πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ•΄ GitHub Named in Capital One Breach Lawsuit πŸ•΄

A new lawsuit says that GitHub bears responsibility for the Capital One breach because it actively encourages hacking and stored stolen data.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Attackers Try to Evade Defenses with Smaller DDoS Floods, Probes πŸ•΄

Cybercriminals are initiating more attacks using low-bandwidth techniques, but the tactics expand the gray area between DDoS attacks and popular methods of mass scanning.

πŸ“– Read

via "Dark Reading: ".
❌ 20-Year-Old Bug in Legacy Microsoft Code Plagues All Windows Users ❌

A bug in an obscure legacy Windows protocol can lead to serious real-world privilege-escalation attacks.

πŸ“– Read

via "Threatpost".
❌ Lenovo Warns on ThinkPad Bugs, One Unpatched ❌

The notebook maker is warning users of three separate vulnerabilities.

πŸ“– Read

via "Threatpost".
πŸ” Microsoft Urging Users to Patch New Wormable Vulnerabilities πŸ”

Microsoft is urging users to patch a series of critical, BlueKeep-like vulnerabilities in Windows that could be used to spread malware.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
πŸ•΄ Why Companies Fail to Learn from Peers' Mistakes (and How They Can Change) πŸ•΄

Far too often, there's a new breach in the headlines. Companies need to start learning some obvious lessons.

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2015-9310

The all-in-one-wp-security-and-firewall plugin before 3.9.1 for WordPress has multiple SQL injection issues.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2015-9309

The wp-google-map-plugin plugin before 2.3.10 for WordPress has CSRF in the add/edit category feature.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2015-9308

The wp-google-map-plugin plugin before 2.3.10 for WordPress has CSRF in the add/edit map feature.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2015-9307

The wp-google-map-plugin plugin before 2.3.10 for WordPress has CSRF in the add/edit location feature.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2013-7476

The simple-fields plugin before 1.2 for WordPress has CSRF in the admin interface.

πŸ“– Read

via "National Vulnerability Database".
❌ Fingerprints of 1M Exposed in Public Biometrics Database ❌

A publicly accessible database exposed the fingerprints and facial recognition information of millions, thrusting biometrics security into the spotlight once again.

πŸ“– Read

via "Threatpost".
πŸ•΄ Trend Micro Patches Privilege Escalation Bug in its Password Manager πŸ•΄

Organizations should update to latest build as soon as possible, security vendor says.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Stronger Defenses Force Cybercriminals to Rethink Strategy πŸ•΄

Researchers see the rise of new relationships and attack techniques as criminals put companies' resilience to the test.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Financial Phishing Grows in Volume and Sophistication in First Half of 2019 πŸ•΄

Criminals are using the tools intended to protect consumers to attack them through techniques that are becoming more successful with each passing month.

πŸ“– Read

via "Dark Reading: ".
⚠ Facebook got humans to listen in on some Messenger voice chats ⚠

Facebook says it's paused the practice of collecting voice clips and sending them to employees to transcribe and analyze.

πŸ“– Read

via "Naked Security".
⚠ Hacking forum spills rival’s 321,000 member database ⚠

When users of hacking forums turn on each other, expect things to get messy quickly.

πŸ“– Read

via "Naked Security".
⚠ β€˜NULL’ license plate gets security researcher $12K in tickets ⚠

The vanity plate sounded good in theory: maybe it would make his plate invisible to ALPR systems?!

πŸ“– Read

via "Naked Security".
⚠ Serious flaws in six printer brands discovered, fixed ⚠

There are many ways to compromise company data, but IT teams often overlook one of the most serious: the humble printer.

πŸ“– Read

via "Naked Security".
πŸ” How to prevent email account takeover attacks: 3 tips πŸ”

Email takeover and lateral phishing attacks are a growing threat to enterprises, according to a Barracuda report.

πŸ“– Read

via "Security on TechRepublic".
⚠ S2 Ep4: iPhone holes, Android malware and romance scams – Naked Security Podcast ⚠

Episode 4 of the Naked Security Podcast is now live! This week host Anna Brading is joined by Paul Ducklin and Matt Boddy. They discuss how iPhone vulnerabilities have changed Apple’s attitude towards cybersecurity researchers [3’50”], the latest twist in romance scams where crooks are recruiting money mules via dating sites [12’43”], and malware in […]

πŸ“– Read

via "Naked Security".