πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.9K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ” Evernote Chrome extension vulnerability allowed attackers to steal 4.7M users' data πŸ”

A cross-site scripting vulnerability was discovered popular note-taking application Evernote, though the company patched it in under a week.

πŸ“– Read

via "Security on TechRepublic".
❌ Intel NUC Firmware Open to Privilege Escalation, DoS and Information Disclosure ❌

Intel has patched seven high-severity vulnerabilities in its mini PC NUC kit firmware.

πŸ“– Read

via "Threatpost".
πŸ•΄ Predicting Vulnerability Weaponization πŸ•΄

Advances in data science are making it possible to shift vulnerability management from a reactive to a proactive discipline.

πŸ“– Read

via "Dark Reading: ".
⚠ Critical Adobe Flash player bug and more in June’s Patch Tuesday ⚠

June patch Tuesday features fixes from Adobe and Microsoft for critical flaws including a remote code vulnerability in Adobe Flash Player.

πŸ“– Read

via "Naked Security".
πŸ” How to secure your LinkedIn profile πŸ”

LinkedIn offers many privacy and security options that professionals may not be aware of. Here's what you need to know to stay safe on the networking platform.

πŸ“– Read

via "Security on TechRepublic".
πŸ” LaLiga facing €250k fine for GDPR violations in app used to spy on users πŸ”

The official app of the Spanish soccer league used the microphone and GPS in an attempt to curb restaurants from broadcasting the game.

πŸ“– Read

via "Security on TechRepublic".
❌ RAMBleed Side-Channel Attack Exposes Privileged Memory ❌

An attacker can use Rowhammer attacker to induce bit flips, thereby leaking the victim's secret data via a side channel.

πŸ“– Read

via "Threatpost".
ATENTIONβ€Ό New - CVE-2017-15123

A flaw was found in the CloudForms web interface, versions 5.8 - 5.10, where the RSS feed URLs are not properly restricted to authenticated users only. An attacker could use this flaw to view potentially sensitive information from CloudForms including data such as newly created virtual machines.

πŸ“– Read

via "National Vulnerability Database".
πŸ” Cisco Live 2019: CEO Chuck Robbins pushes multi-cloud connectivity πŸ”

Karen Roby interviewed Teena Maddox, who was reporting from Cisco Live 2019. During the opening keynote, Cisco CEO Chuck Robbins discussed multi-cloud connectivity, security, and how tech has changed in the past 30 years.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Tomorrow's Cybersecurity Analyst Is Not Who You Think πŸ•΄

Organizations can't just rely on diverse and cutting-edge technologies to fight adversaries. They will also need people with diverse expertise and backgrounds.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ New Funding Values KnowBe4 at $1 Billion πŸ•΄

The $300 million investment is being led by KKR.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ CrowdStrike Prices IPO Above Range at $34 πŸ•΄

The endpoint security firm raised $612 million ahead of today's public debut.

πŸ“– Read

via "Dark Reading: ".
❌ Data Breach Disclosed by Online Invitation Firm Evite ❌

Evite's data breach, stemming from an β€œinactive data storage file," is only one of many breaches to be disclosed this week.

πŸ“– Read

via "Threatpost".
πŸ” Tracking The Latest Amendments to the California Consumer Privacy Act πŸ”

As we inch towards 2020, the California Consumer Privacy Act's (CCPA) go-live date, California legislators continue to refine and amend the law.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
πŸ” Tech news roundup: Cisco Live, Samsung A-series, and Salesforce acquires Tableau πŸ”

This week's TechRepublic and ZDNet news stories include a look at the current state of 5G deployment, the severity of fake emails, and Cisco's quest for multi-cloud connectivity.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Tech news roundup: Cisco Live, Samsung A-series, and Salesforce acquires Tableau πŸ”

This week's TechRepublic and ZDNet news stories include a look at the current state of 5G deployment, the severity of fake emails, and Cisco's quest for multi-cloud connectivity.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ DNS Observatory Offers Researchers New Insight into Global DNS Activity πŸ•΄

Among its early findings, 60% of the DNS transactions captured \were handled by just 1,000 name servers.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Apple Pledges Privacy, Beefs Up Security at Developer Confab πŸ•΄

The company hits back at the data economy - and fellow tech giants Facebook and Google - by announcing its own single sign-on service. A host of other iterative security improvements are on their way as well.

πŸ“– Read

via "Dark Reading: ".
❌ Fishwrap Campaign Sways Social Media Users with Old News ❌

215 accounts use the same family of special URL shorteners to track the effectiveness of the operation.

πŸ“– Read

via "Threatpost".
πŸ•΄ Apple Pledges Privacy, Beefs Up Security at Developer Confab πŸ•΄

The company hits back at the data economy - and fellow tech giants Facebook and Google - by announcing its own single sign-on service. A host of other iterative security improvements are on their way as well.

πŸ“– Read

via "Dark Reading: ".
⚠ Microsoft’s battle with SandboxEscaper zero days turns into grim Groundhog Day ⚠

Why is SandboxEscaper releasing vulnerabilities in such an irresponsible way? It matters not - Microsoft must patch what’s in front of it whatever the backstory.

πŸ“– Read

via "Naked Security".