πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
ATENTIONβ€Ό New - CVE-2014-10377

The cforms2 plugin before 13.2 for WordPress has XSS in lib_ajax.php.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2012-6715

The formbuilder plugin before 0.9.1 for WordPress has XSS via a Referer header.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2012-6714

The count-per-day plugin before 3.2.3 for WordPress has XSS via search words.

πŸ“– Read

via "National Vulnerability Database".
❌ Researcher Discloses Second Steam Zero-Day After Valve Bug Bounty Ban ❌

After Valve banned him from its bug bounty program, a researcher has found a second zero-day vulnerability affecting the Steam gaming client.

πŸ“– Read

via "Threatpost".
πŸ•΄ Splunk Buys SignalFx for $1.05 Billion πŸ•΄

Deal will yield 'one platform that can monitor the entire enterprise application lifecycle,' Splunk CEO says.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Silence APT Group Broadens Attacks on Banks, Gets More Dangerous πŸ•΄

Over the past year, the financial damage linked to the Russian-speaking threat group has spiked fivefold, Group-IP says.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ New FISMA Report Shows Progress, Gaps in Federal Cybersecurity πŸ•΄

No major incidents mixed with continuing gaps in implementation paint an improving, but still muddy, picture of cybersecurity in the federal government.

πŸ“– Read

via "Dark Reading: ".
⚠ The Silence hacking crew grows louder ⚠

The hacking group, which specialises in stealing from banks, has been spreading its coverage and becoming more sophisticated.

πŸ“– Read

via "Naked Security".
⚠ Massive MoviePass database found exposed on public server ⚠

Tens of thousands of records with financial data were left in plaintext in a database that wasn't protected with a password.

πŸ“– Read

via "Naked Security".
⚠ Update now! Microsoft patches its Android RDP app to fix flaw ⚠

Microsoft has found itself with a large amount of RDP-related patching work during 2019.

πŸ“– Read

via "Naked Security".
⚠ Facebook delivers β€˜clear history’ tool that doesn’t β€˜clear’ anything ⚠

The new feature β€œdisconnects,” but doesn't delete, your browsing history. Facebook will still use it for analytics.

πŸ“– Read

via "Naked Security".
⚠ S2 Ep5: Phishing, eavesdropping voice assistants and quick fire questions – Naked Security Podcast ⚠

Episode 5 of the Naked Security Podcast is now live - listen now!

πŸ“– Read

via "Naked Security".
πŸ•΄ Which Security Metrics Should I Use? πŸ•΄

Figuring that out actually begins with a broader question.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Asset Management Becomes the New Security Model πŸ•΄

While security pros once rallied around end-device management as their organizing principle, that approach is being subsumed by asset management, according to Dean Sysman, CEO and Co-Founder of Axonius. Device management becomes a subset of asset management, as organizations create a hierarchy to protect what's most valuable to them, he adds.

πŸ“– Read

via "Dark Reading: ".
πŸ” Why hackers still impersonate Microsoft more than any other company πŸ”

Microsoft, PayPal, and Facebook are the top brands hackers attempt to copy in phishing attacks, according to Vade Secure.

πŸ“– Read

via "Security on TechRepublic".
❌ Spyware App on Google Play Gets Boot, Returns Days Later ❌

The app purported to stream music - but actually siphoned victims' device contacts and files.

πŸ“– Read

via "Threatpost".
ATENTIONβ€Ό New - CVE-2013-7481

The contact-form-plugin plugin before 3.3.5 for WordPress has XSS.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2013-7480

The events-manager plugin before 5.3.6.1 for WordPress has XSS via the booking form and admin areas.

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ 5 Identity Challenges Facing Today's IT Teams πŸ•΄

To take control over your company's security, identify and understand the biggest identity and access management challenges facing IT teams today and start addressing them.

πŸ“– Read

via "Dark Reading: ".