πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.9K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
⚠ Ungagged Google warns users about FBI accessing their accounts ⚠

Some of those who received the letters conjecture that it may be because they purchased the LuminosityLink RAT.

πŸ“– Read

via "Naked Security".
⚠ Thousands of unsecured 3D printers discovered online ⚠

With access control disabled, other people could download previous print files, or even maliciously damage the printer.

πŸ“– Read

via "Naked Security".
❌ High-Severity Flaws in Cisco Secure Internet Gateway Service Patched ❌

The two bugs were disclosed Wednesday in Cisco Umbrella, the tech giant's cloud-based security service.

πŸ“– Read

via "The first stop for security news | Threatpost ".
⚠ Social Security numbers exposed on US government transparency site ⚠

The US government exposed dozens of people's’ personal details, including social security numbers, due to an online mishap on a public transparency portal.

πŸ“– Read

via "Naked Security".
⚠ Mobile spyware maker mSpy leaks millions of records – AGAIN ⚠

The irony: Parents put it on kids' phones to protect them, but this breach exposed sensitive data including Whatsapp and Facebook messages.

πŸ“– Read

via "Naked Security".
ATENTIONβ€Ό New - CVE-2017-1000600

WordPress version <4.9 contains a CWE-20 Input Validation vulnerability in thumbnail processing that can result in remote code execution. This attack appears to be exploitable via thumbnail upload by an authenticated user and may require additional plugins in order to be exploited however this has not been confirmed at this time. This issue appears to have been partially, but not completely fixed in WordPress 4.9

πŸ“– Read

via "National Vulnerability Database".
❌ Mozilla’s Release of Firefox 62 Packs Nine Fixes ❌

The slew of fixes address a critical vulnerability that could enable memory corruption.

πŸ“– Read

via "The first stop for security news | Threatpost ".
πŸ•΄ Understanding & Solving the Information-Sharing Challenge πŸ•΄

Why cybersecurity threat feeds from intel-sharing groups diminish in value and become just another source of noise. (And what to do about it.)

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ US to Charge North Korea for Sony Breach, WannaCry πŸ•΄

The DoJ plans to charge North Korean threat actors for their involvement in two major cyberattacks, US officials report.

πŸ“– Read

via "Dark Reading: ".
❌ Active Spy Campaign Exploits Unpatched Windows Zero-Day ❌

The PowerPool gang launched its attack just two days after the zero-day in the Windows Task Scheduler was disclosed.

πŸ“– Read

via "The first stop for security news | Threatpost ".
πŸ•΄ The SOC Gets a Makeover πŸ•΄

Today's security operations center is all about reducing the number of alerts with emerging technologies - and enhancing old-school human collaboration. Here's how some real-world SOCs are evolving.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Why a Healthy Data Diet Is the Secret to Healthy Security πŸ•΄

In the same way that food is fuel to our bodies, data is the fuel on which our security programs run. Here are 10 action items to put on your cybersecurity menu.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Report: Data Breaches Hit Share Prices, Too πŸ•΄

A data breach has a measurable impact on stock price, according to a report looking at incidents from the past six years

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2017-14026

In Ice Qube Thermal Management Center versions prior to version 4.13, the web application does not properly authenticate users which may allow an attacker to gain access to sensitive information.

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ Take (Industrial) Control: A Look at the 2018 ICS Threat Landscape πŸ•΄

New research sheds light on the biggest threats to strike ICS systems in the first half of 2018, and what's in store for the rest of this year.

πŸ“– Read

via "Dark Reading: ".
❌ U.S. Ties Lazarus to North Korea and Major Hacking Conspiracy ❌

The DoJ said a DPRK spy, Park Jin-hyok, was involved in β€œa conspiracy to conduct multiple destructive cyberattacks around the world."

πŸ“– Read

via "The first stop for security news | Threatpost ".
πŸ•΄ The Best Way To Secure US Elections? Paper Ballots πŸ•΄

Voting machines that do not provide a paper trail or cannot be independently audited should immediately be removed, concludes a new report from the National Academies of Sciences, Engineering, and Medicine.

πŸ“– Read

via "Dark Reading: ".
❌ ThreatList: Attacks on Industrial Control Systems on the Rise ❌

The main source of infection on industrial control systems was the internet, researchers at Kaspersky Lab found in a new report.

πŸ“– Read

via "The first stop for security news | Threatpost ".
⚠ Dark web sites could be exposed by routine slip-up ⚠

A simple misconfiguration could expose the IP addresses of dark web sites.

πŸ“– Read

via "Naked Security".
⚠ Firefox finally casts Windows XP users adrift ⚠

Mozilla's browser is waving goodbye to millions of XP holdouts.

πŸ“– Read

via "Naked Security".
❌ Top MacOS App Exfiltrates Browser Histories Behind Users’ Backs ❌

A macOS App called Adware Doctor blocks ads, but share’s user browser history with a China-based domain.

πŸ“– Read

via "The first stop for security news | Threatpost ".