πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ“’ Microsoft unveils wide-scale phishing campaign that circumvents MFA πŸ“’

More than 10,000 organisations have been targeted using the convincing adversary-in-the-middle attack method

πŸ“– Read

via "ITPro".
πŸ“’ What is zero trust? πŸ“’

How a zero trust security strategy better protects your business from internal and external attackers

πŸ“– Read

via "ITPro".
πŸ“’ Bandai Namco finally confirms massive cyber attack πŸ“’

AlphV/BlackCat claims "data is coming soon" to its deep web blog in a suspected double-extortion ransomware attack

πŸ“– Read

via "ITPro".
πŸ“’ Chinese authorities summon Alibaba executives over data breach πŸ“’

An unknown attacker stole the data of over a billion citizens from a police database, in one of the largest breaches recorded in history

πŸ“– Read

via "ITPro".
πŸ“’ BAE Systems lands $699 million US army HPC contract πŸ“’

Defense giant will operate and maintain the military’s high performance computing systems until

πŸ“– Read

via "ITPro".
πŸ“’ The psychology of secure passwords πŸ“’

The tricks for overcoming poor security hygiene like weak passwords and password reuse

πŸ“– Read

via "ITPro".
πŸ“’ Retbleed hardware-level flaw brings overhead woe to Intel and AMD πŸ“’

β€˜Retbleed’ threatens a wide range of microprocessors, using a vector thought safe that adds to its problematic nature

πŸ“– Read

via "ITPro".
πŸ“’ Microsoft makes Windows Autopatch generally available to enterprise users πŸ“’

First announced in April, the feature has been met with confusion from the industry

πŸ“– Read

via "ITPro".
πŸ“’ What is threat hunting? πŸ“’

Although most threats can be dealt with automatically, the tougher ones require a bit more investigation

πŸ“– Read

via "ITPro".
πŸ“’ FTC fires warning against sensitive data misuse πŸ“’

The agency has responded to fears around biometric data breaches, including those relating to abortion services

πŸ“– Read

via "ITPro".
πŸ“’ Deloitte launches Zero Trust Access for enterprises πŸ“’

The managed security service protects applications regardless of their location or typeβ€Œ

πŸ“– Read

via "ITPro".
πŸ“’ Australian university suffers data breach of 47,000 students πŸ“’

The attacker also launched a smishing attempt while inside the university’s systems

πŸ“– Read

via "ITPro".
πŸ“’ Actively exploited zero-day and four 'critical' vulnerabilities fixed in Microsoft's July Patch Tuesday πŸ“’

The month's list of 84 bug fixes has been branded "boring" by some experts but should be welcome news to security personnel

πŸ“– Read

via "ITPro".
πŸ“’ Cyber attackers strike flood monitoring system in Goa, India πŸ“’

Ransomware attack has prevented the ability to back up data, with attackers demanding Bitcoin in return for decryption

πŸ“– Read

via "ITPro".
πŸ“’ What is cyber insurance? πŸ“’

In an age of increasingly devastating cyber attacks, many businesses are looking to cyber insurance to cushion the financial blow

πŸ“– Read

via "ITPro".
πŸ“’ Amazon gave police departments Ring footage without permission πŸ“’

The tech giant has done this 11 times this year

πŸ“– Read

via "ITPro".
πŸ“’ How to protect against 'endemic' Log4j vulnerabilities πŸ“’

A US government report details a series of recommendations to help counter the Log4Shell flaw in the long term

πŸ“– Read

via "ITPro".
πŸ“’ ID.me pushes for US-wide privacy legislation πŸ“’

The latest push follows Apple CEO Tim Cook advocating support for the "strongest privacy bill possible"

πŸ“– Read

via "ITPro".
πŸ“’ Will FIDO passwordless authentication save cyber security? πŸ“’

Plans to eradicate passwords from the business landscape are underway, but there are significant hurdles to overcome

πŸ“– Read

via "ITPro".
πŸ“’ ICO crackdown on AI recruitment part of three-year vision to save businesses Β£100 million πŸ“’

ICO25 outlines a fresh approach that involves releasing learning materials, advice, and a new ICO-moderated discussion forum for businesses

πŸ“– Read

via "ITPro".
β€Ό CVE-2021-34987 β€Ό

This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.5.1 (49187). An attacker must first obtain the ability to execute high-privileged code on the target guest system in order to exploit this vulnerability. The specific flaw exists within the HDAudio virtual device. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length buffer. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of the hypervisor. Was ZDI-CAN-14969.

πŸ“– Read

via "National Vulnerability Database".