πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
❌ Defense Takeaways from Three Adversary Playbooks ❌

An analysis of threat techniques used by Silence Group, Goblin Panda and Zegost, which can help construct effective defenses.

πŸ“– Read

via "Threatpost".
⚠ Emergency iOS patch fixes jailbreaking flaw for second time ⚠

With iOS 13 nearing release, Apple users perhaps thought they were done with iOS 12 updates for good. If so, they were wrong.

πŸ“– Read

via "Naked Security".
❌ Google Squashes High-Severity Blink Browser Engine Flaw ❌

The bug could enable remote code-execution, information-siphoning or denial-of-service attacks.

πŸ“– Read

via "Threatpost".
πŸ” Budget constraints pose the highest threat to SMB IT security πŸ”

SMBs may recognize the importance of cybersecurity, but they fail to prioritize it, according to Untangle.

πŸ“– Read

via "Security on TechRepublic".
πŸ” State and local governments increasingly targeted by ransomware attacks πŸ”

More than 70 state and local governments were infected with ransomware in 2019, as targeted ransomware makes a comeback.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Malware Found in Android App with 100M Users πŸ•΄

CamScanner, a legitimate app used to scan and manage documents, was found executing payloads on Android devices.

πŸ“– Read

via "Dark Reading: ".
❌ Apple Updates Privacy Policies After Siri Audio Recording Backlash ❌

Apple's "grading" process, which listens to Siri voice recordings, will now be in-house and has an option for users to opt out.

πŸ“– Read

via "Threatpost".
πŸ” The biggest cybersecurity risks in the financial services industry πŸ”

Ransomware, SQL injection attacks, and cross-site scripting are also serious cybersecurity risks for banks and brokerage firms, according to a new study.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Fuzzing 101: Why Bug-Finders Still Love It After All These Years πŸ•΄

Fuzzing is one of the basic tools in a researcher's arsenal. Here are the things you should know about this security research foundational tool.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Fancy Bear Dons Plain Clothes to Try to Defeat Machine Learning πŸ•΄

An analysis of a sample published by the US government shows Russian espionage group APT28, also known as Fancy Bear, has stripped down its initial infector in an attempt to defeat ML-based defenses.

πŸ“– Read

via "Dark Reading: ".
πŸ” Former Google, Uber Engineer Hit With Trade Secret Theft Charges πŸ”

β€œAll of us are free to move from job to job,” David L. Anderson, a United States attorney said of the case, β€œWhat we cannot do is stuff our pockets on the way out the door.”

πŸ“– Read

via "Subscriber Blog RSS Feed ".
πŸ•΄ TrickBot Comes to Cellular Carriers πŸ•΄

A new malicious campaign seeks cell account PINs from victims.

πŸ“– Read

via "Dark Reading: ".
❌ TrickBot Targets Verizon, T-Mobile, Sprint Users to Siphon PINs ❌

TrickBot malware targets users of U.S. mobile carrier Verizon, T-Mobile and Sprint via web injects to steal their PIN codes; enabling SIM swapping attacks.

πŸ“– Read

via "Threatpost".
πŸ” The biggest cybersecurity risks in the financial services industry πŸ”

Ransomware, SQL injection attacks, and cross-site scripting are also serious cybersecurity risks for banks and brokerage firms, according to a new study.

πŸ“– Read

via "Security on TechRepublic".
πŸ” TechRepublic Premium editorial calendar: IT policies, checklists, toolkits, and research for download πŸ”

TechRepublic Premium content helps you solve your toughest IT issues and jumpstart your career or next project.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Magecart Shops for Victims as E-Commerce Market Grows πŸ•΄

In 2.5 hours of research, one security expert uncovered more than 80 actively compromised ecommerce websites.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Facebook Patches Second Account-Takeover Flaw in Instagram πŸ•΄

The password-recovery mechanism once again puts users of the photo- and video-sharing platform at risk.

πŸ“– Read

via "Dark Reading: ".
❌ Elderly China Chopper Tool Still Going Strong in Multiple Campaigns ❌

Multiple actors in multiple campaigns are using the web shell for remote access, even though it's almost a decade old and hasn't been updated.

πŸ“– Read

via "Threatpost".
πŸ” How to use Harbor to scan Docker images for vulnerabilities πŸ”

Make sure you're not deploying containers based on vulnerable images by scanning those images with Harbor.

πŸ“– Read

via "Security on TechRepublic".
πŸ” How to use Harbor to scan Docker images for vulnerabilities πŸ”

Make sure you're not deploying containers based on vulnerable images by scanning those images with Harbor.

πŸ“– Read

via "Security on TechRepublic".
⚠ Microsoft may still be violating privacy rules, says Dutch regulator ⚠

EU data watchdogs are yet again sniffing at Windows 10.

πŸ“– Read

via "Naked Security".