πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ” Healthcare Orgs in New York Need to Follow a New Protocol Following a Cybersecurity Incident πŸ”

Healthcare organizations in New York need to be aware of a newly implemented protocol, effective immediately, when it comes to reporting a potential cybersecurity incident to the New York Department of Health.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
❌ The Texas Ransomware Attacks: A Gamechanger for Cybercriminals ❌

Security researchers worry that this weekend's coordinated attacks on more than 20 Texas governments mark a change in how ransomware attacks will be launched in the future.

πŸ“– Read

via "Threatpost".
πŸ•΄ 'Box Shield' Brings New Security Controls πŸ•΄

New controls and threat detection capabilities built into Box aim to prevent accidental data leakage and misuse.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ eSentire Blends Managed Detection Response With Machine Learning πŸ•΄

While many infosec pros believe they're getting managed detection response (MDR) from their managed security service providers, that's not necessarily the case, according to Eldon Sprickerhoff, Founder and Chief Innovation Officer of eSentire. Adding machine learning to the mix helps automate MDR, strengthening an organization's security posture.

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2014-10380

The profile-builder plugin before 1.1.66 for WordPress has multiple XSS issues in forms.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2014-10379

The duplicate-post plugin before 2.6 for WordPress has SQL injection.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2014-10378

The duplicate-post plugin before 2.6 for WordPress has XSS.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2014-10377

The cforms2 plugin before 13.2 for WordPress has XSS in lib_ajax.php.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2012-6715

The formbuilder plugin before 0.9.1 for WordPress has XSS via a Referer header.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2012-6714

The count-per-day plugin before 3.2.3 for WordPress has XSS via search words.

πŸ“– Read

via "National Vulnerability Database".
❌ Researcher Discloses Second Steam Zero-Day After Valve Bug Bounty Ban ❌

After Valve banned him from its bug bounty program, a researcher has found a second zero-day vulnerability affecting the Steam gaming client.

πŸ“– Read

via "Threatpost".
πŸ•΄ Splunk Buys SignalFx for $1.05 Billion πŸ•΄

Deal will yield 'one platform that can monitor the entire enterprise application lifecycle,' Splunk CEO says.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Silence APT Group Broadens Attacks on Banks, Gets More Dangerous πŸ•΄

Over the past year, the financial damage linked to the Russian-speaking threat group has spiked fivefold, Group-IP says.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ New FISMA Report Shows Progress, Gaps in Federal Cybersecurity πŸ•΄

No major incidents mixed with continuing gaps in implementation paint an improving, but still muddy, picture of cybersecurity in the federal government.

πŸ“– Read

via "Dark Reading: ".
⚠ The Silence hacking crew grows louder ⚠

The hacking group, which specialises in stealing from banks, has been spreading its coverage and becoming more sophisticated.

πŸ“– Read

via "Naked Security".
⚠ Massive MoviePass database found exposed on public server ⚠

Tens of thousands of records with financial data were left in plaintext in a database that wasn't protected with a password.

πŸ“– Read

via "Naked Security".
⚠ Update now! Microsoft patches its Android RDP app to fix flaw ⚠

Microsoft has found itself with a large amount of RDP-related patching work during 2019.

πŸ“– Read

via "Naked Security".
⚠ Facebook delivers β€˜clear history’ tool that doesn’t β€˜clear’ anything ⚠

The new feature β€œdisconnects,” but doesn't delete, your browsing history. Facebook will still use it for analytics.

πŸ“– Read

via "Naked Security".
⚠ S2 Ep5: Phishing, eavesdropping voice assistants and quick fire questions – Naked Security Podcast ⚠

Episode 5 of the Naked Security Podcast is now live - listen now!

πŸ“– Read

via "Naked Security".
πŸ•΄ Which Security Metrics Should I Use? πŸ•΄

Figuring that out actually begins with a broader question.

πŸ“– Read

via "Dark Reading: ".