🛡 Cybersecurity & Privacy 🛡 - News
25.8K subscribers
89.2K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
🕴 Never Forget Your Passwords Again! 🕴

You never know what those late-night infomercials are going to turn up.

📖 Read

via "Dark Reading: ".
Magecart Hits 80 Major eCommerce Sites in Card-Skimming Bonanza

Mainly motorsports and luxury apparel sites, all of them were running outdated versions of the Magento eCommerce platform.

📖 Read

via "Threatpost".
🔐 A ransomware revival leads to 2.2 billion stolen credentials on the dark web in Q1 🔐

In a new report, McAfee Labs said cybercriminals were focusing in on attacking weak IoT devices and extracting huge troves of data from large companies.

📖 Read

via "Security on TechRepublic".
🔐 Tackling cyberthreats in the sports industry 🔐

The franchises behind sporting events are frequently open to significant cybersecurity threats. TechRepublic's Karen Roby spoke with a security expert about the unique challenges facing athletic organizations.

📖 Read

via "Security on TechRepublic".
🔐 Tackling cyberthreats in the sports industry 🔐

The franchises behind sporting events are frequently open to cybersecurity threats. TechRepublic's Karen Roby spoke with a security expert about the unique challenges facing athletic organizations.

📖 Read

via "Security on TechRepublic".
Dangerous Cryptomining Worm Racks Up 850K Infections, Self-Destructs

Law enforcement takedown causes Retadup malware to eat itself.

📖 Read

via "Threatpost".
ATENTION New - CVE-2012-6719

The sharebar plugin before 1.2.2 for WordPress has SQL injection.

📖 Read

via "National Vulnerability Database".
ATENTION New - CVE-2012-6718

The sharebar plugin before 1.2.2 for WordPress has XSS, a different issue than CVE-2013-3491.

📖 Read

via "National Vulnerability Database".
ATENTION New - CVE-2012-6717

The redirection plugin before 2.2.12 for WordPress has XSS, a different issue than CVE-2011-4562.

📖 Read

via "National Vulnerability Database".
ATENTION New - CVE-2011-5329

The redirection plugin before 2.2.9 for WordPress has XSS in the admin menu, a different issue than CVE-2011-4562.

📖 Read

via "National Vulnerability Database".
🕴 Securing Our Infrastructure: 3 Steps OEMs Must Take in the IoT Age 🕴

Security has lagged behind adoption of the Internet of Things. The devices hold much promise, but only if a comprehensive security model is constructed.

📖 Read

via "Dark Reading: ".
Defense Takeaways from Three Adversary Playbooks

An analysis of threat techniques used by Silence Group, Goblin Panda and Zegost, which can help construct effective defenses.

📖 Read

via "Threatpost".
Emergency iOS patch fixes jailbreaking flaw for second time

With iOS 13 nearing release, Apple users perhaps thought they were done with iOS 12 updates for good. If so, they were wrong.

📖 Read

via "Naked Security".
Google Squashes High-Severity Blink Browser Engine Flaw

The bug could enable remote code-execution, information-siphoning or denial-of-service attacks.

📖 Read

via "Threatpost".
🔐 Budget constraints pose the highest threat to SMB IT security 🔐

SMBs may recognize the importance of cybersecurity, but they fail to prioritize it, according to Untangle.

📖 Read

via "Security on TechRepublic".
🔐 State and local governments increasingly targeted by ransomware attacks 🔐

More than 70 state and local governments were infected with ransomware in 2019, as targeted ransomware makes a comeback.

📖 Read

via "Security on TechRepublic".
🕴 Malware Found in Android App with 100M Users 🕴

CamScanner, a legitimate app used to scan and manage documents, was found executing payloads on Android devices.

📖 Read

via "Dark Reading: ".
Apple Updates Privacy Policies After Siri Audio Recording Backlash

Apple's "grading" process, which listens to Siri voice recordings, will now be in-house and has an option for users to opt out.

📖 Read

via "Threatpost".
🔐 The biggest cybersecurity risks in the financial services industry 🔐

Ransomware, SQL injection attacks, and cross-site scripting are also serious cybersecurity risks for banks and brokerage firms, according to a new study.

📖 Read

via "Security on TechRepublic".
🕴 Fuzzing 101: Why Bug-Finders Still Love It After All These Years 🕴

Fuzzing is one of the basic tools in a researcher's arsenal. Here are the things you should know about this security research foundational tool.

📖 Read

via "Dark Reading: ".
🕴 Fancy Bear Dons Plain Clothes to Try to Defeat Machine Learning 🕴

An analysis of a sample published by the US government shows Russian espionage group APT28, also known as Fancy Bear, has stripped down its initial infector in an attempt to defeat ML-based defenses.

📖 Read

via "Dark Reading: ".