πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ“’ Windows 11 System Restore bug preventing users from accessing apps πŸ“’

Microsoft has issued a series of workarounds for the issue which is affecting a range of apps including Office and Terminal

πŸ“– Read

via "ITPro".
πŸ“’ Royal Mail ransom note leaked, LockBit’s role remains uncertain πŸ“’

The prolific ransomware operation has denied involvement but researchers remain sceptical

πŸ“– Read

via "ITPro".
πŸ“’ Microsoft releases scripts to restore shortcuts deleted in faulty Windows Defender update πŸ“’

However, some users have resorted to creating their own fixes as they’ve encountered Microsoft’s to be problematic

πŸ“– Read

via "ITPro".
πŸ“’ 'Highly evasive' polymorphic malware generated using ChatGPT πŸ“’

Researchers at CyberArk Labs developed a novel method to generate malware using text that goes largely undetected by signature-based antimalware products

πŸ“– Read

via "ITPro".
πŸ“’ Google Ads malvertising campaign prompts questions around Search security πŸ“’

A leading security researcher has called into question why Google still allows malware links to top search results

πŸ“– Read

via "ITPro".
πŸ“’ Meta sues β€˜data scraping for hire’ service that collected info on 600k users πŸ“’

Meta says tackling data scraping will require a β€œcollective effort” from platforms and policymakers

πŸ“– Read

via "ITPro".
πŸ“’ Windows Defender update deletes Start Menu, Taskbar, Desktop shortcuts πŸ“’

For now, it appears that administrators will have to manually recreate their shortcuts once the issue has been fixed

πŸ“– Read

via "ITPro".
πŸ“’ Hack The Box set to triple workforce and widen global expansion πŸ“’

CEO Haris Pylarinos told IT Pro the startup plans to accelerate international expansion and continue driving security skills awareness

πŸ“– Read

via "ITPro".
πŸ“’ T-Mobile breach leaves customers vulnerable to phishing πŸ“’

T-Mobile confirmed that while customer information was exposed, no financial data or company systems were compromised

πŸ“– Read

via "ITPro".
πŸ“’ Businesses must overhaul β€œoutdated” recruitment mindset to tackle dearth of privacy expertise πŸ“’

Like many other disciplines within IT, businesses are struggling to fill crucial positions for months at a time - an issue somewhat of their own making

πŸ“– Read

via "ITPro".
β€Ό CVE-2023-22617 β€Ό

A remote attacker might be able to cause infinite recursion in PowerDNS Recursor 4.8.0 via a DNS query that retrieves DS records for a misconfigured domain, because QName minimization is used in QM fallback mode. This is fixed in 4.8.1.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-24059 β€Ό

Grand Theft Auto V for PC allows attackers to achieve partial remote code execution or modify files on a PC, as exploited in the wild in January 2023.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-24058 β€Ό

Booked Scheduler 2.5.5 allows authenticated users to create and schedule events for any other user via a modified userId value to reservation_save.php. NOTE: 2.5.5 is a version from 2014.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-0435 β€Ό

Excessive Attack Surface in GitHub repository pyload/pyload prior to 0.5.0b3.dev41.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-48281 β€Ό

processCropSelections in tools/tiffcrop.c in LibTIFF through 4.5.0 has a heap-based buffer overflow (e.g., "WRITE of size 307203") via a crafted TIFF image.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-24070 β€Ό

app/View/AuthKeys/authkey_display.ctp in MISP through 2.4.167 has an XSS in authkey add via a Referer field.

πŸ“– Read

via "National Vulnerability Database".
πŸ”₯1
β€Ό CVE-2023-23314 β€Ό

An arbitrary file upload vulnerability in the /api/upload component of zdir v3.2.0 allows attackers to execute arbitrary code via a crafted .ssh file.

πŸ“– Read

via "National Vulnerability Database".
πŸ‘2πŸ”₯1
β€Ό CVE-2022-46959 β€Ό

An issue in the component /admin/backups/work-dir of Sonic v1.0.4 allows attackers to execute a directory traversal.

πŸ“– Read

via "National Vulnerability Database".
πŸ”₯1
β€Ό CVE-2023-24068 β€Ό

Signal Desktop before 6.2.0 on Windows, Linux, and macOS allows an attacker to modify conversation attachments within the attachments.noindex directory. Client mechanisms fail to validate modifications of existing cached files, resulting in an attacker's ability to insert malicious code into pre-existing attachments or replace them completely. A threat actor can forward the existing attachment in the corresponding conversation to external groups, and the name and size of the file will not change, allowing the malware to masquerade as another file.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2023-24069 β€Ό

Signal Desktop before 6.2.0 on Windows, Linux, and macOS allows an attacker to obtain potentially sensitive attachments sent in messages from the attachments.noindex directory. Cached attachments are not effectively cleared. In some cases, even after a self-initiated file deletion, an attacker can still recover the file if it was previously replied to in a conversation. (Local filesystem access is needed by the attacker.)

πŸ“– Read

via "National Vulnerability Database".
πŸ—“οΈ AWS patches bypass bug in CloudTrail API monitoring tool πŸ—“οΈ

Threat actors poking around AWS environments and API calls could stay under the radar

πŸ“– Read

via "The Daily Swig".