πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.9K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ•΄ Google Adds Two-Factor Authentication For Its Apps on iOS πŸ•΄

Android-based two-factor authentication now works for Google applications on iPad and iPhone.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ 7 Truths About BEC Scams πŸ•΄

Business email compromise attacks are growing in prevalence and creativity. Here's a look at how they work, the latest stats, and some recent horror stories.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ The CISO's Drive to Consolidation πŸ•΄

Cutting back on the number of security tools you're using can save money and leave you safer. Here's how to get started.

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2018-12147

Insufficient input validation in HECI subsystem in Intel(R) CSME before version 11.21.55, Intel? Server Platform Services before version 4.0 and Intel? Trusted Execution Engine Firmware before version 3.1.55 may allow a privileged user to potentially enable escalation of privileges via local access.

πŸ“– Read

via "National Vulnerability Database".
πŸ” Hospital medical equipment contains potentially lethal vulnerability πŸ”

A vulnerability in the Windows CE-powered Alaris Gateway Workstation allows attackers to modify dosage rates for infusion pumps, which can have lethal results.

πŸ“– Read

via "Security on TechRepublic".
❌ Max-Severity Bug in Infusion Pump Gateway Puts Lives at Risk ❌

The critical bug in a connected medical device can allow an attacker to remotely manipulate hospital pumps, either to withhold meds or dispense too much.

πŸ“– Read

via "Threatpost".
❌ Evernote Critical Flaw Opened Personal Data of Millions to Attack ❌

Evernote's web clipper extension for Chrome is vulnerable to a critical flaw that could have exposed the data of more than 4.6 million users.

πŸ“– Read

via "Threatpost".
πŸ” New IoT Security Bill Passes Another Hurdle πŸ”

A bill to help strengthen the Wild West of the Internet world - the internet of things (IoT) - advanced this week.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
πŸ•΄ Congress Gives 'Hack Back' Legislation Another Try πŸ•΄

Officials reintroduce a bill that would let businesses monitor attacker behavior and target intruders on corporate networks.

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2018-10947

An issue was discovered in versions earlier than 1.3.2 for Polycom RealPresence Debut where the admin cookie is reset only after a Debut is rebooted.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2018-10946

An issue was discovered in versions earlier than 1.3.0-66872 for Polycom RealPresence Debut that allows attackers to arbitrarily read the admin user's password via the admin web UI.

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ Cyberattack Hits Aircraft Parts Manufacturer πŸ•΄

Belgium's Asco has shut down manufacturing around the world, including the US, in response to a major cybersecurity event, but what happened isn't clear.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ DNS Firewalls Could Save Companies Billions πŸ•΄

New analysis shows widespread DNS protection could save organizations as much as $200 billion in losses every year.

πŸ“– Read

via "Dark Reading: ".
⚠ Cop arrested following explicit chat with bogus 16yo girl ⚠

A male college student Snapchat-filtered himself into a young girl and went out to catch a predator. The first one he caught was a Californian cop.

πŸ“– Read

via "Naked Security".
⚠ Facebook got 187,000 users’ data with snoopy VPN app ⚠

According to a letter it sent to Sen. Richard Blumenthal, that's 31,000 US users, with the rest in India.

πŸ“– Read

via "Naked Security".
⚠ Android phones can now be security keys for iOS devices ⚠

Hey, iOS users. Got a spare Android phone lying around? Now, you can use it as a secure access key for online services.

πŸ“– Read

via "Naked Security".
πŸ•΄ DNS Firewalls Could Save Companies Billions πŸ•΄

New analysis shows widespread DNS protection could save organizations as much as $200 billion in losses every year.

πŸ“– Read

via "Dark Reading: ".
⚠ Critical flaw found in Evernote Web Clipper for Chrome ⚠

Anyone using it in its unpatched state is at risk not only of a compromise of their Evernote account but, potentially, of third-party accounts too.

πŸ“– Read

via "Naked Security".
❌ Hackers Favor Weekdays for Attacks, Share Resources Often ❌

Traffic analysis sheds light on weekday habits of attackers such as the most likely day for attacks and how malicious infrastructure is shared.

πŸ“– Read

via "Threatpost".
πŸ•΄ BlueKeep RDP Vulnerability a Ticking Time Bomb πŸ•΄

One month after Microsoft disclosed the flaw, nearly 1 million systems remain unpatched, and Internet scans looking for vulnerable systems have begun increasing.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Triton Attackers Seen Scanning US Power Grid Networks πŸ•΄

The development follows speculation and concern among security experts that the attack group would expand its scope to the power grid.

πŸ“– Read

via "Dark Reading: ".