πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.9K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
⚠ Mobile apps riddled with high-risk vulnerabilities, warns report ⚠

Be careful before installing that mobile app on your iOS or Android device - many mobile applications are riddled with vulnerabilities.

πŸ“– Read

via "Naked Security".
⚠ Mozilla patched two Firefox zero-day flaws in one week ⚠

Two emergency zero days affecting a browser in one week counts as unusual - especially when they pop up as separate alerts two days apart.

πŸ“– Read

via "Naked Security".
❌ The Modern-Day Heist: IP Theft Techniques That Enable Attackers ❌

There's more than one way to get inside a company.

πŸ“– Read

via "Threatpost".
❌ Iran Targeting U.S. With Destructive Wipers, Warns DHS ❌

The Department of Homeland Security is warning that U.S. agencies are being targeted by Iranian-backed cyberattacks with destructive wiper malware.

πŸ“– Read

via "Threatpost".
πŸ•΄ Never Trust, Always Verify: Demystifying Zero Trust to Secure Your Networks πŸ•΄

The point of Zero Trust is not to make networks, clouds, or endpoints more trusted; it's to eliminate the concept of trust from digital systems altogether.

πŸ“– Read

via "Dark Reading: ".
πŸ” Why half of enterprises struggle to keep pace with cloud security πŸ”

SaaS applications are supplanting traditional desktop software, and visibility into cloud workloads is a major problem, according to Symantec.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Raspberry Pi Used in JPL Breach πŸ•΄

NASA report shows exfiltration totaling more than 100 GB of information since 2009.

πŸ“– Read

via "Dark Reading: ".
πŸ” Preventing Tax Professional Data Theft Continues to Be a Challenge πŸ”

A committee whose job is to oversee tax administration issues for the IRS says limitations at the agency are fostering cybersecurity risks.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
❌ Facebook Faces Lawsuit Over Massive 2018 Data Breach ❌

An attempt by Facebook to block a lawsuit, regarding a massive 2018 data breach, has been shot down.

πŸ“– Read

via "Threatpost".
ATENTIONβ€Ό New - CVE-2017-17945

The ASUS HiVivo aspplication before 5.6.27 for ASUS Watch has Missing SSL Certificate Validation.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2014-9699

The MakerBot Replicator 5G printer runs an Apache HTTP Server with directory indexing enabled. Apache logs, system logs, design files (i.e., a history of print files), and more are exposed to unauthenticated attackers through this HTTP server.

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ DDoS-for-Hire Services Doubled in Q1 πŸ•΄

Impact of FBI's takedown of 15 'booter' domains last December appears to have been temporary.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ A Socio-Technical Approach to Cybersecurity's Problems πŸ•΄

Researchers explore how modern security problems can be solved with an examination of society, technology, and security.

πŸ“– Read

via "Dark Reading: ".
⚠ Cop awarded $585K after colleagues snooped on her via license database ⚠

Krekelberg alleged that 58 fellow officers broke a federal privacy law by searching for her driver’s license data without any reason.

πŸ“– Read

via "Naked Security".
⚠ Government agencies still send sensitive files via hackable .zips ⚠

Senator Ron Wyden has written to NIST asking for guidance and training for government staff in how to share files securely.

πŸ“– Read

via "Naked Security".
⚠ Presidential text alerts are open to spoofing attacks, warn researchers ⚠

Researchers have shown that it’s technically possible for hackers to target the US Presidential text Alerts system to send fake messages.

πŸ“– Read

via "Naked Security".
⚠ WeTransfer sends user file links to wrong people ⚠

Popular file transfer service WeTransfer faces embarrassment this week after admitting that it had mailed file links to the wrong users.

πŸ“– Read

via "Naked Security".
πŸ•΄ The Rise of Silence and the Fall of Coinhive πŸ•΄

Cryptomining will exist as long as it remains profitable. One of the most effective ways to disrupt that activity is to make it too expensive to run cryptomining malware in your network.

πŸ“– Read

via "Dark Reading: ".
πŸ” FedEx suing Department of Commerce over burden of enforcing Huawei blacklisting πŸ”

Following a series of incidents in which packages were misrouted, and under increasing scrutiny from the Chinese government, FedEx is seeking relief.

πŸ“– Read

via "Security on TechRepublic".
πŸ” How to custom a template in Enpass πŸ”

Enpass allows you to create your own custom templates for even more efficient usage.

πŸ“– Read

via "Security on TechRepublic".