrace AI’s Antigena helps stop ransomware attack at Dordogne GHT 📢

Ryuk had previously overthrown city councils and attacked over 200 US hospitals in 2021

📖 Read

via "ITPro".
📢 Businesses warned to protect against suite of nation-state hacking tools targeting critical infrastructure 📢

A new malware framework capable of disrupting multiple different types of IT and OT devices has been observed by US authorities, placing potentially vulnerable businesses on high alert

📖 Read

via "ITPro".
📢 Certified ethical hacker and IT manager steals $575,000 in cryptocurrency from elderly person 📢

The practising IT manager stole the huge sum from an elderly person after being hired to fit a home security system

📖 Read

via "ITPro".
CVE-2022-1380

Stored Cross Site Scripting vulnerability in Item name parameter in GitHub repository snipe/snipe-it prior to v5.4.3. The vulnerability is capable of stolen the user Cookie.

📖 Read

via "National Vulnerability Database".
CVE-2022-26653

Zoho ManageEngine Remote Access Plus before 10.1.2137.15 allows guest users to view domain details (such as the username and GUID of an administrator).

📖 Read

via "National Vulnerability Database".
👍1
CVE-2022-26777

Zoho ManageEngine Remote Access Plus before 10.1.2137.15 allows guest users to view license details.

📖 Read

via "National Vulnerability Database".
CVE-2022-28966

Wasm3 0.5.0 has a heap-based buffer overflow in NewCodePage in m3_code.c (called indirectly from Compile_BranchTable in m3_compile.c).

📖 Read

via "National Vulnerability Database".
👍1