🛡 Cybersecurity & Privacy 🛡 - News
25.8K subscribers
89.2K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
📢 Authorities finally confirm leading hacker platform RaidForums has been seized 📢

A 21-year-old was arrested in the UK in connection with the prolific hacker platform

📖 Read

via "ITPro".
📢 Denonia named as first malware to target AWS Lambda platform 📢

Deployment demonstrates how attackers are using advanced cloud-specific knowledge to exploit complex cloud infrastructure, Cado Security says

📖 Read

via "ITPro".
📢 DuckDuckGo app arrives on Mac 📢

New browser app comes with a cookie popup blocker and a password manager

📖 Read

via "ITPro".
📢 Ransomware activity falls 25% in Q1 2022 📢

The drop in ransomware has been attributed to larger ransomware gangs being less active compared to the end of 2021

📖 Read

via "ITPro".
📢 Critical security flaw discovered in NFT marketplace Rarible 📢

If exploited, the vulnerability could have led to the theft of NFTs and crypto tokens in a single transaction

📖 Read

via "ITPro".
📢 The pros and cons of net neutrality 📢

Still on the fence about net neutrality? Here are both sides of the argument

📖 Read

via "ITPro".
📢 T-Mobile allegedly tried to buy leaked data from a hacker forum for $200k 📢

The stolen information was still up for sale long after payment, court papers suggest

📖 Read

via "ITPro".
📢 17 Windows 10 problems - and how to fix them 📢

Tips and tricks for everything from upgrade issues and freeing up storage, to solving privacy errors and using safe mode

📖 Read

via "ITPro".
📢 Shiseido reportedly suffers data breach 📢

The Japanese cosmetics company has been accused of failing to notify affected staff of the leak

📖 Read

via "ITPro".
📢 Microsoft's massive 145-vulnerability Patch Tuesday fixes ten critical exploits 📢

This month's round of patches is now available with some exploits proving to be particularly dangerous

📖 Read

via "ITPro".
📢 Palo Alto Networks' new tool shields businesses from unsecure home networks 📢

Okyo Garde Enterprise Edition separates corporate and personal Wi-Fi to prevent lateral threats

📖 Read

via "ITPro".
📢 Thoma Bravo acquires SailPoint for $6.9 billion 📢

Following the acquisition, SailPoint will no longer be listed on any public market

📖 Read

via "ITPro".
📢 Darktrace AI’s Antigena helps stop ransomware attack at Dordogne GHT 📢

Ryuk had previously overthrown city councils and attacked over 200 US hospitals in 2021

📖 Read

via "ITPro".
📢 Businesses warned to protect against suite of nation-state hacking tools targeting critical infrastructure 📢

A new malware framework capable of disrupting multiple different types of IT and OT devices has been observed by US authorities, placing potentially vulnerable businesses on high alert

📖 Read

via "ITPro".
📢 Certified ethical hacker and IT manager steals $575,000 in cryptocurrency from elderly person 📢

The practising IT manager stole the huge sum from an elderly person after being hired to fit a home security system

📖 Read

via "ITPro".
CVE-2022-1380

Stored Cross Site Scripting vulnerability in Item name parameter in GitHub repository snipe/snipe-it prior to v5.4.3. The vulnerability is capable of stolen the user Cookie.

📖 Read

via "National Vulnerability Database".
CVE-2022-26653

Zoho ManageEngine Remote Access Plus before 10.1.2137.15 allows guest users to view domain details (such as the username and GUID of an administrator).

📖 Read

via "National Vulnerability Database".
👍1
CVE-2022-26777

Zoho ManageEngine Remote Access Plus before 10.1.2137.15 allows guest users to view license details.

📖 Read

via "National Vulnerability Database".
CVE-2022-28966

Wasm3 0.5.0 has a heap-based buffer overflow in NewCodePage in m3_code.c (called indirectly from Compile_BranchTable in m3_compile.c).

📖 Read

via "National Vulnerability Database".
👍1
CVE-2022-1381

global heap buffer overflow in skip_range in GitHub repository vim/vim prior to 8.2. This vulnerability is capable of crashing software, Bypass Protection Mechanism, Modify Memory, and possible remote execution

📖 Read

via "National Vulnerability Database".
CVE-2022-1383

Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.6.8. The bug causes the program reads data past the end of the intented buffer. Typically, this can allow attackers to read sensitive information from other memory locations or cause a crash.

📖 Read

via "National Vulnerability Database".