🛡 Cybersecurity & Privacy 🛡 - News
25.8K subscribers
89.2K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
DEF CON and Feds Partner on Anonymous Bug Submission Program

Bug submission program uses the SecureDrop platform to ensure anonymity.

📖 Read

via "Threatpost".
Windows Users at Risk From High-Severity Intel Software Flaw

Overall, Intel stomped out three high-severity vulnerabilities and five medium-severity flaws.

📖 Read

via "Threatpost".
🕴 BioStar 2 Leak Exposes 23GB Data, 1M Fingerprints 🕴

Thousands of organizations, including banks, governments, and the UK Metropolitan Police, use the biometric security tool to authenticate users.

📖 Read

via "Dark Reading: ".
ATENTION New - CVE-2015-9316

The wp-fastest-cache plugin before 0.8.4.9 for WordPress has SQL injection in wp-admin/admin-ajax.php?action=wpfc_wppolls_ajax_request via the poll_id parameter.

📖 Read

via "National Vulnerability Database".
ATENTION New - CVE-2015-9315

The newstatpress plugin before 1.0.1 for WordPress has SQL injection.

📖 Read

via "National Vulnerability Database".
ATENTION New - CVE-2015-9314

The newstatpress plugin before 1.0.4 for WordPress has XSS related to the Referer header.

📖 Read

via "National Vulnerability Database".
ATENTION New - CVE-2015-9313

The newstatpress plugin before 1.0.5 for WordPress has SQL injection related to an IMG element.

📖 Read

via "National Vulnerability Database".
ATENTION New - CVE-2015-9312

The newstatpress plugin before 1.0.5 for WordPress has XSS related to an IMG element.

📖 Read

via "National Vulnerability Database".
ATENTION New - CVE-2015-9311

The newstatpress plugin before 1.0.6 for WordPress has reflected XSS.

📖 Read

via "National Vulnerability Database".
🕴 GitHub Named in Capital One Breach Lawsuit 🕴

A new lawsuit says that GitHub bears responsibility for the Capital One breach because it actively encourages hacking and stored stolen data.

📖 Read

via "Dark Reading: ".
🕴 Attackers Try to Evade Defenses with Smaller DDoS Floods, Probes 🕴

Cybercriminals are initiating more attacks using low-bandwidth techniques, but the tactics expand the gray area between DDoS attacks and popular methods of mass scanning.

📖 Read

via "Dark Reading: ".
20-Year-Old Bug in Legacy Microsoft Code Plagues All Windows Users

A bug in an obscure legacy Windows protocol can lead to serious real-world privilege-escalation attacks.

📖 Read

via "Threatpost".
Lenovo Warns on ThinkPad Bugs, One Unpatched

The notebook maker is warning users of three separate vulnerabilities.

📖 Read

via "Threatpost".
🔏 Microsoft Urging Users to Patch New Wormable Vulnerabilities 🔏

Microsoft is urging users to patch a series of critical, BlueKeep-like vulnerabilities in Windows that could be used to spread malware.

📖 Read

via "Subscriber Blog RSS Feed ".
🕴 Why Companies Fail to Learn from Peers' Mistakes (and How They Can Change) 🕴

Far too often, there's a new breach in the headlines. Companies need to start learning some obvious lessons.

📖 Read

via "Dark Reading: ".
ATENTION New - CVE-2015-9310

The all-in-one-wp-security-and-firewall plugin before 3.9.1 for WordPress has multiple SQL injection issues.

📖 Read

via "National Vulnerability Database".
ATENTION New - CVE-2015-9309

The wp-google-map-plugin plugin before 2.3.10 for WordPress has CSRF in the add/edit category feature.

📖 Read

via "National Vulnerability Database".
ATENTION New - CVE-2015-9308

The wp-google-map-plugin plugin before 2.3.10 for WordPress has CSRF in the add/edit map feature.

📖 Read

via "National Vulnerability Database".
ATENTION New - CVE-2015-9307

The wp-google-map-plugin plugin before 2.3.10 for WordPress has CSRF in the add/edit location feature.

📖 Read

via "National Vulnerability Database".
ATENTION New - CVE-2013-7476

The simple-fields plugin before 1.2 for WordPress has CSRF in the admin interface.

📖 Read

via "National Vulnerability Database".
Fingerprints of 1M Exposed in Public Biometrics Database

A publicly accessible database exposed the fingerprints and facial recognition information of millions, thrusting biometrics security into the spotlight once again.

📖 Read

via "Threatpost".