πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ” Tech news roundup: Microsoft Office 365, Facebook scandal, and AI adoption πŸ”

Karen Roby highlights some of this weeks news coverage on TechRepublic and ZDNet. The stories include a security warning from Microsoft, a rundown of the Facebook privacy scandal and a look at the highest paying internships for 2019.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Tech news roundup: Microsoft Office 365, Facebook scandal, and AI adoption πŸ”

Karen Roby highlights some of this weeks news coverage on TechRepublic and ZDNet. The stories include a security warning from Microsoft, a rundown of the Facebook privacy scandal and a look at the highest paying internships for 2019.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Why MDS vulnerabilities present a threat as serious as Spectre and Meltdown πŸ”

Microarchitectural Data Sampling are CPU side-channel vulnerabilities that allow attackers to view in-flight data from CPU-internal buffers. Learn more about MDS attacks in this comprehensive guide.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Spectre and Meltdown explained: A comprehensive guide for professionals πŸ”

Staying up to date on Spectre and Meltdown can be challenging. This guide includes in-depth explanations about these uniquely dangerous security vulnerabilities and the best mitigation solutions.

πŸ“– Read

via "Security on TechRepublic".
ATENTIONβ€Ό New - CVE-2016-7043

It has been reported that KIE server and Busitess Central before version 7.21.0.Final contain username and password as plaintext Java properties. Any app deployed on the same server would have access to these properties, thus granting access to ther services.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2013-7285

Xstream API versions up to 1.4.6 and version 1.4.10, if the security framework has not been initialized, may allow a remote attacker to run arbitrary shell commands by manipulating the processed input stream when unmarshaling XML or any supported format. e.g. JSON.

πŸ“– Read

via "National Vulnerability Database".
πŸ” New Senate Bill Would Crackdown on IP Theft πŸ”

A new bill introduced in the Senate this week would restrict U.S. tech exports to China and crack down on intellectual property theft.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
πŸ•΄ Introducing the Digital Transformation Architect πŸ•΄

Bet-the-company transformation that expands the attack surface requires close alignment and leadership across executive, IT and security teams.

πŸ“– Read

via "Dark Reading: ".
❌ Google Titan Security Key Recalled After Bluetooth Pairing Bug ❌

Google is offering free replacements for its Titan Security Key after discovering a misconfiguration in its pairing protocols.

πŸ“– Read

via "Threatpost".
πŸ•΄ Attackers Are Messing with Encryption Traffic to Evade Detection πŸ•΄

Unknown groups have started tampering with Web traffic encryption, causing the number of fingerprints for connections using Transport Layer Security to jump from 19,000 to 1.4 billion in less than a year.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ New Intel Vulnerabilities Bring Fresh CPU Attack Dangers πŸ•΄

Four newly discovered vulns from the speculative-execution family bring Meltdown-like threats to Intel's processors.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ GDPR Drives Changes, but Privacy by Design Proves Elusive πŸ•΄

One year later, the EU mandate's biggest impact has been to focus more attention on data protection and privacy, security analysts say.

πŸ“– Read

via "Dark Reading: ".
πŸ” Cheat sheet: How to become a cybersecurity pro πŸ”

If you are interested in pursuing a career in cybersecurity and don't know where to start, here's your go-to guide to salaries, job markets, skills, and common interview questions in the field.

πŸ“– Read

via "Security on TechRepublic".
⚠ San Francisco bans police use of facial recognition ⚠

The city that gave us facial recognition tech says "not in my back yard".

πŸ“– Read

via "Naked Security".
⚠ Severe Linux kernel flaw found in RDS ⚠

Unpatched Linux systems are vulnerable to remote compromise from the local network.

πŸ“– Read

via "Naked Security".
⚠ Facebook restores disabled β€˜View As’ feature used in 2018 breach ⚠

The feature still lets you see how others see you, but without leaking access tokens.

πŸ“– Read

via "Naked Security".
❌ Cybercrime Gang Behind GozNym Banking Malware Dismantled ❌

Europol said it has dismantled the cybercrime network behind the GozNym malware, which siphoned more than $100 million from businesses.

πŸ“– Read

via "Threatpost".
❌ Cisco Service Provider, WebEx Bugs Offer Up Remote Code Execution ❌

The vendor also issued a patch schedule for the still-unpatched bug in its Secure Boot trusted hardware environment, which affects most of its enterprise and SMB portfolio, amounting to millions of vulnerable devices.

πŸ“– Read

via "Threatpost".
πŸ•΄ Cyber Workforce Exec Order: Right Question, Wrong Answer πŸ•΄

Shuffling resources, adding administrative process, and creating a competition and incentive system will do little to grow and mature the talent we need to meet the cybersecurity challenges we face.

πŸ“– Read

via "Dark Reading: ".
⚠ Please vote for Naked Security at the European Blogger Awards 2018! ⚠

If you like what we do... please vote for us!

πŸ“– Read

via "Naked Security".