๐Ÿ›ก Cybersecurity & Privacy ๐Ÿ›ก - News
25.8K subscribers
89.2K links
๐Ÿ—ž The finest daily news on cybersecurity and privacy.

๐Ÿ”” Daily releases.

๐Ÿ’ป Is your online life secure?

๐Ÿ“ฉ lalilolalo.dev@gmail.com
Download Telegram
โ€ผ CVE-2021-44117 โ€ผ

A Cross Site Request Forgery (CSRF) vulnerability exists in TheDayLightStudio Fuel CMS 1.5.0 via a POST call to /fuel/sitevariables/delete/4.

๐Ÿ“– Read

via "National Vulnerability Database".
โ€ผ CVE-2022-32563 โ€ผ

An issue was discovered in Couchbase Sync Gateway 3.x before 3.0.2. Admin credentials are not verified when using X.509 client-certificate authentication from Sync Gateway to Couchbase Server. When Sync Gateway is configured to authenticate with Couchbase Server using X.509 client certificates, the admin credentials provided to the Admin REST API are ignored, resulting in privilege escalation for unauthenticated users. The Public REST API is not impacted by this issue. A workaround is to replace X.509 certificate based authentication with Username and Password authentication inside the bootstrap configuration.

๐Ÿ“– Read

via "National Vulnerability Database".
โ€ผ CVE-2022-27502 โ€ผ

RealVNC VNC Server 6.9.0 through 5.1.0 for Windows allows local privilege escalation because an installer repair operation executes %TEMP% files as SYSTEM.

๐Ÿ“– Read

via "National Vulnerability Database".
๐Ÿ“ข IBM bolsters cyber security offerings with Randori acquisition ๐Ÿ“ข

It plans to use the companyโ€™s attack surface management and offensive security offerings to strengthen its cloud and AI capabilities

๐Ÿ“– Read

via "ITPro".
๐Ÿ“ข Double extortion ransomware pushes average payments close to $1 million ๐Ÿ“ข

As the average payment approaches the landmark figure, experts reflect on times when the going rate was just $500

๐Ÿ“– Read

via "ITPro".
๐Ÿ“ข The hybrid work maturity framework ๐Ÿ“ข

Your roadmap to trusted flexible working

๐Ÿ“– Read

via "ITPro".
๐Ÿ“ข The EUโ€™s Apple App Store crackdown โ€˜will fuel cyber attacksโ€™ ๐Ÿ“ข

Organisations should be encouraged to embrace the โ€˜security by Playstationโ€™ approach as much as possible, expert says

๐Ÿ“– Read

via "ITPro".
๐Ÿ“ข Cyber security companies โ€˜must remember who the enemies areโ€™ ๐Ÿ“ข

Tech giants must collaborate more with the wider industry, WithSecureโ€™s CEO urges, as he lays bare European anxieties

๐Ÿ“– Read

via "ITPro".
๐Ÿ“ข Kaspersky Free review: Effective and lightweight โ€“ everything you want from a free antivirus solution ๐Ÿ“ข

Itโ€™ll be a real shame if politics means people missing out on this top-class security tool

๐Ÿ“– Read

via "ITPro".
๐Ÿ“ข Cyber criminals are spending longer inside business' networks after the initial breach ๐Ÿ“ข

Cyber attackers' dwell time is up 36% thanks to initial access brokers and repeat exploitation of Microsoft Exchange vulnerabilities, according to Sophos

๐Ÿ“– Read

via "ITPro".
๐Ÿ“ข Kali Linux team announces free cyber security training delivered live on Twitch ๐Ÿ“ข

The brand-new initiative is aimed at reaching more aspiring certified pen-testers through twice-weekly livestreamed lessons

๐Ÿ“– Read

via "ITPro".
๐Ÿ“ข Identity: The digital trust accelerator ๐Ÿ“ข

Building trust in governments and public sector organisations

๐Ÿ“– Read

via "ITPro".
๐Ÿ“ข IT Pro 20/20: Disrupting cyber security ๐Ÿ“ข

Issue 29 looks at the companies and trends aiming to shake up the industry in 2022

๐Ÿ“– Read

via "ITPro".
๐Ÿ“ข Indiaโ€™s new cyber rules risk driving away tech companies ๐Ÿ“ข

A tech industry body has flagged that the rules could create create an โ€œenvironment of fearโ€

๐Ÿ“– Read

via "ITPro".
๐Ÿ“ข Businesses at work ๐Ÿ“ข

An in-depth look into how organisations and people work today, and the apps & services they use to be productive

๐Ÿ“– Read

via "ITPro".
๐Ÿ“ข What is metaverse security? ๐Ÿ“ข

As the metaverse evolves, businesses need to think differently about virtual security to protect their IT infrastructure, staff, and customers

๐Ÿ“– Read

via "ITPro".
๐Ÿ“ข How to boot Windows 11 in Safe Mode ๐Ÿ“ข

Unless youโ€™re a complete Windows novice, youโ€™ll have come across Safe Mode before - but what exactly is it, and how do you access it in Windows 11?

๐Ÿ“– Read

via "ITPro".
๐Ÿ“ข State-sponsored hackers delay new Microsoft Exchange Server by four years ๐Ÿ“ข

Hafnium's devastating zero-day exploit chain in 2021 forced Microsoft to improve the security of current versions instead of releasing the new one on schedule

๐Ÿ“– Read

via "ITPro".
๐Ÿ“ข What is SSID? ๐Ÿ“ข

We look at what SSID is and how it is used to connect devices to the internet

๐Ÿ“– Read

via "ITPro".
๐Ÿ“ข CIAM buyerโ€™s guide ๐Ÿ“ข

Finding the right CIAM solution to capture & retain customers, fuel business growth and keep customers safe

๐Ÿ“– Read

via "ITPro".
๐Ÿ“ข What good AI cyber security software looks like in 2022 ๐Ÿ“ข

Experts give their take on the state of automated cyber security, and what tools they think most businesses should be looking at

๐Ÿ“– Read

via "ITPro".