πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.9K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
ATENTIONβ€Ό New - CVE-2016-10823

cPanel before 55.9999.141 allows arbitrary code execution in the context of the root account because of MakeText interpolation (SEC-89).

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2016-10822

cPanel before 55.9999.141 allows self XSS in X3 Reseller Branding Images (SEC-88).

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ 1M Payment Cards Exposed in South Korea Breach πŸ•΄

South Korea is the largest victim of card present data theft at a time when criminals are ramping up cyberattacks in the Asia-Pacific region.

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2016-10815

cPanel before 57.9999.54 allows arbitrary file-read operations for Webmail accounts via Branding APIs (SEC-120).

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2016-10814

cPanel before 57.9999.54 allows demo-mode escape via show_template.stor (SEC-119).

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2016-10813

cPanel before 57.9999.54 allows self XSS during ftp account creation under addon domains (SEC-118).

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ PCI Security Council, Retail ISAC Warn Retailers on Magecart Attacks πŸ•΄

Online card-skimming activities grew sharply this summer fueled by the availability of attack kits and other factors, Malwarebytes says.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ DARPA to Bring its Smart Ballot Boxes to DEF CON for Hacking πŸ•΄

The agency this week will share the source code and hardware specifications for the secure voting system prototypes.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Cisco Pays $8.6M in First False Claims Suit for Vulnerabilities in Security Product πŸ•΄

A security consultant reported vulnerabilities in Cisco's Video Surveillance Manager in 2009 - but the company ignored the issues and fired the consultant.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ 47% of Android Anti-Malware Apps Are Flawed πŸ•΄

Protection failures come at a time when malicious Android software is becoming more of a problem.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Why Every Organization Needs an Incident Response Plan πŸ•΄

OK, perhaps that's self-evident, so how come it far too often still takes an incident to trigger planning?

πŸ“– Read

via "Dark Reading: ".
⚠ Facebook is working on mind-reading ⚠

The completely non-evil-genius goal: a wearable, noninvasive device that could translate thoughts into text, for the speech impaired or VR.

πŸ“– Read

via "Naked Security".
⚠ Anime filter glitches, exposing face of one extremely smart vlogger ⚠

Pretending to be a hot young thing brought in beaucoup bucks. Last laugh department: "world's best granny" now has more followers than ever.

πŸ“– Read

via "Naked Security".
⚠ Club Penguin Rewritten breach caused by rogue admin backdoor ⚠

The hugely popular gaming site Club Penguin Rewritten suffered a data breach that exposed 4m user accounts.

πŸ“– Read

via "Naked Security".
⚠ Space agency uses Raspberry Pi to solve satellite encryption puzzle ⚠

The European Space Agency thinks it's found a much cheaper way to control a small module - and it's built around a tiny Raspberry Pi Zero board.

πŸ“– Read

via "Naked Security".
❌ Apple Suspends Siri Program After Privacy Backlash ❌

Apple's Siri follows Amazon Alexa and Google Home in facing backlash for its data retention policies.

πŸ“– Read

via "Threatpost".
❌ 90% of Enterprise iPhone Users Open to iMessage Spy Attack ❌

Vast majority of Apple iOS users haven't updated to iOS 12.4, leaving themselves wide open to a public exploit.

πŸ“– Read

via "Threatpost".
πŸ•΄ Black Hat: A Summer Break from the Mundane and Uncontrollable πŸ•΄

Enjoy the respite from the security tasks that await you back at home. Then prepare yourself for the uphill battles to come. Here's how.

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2014-8184

A vulnerability was found in liblouis, versions 2.5.x before 2.5.4. A stack-based buffer overflow was found in findTable() in liblouis. An attacker could create a malicious file that would cause applications that use liblouis (such as Orca) to crash, or potentially execute arbitrary code when opened.

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ Black Hat: A Summer Break from the Mundane and Controllable πŸ•΄

Enjoy the respite from the security tasks that await you back at home. Then prepare yourself for the uphill battles to come. Here's how.

πŸ“– Read

via "Dark Reading: ".
πŸ” Friday Five: 8/2 Edition πŸ”

A trio of breaches, the plight of IT budgets in the U.K., and hackers hitting school districts - catch up on the week's news with this roundup!

πŸ“– Read

via "Subscriber Blog RSS Feed ".