πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
26K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
ATENTIONβ€Ό New - CVE-2016-10778

cPanel before 60.0.25 allows self stored XSS in the listftpstable API (SEC-178).

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2016-10777

cPanel before 60.0.25 allows self XSS in WHM Tweak Settings for autodiscover_host (SEC-177).

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2016-10776

cPanel before 60.0.25 allows stored XSS during the homedir removal phase of WHM Account termination (SEC-174).

πŸ“– Read

via "National Vulnerability Database".
πŸ” How to prevent the top 11 threats in cloud computing πŸ”

The latest risks involved in cloud computing point to problems related to configuration and authentication rather than the traditional focus on malware and vulnerabilities, according to a new Cloud Security Alliance report.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Slack's new security features give enterprise admins more control over data πŸ”

Slack's Enterprise Grid product now helps admins limit which people and devices can access Slack, and how Slack can be used.

πŸ“– Read

via "Security on TechRepublic".
πŸ” What is Data Security? πŸ”

Learn about data security and the role it plays in many data protection solutions in Data Protection 101, our series on the fundamentals of data security.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
❌ Millions of Android Smarphones Vulnerable to Trio of Qualcomm Bugs ❌

Flaws in Qualcomm chipset expose millions of Android devices to hacking threat.

πŸ“– Read

via "Threatpost".
❌ Mass Spoofing Campaign Takes Aim at Walmart ❌

The sites are targeting job-seekers, movie aficionados and shoppers in hopes of harvesting their personal information.

πŸ“– Read

via "Threatpost".
πŸ•΄ FBI Issues Relationship Fraud/Confidence Scheme Warning πŸ•΄

Criminals are getting increasingly sophisticated in their efforts to commit fraud and recruit 'money mules,' according to the FBI.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ When Perceived Cybersecurity Risk Outweighs Reality πŸ•΄

Teams need to manage perceived risks so they can focus on fighting the real fires.

πŸ“– Read

via "Dark Reading: ".
❌ Cryptolocking WordPress Plugin Locks Up Blog Posts ❌

A new type of malicious plugin has been spotted in the wild with the capability of targeting individual blog posts.

πŸ“– Read

via "Threatpost".
❌ Democrats and Doctors Behind Latest Wave of Leaked Data ❌

Patient medical history and over 6 million email addresses tied to Democrats were detailed in a misconfigured storage buckets over the past few weeks.

πŸ“– Read

via "Threatpost".
πŸ•΄ Ongoing Campaign Spoofs Walmart, Dating, Movie Sites πŸ•΄

A new investigation detects more than 540 domain names linked to the Walmart brand and camouflaged as career, dating, and entertainment websites.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Russian Attack Group Uses Phones & Printers to Breach Corporate Networks πŸ•΄

Microsoft spotted Strontium, also known as APT28 or Fancy Bear, using IoT devices to breach businesses and seek high-value data.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ US Air Force Bug Bounty Program Nets 54 Flaws for $123,000 πŸ•΄

The Air Force brought together 50 vetted hackers to find the vulnerabilities in the latest bug-bounty program hosted by a branch of the US military.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ New Speculative Execution Vulnerability Gives CISOs a New Reason to Lose Sleep πŸ•΄

The vulnerability, dubbed SWAPGS, is an undetectable threat to data security, similar in some respects to Spectre and Meltdown.

πŸ“– Read

via "Dark Reading: ".
πŸ” 6 pillars of DevSecOps your business needs to know πŸ”

Cloud security issues are growing more prevalent in the enterprise, according to the Cloud Security Alliance. Here's how to stay protected.

πŸ“– Read

via "Security on TechRepublic".
⚠ Latest Android patches fix critical β€˜QualPwn’ Wi-Fi flaws ⚠

The August 2019 security bulletin is out - and two of the critical flaws could allow an attacker to compromise the Android system kernel.

πŸ“– Read

via "Naked Security".
⚠ Banking PINs exposed in Monzo secure storage slip-up ⚠

When is a secure PIN not a secure PIN? When you accidentally store it in your log files.

πŸ“– Read

via "Naked Security".
πŸ•΄ The Key to Enterprisewide Encryption πŸ•΄

Security teams have been slow to embrace enterprisewide encryption, and for good reasons. But the truth is, it doesn't have to be an all-or-nothing endeavor.

πŸ“– Read

via "Dark Reading: ".
❌ Black Hat: LeapFrog Tablet Flaws Let Attackers Track, Message Kids ❌

Several serious privacy flaws in a kid's tablet were disclosed this year at Black Hat, which could allow a bad actor to track or send messages to children.

πŸ“– Read

via "Threatpost".