🛡 Cybersecurity & Privacy 🛡 - News
25.9K subscribers
89.2K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
RDP exposed: the wolves already at your door

While everyone waits for BlueKeep to be exploited, another RDP threat is already at the door, according to new research from Sophos.

📖 Read

via "Naked Security".
🕴 Master Next-Level Network Defense Techniques at Black Hat USA 🕴

Brush up on new DDOS defense tricks, 5G network vulnerabilities, and applications of military strategy to cybersecurity.

📖 Read

via "Dark Reading: ".
StrongPity APT Returns with Retooled Spyware

The group is using malicious versions of WinRAR and other legitimate software packages to infect targets, likely via watering-hole attacks.

📖 Read

via "Threatpost".
🔐 Top 5 things to consider for your disaster recovery plan 🔐

You never know when disaster might strike, and being prepared can make all the difference. Tom Merritt suggests five tips for your disaster recovery plan.

📖 Read

via "Security on TechRepublic".
🔐 Top 5 things to consider for your disaster recovery plan 🔐

You never know when disaster might strike, and being prepared can make all the difference. Tom Merritt suggests five tips for your disaster recovery plan.

📖 Read

via "Security on TechRepublic".
🔐 Why 70% of healthcare orgs have suffered data breaches 🔐

Digital transformation initiatives bring a slew of data privacy concerns to US health organizations, according to a Thales report.

📖 Read

via "Security on TechRepublic".
🕴 For Real Security, Don't Let Failure Be Your Measure of Success 🕴

For too long, we've focused almost exclusively on keeping out the bad guys rather than what to do when they get in (and they will).

📖 Read

via "Dark Reading: ".
🔐 Malicious libraries in package repositories reveal a fundamental security flaw 🔐

The proliferation of malicious packages in repositories for software developers that rely on typosquatting points to a problem: A reliance on flat namespaces.

📖 Read

via "Security on TechRepublic".
ATENTION New - CVE-2017-12652 (libpng)

libpng before 1.6.32 does not properly check the length of chunks against the user limit.

📖 Read

via "National Vulnerability Database".
🕴 Data Loss, Leakage Top Cloud Security Concerns 🕴

Compliance, accidental exposure of credentials, and data control are also primary concerns for senior IT and security managers.

📖 Read

via "Dark Reading: ".
🔐 Top 5 blockchain challenges businesses face 🔐

While blockchain technology can offer great opportunities, the hype surrounding it often leads to unrealistic expectations, according to the World Economic Forum.

📖 Read

via "Security on TechRepublic".
Massive Malvertising Campaign Reaches 100M Ads, Manipulates Supply Chain

A sophisticated and growing malvertising attacker is partnering with legitimate ad tech platforms to drop malware at scale.

📖 Read

via "Threatpost".
ATENTION New - CVE-2018-11734 (e107)

In e107 v2.1.7, output without filtering results in XSS.

📖 Read

via "National Vulnerability Database".
🔐 Tech news roundup: Amazon Prime Day and the highest-rated workplaces of 2019 🔐

This week's TechRepublic and ZDNet stories include a breach of Sprint customers' data, notes from the Duo Security 2019 access report, and how execs are taking charge of digital transformation plans.

📖 Read

via "Security on TechRepublic".
🔐 Tech news roundup: Amazon Prime Day and the highest-rated workplaces of 2019 🔐

This week's TechRepublic and ZDNet stories include a breach of Sprint customers' data, notes from the Duo Security 2019 access report, and how execs are taking charge of digital transformation plans.

📖 Read

via "Security on TechRepublic".
Bluetooth Flaws Could Allow Global Tracking of Apple, Windows 10 Devices

Identifying tokens and random addresses, meant to create anonymity, do not change in sync on some devices -- opening an attack vector.

📖 Read

via "Threatpost".
Firmware Bugs Plague Server Supply Chain, 7 Vendors Impacted

Lenovo, Acer and five additional server manufacturers are hit with supply-chain bugs buried in motherboard firmware.

📖 Read

via "Threatpost".
🔏 Seven CCPA Amendments Advance 🔏

As the California Consumer Privacy Act (CCPA) continues to take shape, the state's Senate Committee on the Judiciary voted to advance seven amendments to the law last week but not after making some changes.

📖 Read

via "Subscriber Blog RSS Feed ".
🕴 A Password Management Report Card 🕴

New research on password management tools identifies the relative strengths and weaknesses of 12 competing offerings.

📖 Read

via "Dark Reading: ".
🕴 800K Systems Still Vulnerable to BlueKeep 🕴

Organizations with systems exploitable via the RDP flaw pose an increasing risk to themselves and other organizations, BitSight says.

📖 Read

via "Dark Reading: ".
🕴 Sprint Reveals Account Breach via Samsung Website 🕴

The last-June breach exposed data includes names, phone numbers, and account numbers.

📖 Read

via "Dark Reading: ".