πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ” Friday Five 7/8 πŸ”

In this week’s Friday Five, read more about what Apple is doing to protect users against government-backed malware, why U.S. healthcare organizations should be on high alert, how threat actors are changing their tactics, and much more.


πŸ“– Read

via "".
πŸ•΄ Coalition Closes $250 Million in Series F Funding, Valuing the Cyber Insurance Provider at $5 Billion πŸ•΄

Funding from Allianz X, Valor Equity Partners, Kinetic Partners, and existing investors will accelerate Coalition’s vision to provide security for all.

πŸ“– Read

via "Dark Reading".
πŸ•΄ Swimlane Secures $70M Growth Round to Fuel Global Expansion of Next Generation Low-Code Security Automation Platform πŸ•΄

.

πŸ“– Read

via "Dark Reading".
πŸ•΄ Worldwide Enterprise Endpoint Security Industry to 2027: Focus on Antivirus, Firewall, Endpoint Device Control, and Anti-Spyware/Anti-Malware πŸ•΄

.

πŸ“– Read

via "Dark Reading".
πŸ—“οΈ AstraLocker ransomware decryptors released by Emsisoft πŸ—“οΈ

Threat actor released decryption keys after abandoning malware to focus on cryptojacking

πŸ“– Read

via "The Daily Swig".
πŸ•΄ SOAR Market Worth $2.3 Billion by 2027, According to Exclusive Report by MarketsandMarkets πŸ•΄

.

πŸ“– Read

via "Dark Reading".
πŸ•΄ Welcome-Back-to-the-Future Shock πŸ•΄

This year's RSA Conference saw a strange mix of selling the future and the past β€” for good reason.

πŸ“– Read

via "Dark Reading".
β€Ό CVE-2022-34166 β€Ό

IBM CICS TX Standard and Advanced 11.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 229430.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-34160 β€Ό

IBM CICS TX Standard and Advanced 11.1 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the security context of the hosting site. IBM X-Force ID: 229330.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-34306 β€Ό

IBM CICS TX Standard and Advanced 11.1 is vulnerable to HTTP header injection, caused by improper validation of input by the HOST headers. This could allow an attacker to conduct various attacks against the vulnerable system, including cross-site scripting, cache poisoning or session hijacking. IBM X-Force ID: 229435.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-35406 β€Ό

A URL disclosure issue was discovered in Burp Suite before 2022.6. If a user views a crafted response in the Repeater or Intruder, it may be incorrectly interpreted as a redirect.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-34167 β€Ό

IBM CICS TX Standard and Advanced 11.1 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 229432.

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ DoJ Charges CEO for Dealing $1B in Fake Cisco Gear πŸ•΄

Fraudster allegedly passed off refurbished, modified Cisco equipment as new to hospitals, schools, and even the military.

πŸ“– Read

via "Dark Reading".
β€Ό CVE-2015-5597 β€Ό

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2015. Notes: none.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2015-5328 β€Ό

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2015. Notes: none.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2015-5596 β€Ό

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2015. Notes: none.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2015-4169 β€Ό

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2015. Notes: none.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-22463 β€Ό

IBM Security Access Manager Appliance 10.0.0.0, 10.0.1.0, 10.0.2.0, and 10.0.3.0 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 225079.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-22370 β€Ό

IBM Security Verify Access 10.0.0.0, 10.0.1.0, 10.0.2.0, and 10.0.3.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 221194.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2015-7800 β€Ό

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2015. Notes: none.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2015-8819 β€Ό

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2015. Notes: none.

πŸ“– Read

via "National Vulnerability Database".