πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
⚠ Researchers crack digital safe using HSM flaw ⚠

French researchers have found a bug in a hardware security module (HSM) that could enable an attacker to steal highly prized secrets.

πŸ“– Read

via "Naked Security".
⚠ It’s a SCAM: Send Bitcoin or your company’s reputation is TOAST! ⚠

"I will insult people. And everyone will not care that it's not you." But it's social-disaster baloney!

πŸ“– Read

via "Naked Security".
⚠ iOS 13 will map the apps that are tracking you ⚠

A map will display the snail-slime trails that we all leave behind in our daily travels and through which background tracking apps follow us.

πŸ“– Read

via "Naked Security".
⚠ Critical flaws found in Amcrest security cameras ⚠

The Amcrest 721 family of security cameras features six security flaws discovered back in 2017 by a researcher at security outfit Synopsys.

πŸ“– Read

via "Naked Security".
❌ Data Breach Exposes 100K U.S. Traveler Photos, License Plates ❌

A recent breach of U.S. Customs and Border Protection traveler photo and license plate data has led experts to condemn the collection and storage of facial recognition data.

πŸ“– Read

via "Threatpost".
πŸ” More than 3B fake emails sent daily as phishing attacks persist πŸ”

Some 140,000 more domains are using DMARC records since the start of 2019, though DMARC-based enforcement remains complex to implement.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Getting Up to Speed on Magecart πŸ•΄

Greater awareness of how Magecart works will give your company a leg up on the growing threat from this online credit card skimmer. Here are four places to start.

πŸ“– Read

via "Dark Reading: ".
❌ Troy Hunt Looks to Sell Have I Been Pwned ❌

"Project Svalbard" has commenced, as Hunt looks for the right company to take over the password-focused service.

πŸ“– Read

via "Threatpost".
❌ Critical Adobe Flash, ColdFusion Vulnerabilities Patched ❌

Adobe issued patches for 11 vulnerabilities overall across its Flash, ColdFusion and Campaign products.

πŸ“– Read

via "Threatpost".
❌ Linux Command-Line Editors Vulnerable to High-Severity Bug ❌

A bug impacting editors Vim and Neovim could allow a trojan code to escape sandbox mitigations.

πŸ“– Read

via "Threatpost".
❌ Near-Ubiquitous Critical Microsoft RCE Bugs Affect All Versions of Windows ❌

The two CVEs allow bypasses to get around NTLM relay attack mitigations.

πŸ“– Read

via "Threatpost".
πŸ•΄ FBI Warns of Dangers in 'Safe' Websites πŸ•΄

Criminals are using TLS certificates to convince users that fraudulent sites are worthy of their trust.

πŸ“– Read

via "Dark Reading: ".
πŸ” How to protect your network against security flaws in Microsoft's NTLM protocol πŸ”

Vulnerabilities in NTLM recently discovered by security provider Preempt could allow attackers to remotely execute malicious code on any Windows machine or authenticate to any web server that supports Windows Integrated Authentication.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ What 3 Powerful GoT Women Teach Us about Cybersecurity πŸ•΄

Imagine Game of Thrones' Daenerys Targaryen, Arya Stark, and Cersei Lannister on the front lines in the real-world battleground of enterprise security.

πŸ“– Read

via "Dark Reading: ".
❌ Google Calendar Attacks Target Unwitting Mobile Users ❌

Automatic invite notifications are spreading malicious links.

πŸ“– Read

via "Threatpost".
ATENTIONβ€Ό New - CVE-2018-11801

SQL injection vulnerability in Apache Fineract before 1.3.0 allows attackers to execute arbitrary SQL commands via a query on a m_center data related table.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2018-11800

SQL injection vulnerability in Apache Fineract before 1.3.0 allows attackers to execute arbitrary SQL commands via a query on the GroupSummaryCounts related table.

πŸ“– Read

via "National Vulnerability Database".
πŸ” Adobe Updates Fix Critical Vulnerabilities in ColdFusion, Campaign, and Flash Player πŸ”

Adobe is urging users to patch 10 vulnerabilities, five of them critical, in three different products this week.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
πŸ•΄ 'Have I Been Pwned' Is Up for Sale πŸ•΄

Troy Hunt, who has been running HIBP solo for six years, launched "Project Svalbard" so the site can evolve with more resources, funding, and support.

πŸ“– Read

via "Dark Reading: ".
❌ Microsoft Patches Four Publicly-Known Vulnerabilities ❌

In total, 88 unique vulnerabilities were patched as part of Microsoft’s June Patch Tuesday security bulletin.

πŸ“– Read

via "Threatpost".
πŸ•΄ Microsoft Issues Fixes for 88 Vulnerabilities πŸ•΄

Four of the flaws are publicly known but none have been listed as under active attack.

πŸ“– Read

via "Dark Reading: ".