πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.9K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ•΄ BitPaymer Ransomware Operators Wage Custom, Targeted Attacks πŸ•΄

A new framework is allowing the threat group to compile variants of the malware for each victim, Morphisec says.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Security Lessons From a New Programming Language πŸ•΄

A security professional needed a secure language for IoT development. So he wrote his own, applying learned lessons about memory and resources in the process.

πŸ“– Read

via "Dark Reading: ".
πŸ” AMCA Breach Total Hits 22.2 Million Patients πŸ”

An additional 2.2 million patients have had their data compromised by a data breach at AMCA, the now bankrupt medical debt collector.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
⚠ FaceApp privacy panic sets internet alight ⚠

You grant FaceApp a perpetual, irrevocable license to use, reproduce, modify and adapt your image. Sounds scary.

πŸ“– Read

via "Naked Security".
⚠ Shapeshifting Morpheus chip aims to baffle hackers ⚠

Morpheus aims to make hacking so difficult at microprocessor level that attackers will give up long before they can do any damage.

πŸ“– Read

via "Naked Security".
⚠ Firefox to pile on more native privacy features ⚠

Mozilla is integrating its Lockwise password manager directly into the browser and expanding its support for the Have I Been Pwned website.

πŸ“– Read

via "Naked Security".
πŸ•΄ Crack the Defenses of iOS and other Platforms at Black Hat USA πŸ•΄

Get the latest insights into how to attack and defend platforms like iOS, MacOS, and Windows 10 at this upcoming August security conference.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ The Problem with Proprietary Testing: NSS Labs vs. CrowdStrike πŸ•΄

Why apples-to-apples performance tests are the only way to accurately gauge the impact of network security products and solutions.

πŸ“– Read

via "Dark Reading: ".
πŸ” How to reverse the cybersecurity staffing shortage: 5 tips πŸ”

CISOs must change the ways they recruit, train, and retain cybersecurity professionals, according to Forrester.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Europol Head Fears 5G Will Give Criminals an Edge πŸ•΄

Catherine De Bolle is concerned law enforcement will lose its ability to track criminals with the arrival of 5G networks.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Mirai Groups Target Business IoT Devices πŸ•΄

More than 30% of Mirai attacks, and an increasing number of variants of the malicious malare, are going after enterprise IoT devices, raising the stakes for business.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Malware in PyPI Code Shows Supply Chain Risks πŸ•΄

A code backdoor in a package on the Python Package Index demonstrates the importance of verifying code brought in from code repositories.

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2015-7882

Improper handling of LDAP authentication in MongoDB Server versions 3.0.0 to 3.0.6 allows an unauthenticated client to gain unauthorized access.

πŸ“– Read

via "National Vulnerability Database".
❌ Bug in NVIDIA’s Tegra Chipset Opens Door to Malicious Code Execution ❌

Researcher creates 'Selfblow' proof-of-concept attack for exploiting a vulnerability that exists in "every single Tegra device released so far".

πŸ“– Read

via "Threatpost".
❌ Adult Sites Lack Privacy, Open the Door for Harassment and Tracking ❌

Third-party tracking is rampant on sites like Pornhub, with users' sexual preferences on full view.

πŸ“– Read

via "Threatpost".
❌ Iran-Linked APT34 Invites Victims to LinkedIn for Fresh Malware Infections ❌

The group was posing as a researcher from Cambridge, and was found to have added three new malware families to its spy arsenal.

πŸ“– Read

via "Threatpost".
ATENTIONβ€Ό New - CVE-2002-0390

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2002-0639. Reason: This candidate is a reservation duplicate of CVE-2002-0639. Notes: All CVE users should reference CVE-2002-0639 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.

πŸ“– Read

via "National Vulnerability Database".
⚠ Monday review – the hot 22 stories of the week ⚠

From the RDP exploit already at your door to Chrome's XSS Auditor - and everything in between. It's weekly roundup time.

πŸ“– Read

via "Naked Security".
⚠ Stop facial recognition trials now, warns UK committee ⚠

The UK government should suspend trials of automatic facial recognition systems until it can meet regulators’ concerns about the technology, according to a report released Friday.

πŸ“– Read

via "Naked Security".
⚠ Hacked Bulgarian database reaches online forums ⚠

Data on millions of people stolen from the Bulgarian government has already popped up on hacker trading forums.

πŸ“– Read

via "Naked Security".
⚠ Chrome 76 blocks websites from detecting incognito mode ⚠

Ever bypassed a website paywall using a browser’s privacy mode? It was once a simple hack, however, it no longer works for most websites.

πŸ“– Read

via "Naked Security".