πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
ATENTIONβ€Ό New - CVE-2014-10391 (wp_support_plus_responsive_ticket_system)

The wp-support-plus-responsive-ticket-system plugin before 4.1 for WordPress has JavaScript injection.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2014-10390 (wp_support_plus_responsive_ticket_system)

The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has directory traversal.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2014-10389 (wp_support_plus_responsive_ticket_system)

The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has incorrect authentication.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2014-10388 (wp_support_plus_responsive_ticket_system)

The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has full path disclosure.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2014-10386 (wp_live_chat_support)

The wp-live-chat-support plugin before 4.1.0 for WordPress has JavaScript injections.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2014-10382 (featured_comments)

The feature-comments plugin before 1.2.5 for WordPress has CSRF for featuring or burying a comment.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2013-7483 (slidedeck_2)

The slidedeck2 plugin before 2.3.5 for WordPress has file inclusion.

πŸ“– Read

via "National Vulnerability Database".
⚠ Web clickjacking fraud makes a comeback thanks to JavaScript tricks ⚠

More than a decade after hitting the headlines, clickjacking fraud remains an under-reported hazard on hundreds of popular websites.

πŸ“– Read

via "Naked Security".
πŸ•΄ Privacy 2019: We're Not Ready πŸ•΄

To facilitate the innovative use of data and unlock the benefits of new technologies, we need privacy not just in the books but also on the ground.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Fuzzing 101: Why Bug Hunters Still Love It After All These Years πŸ•΄

Fuzzing is one of the basic tools in a researcher's arsenal. Here are the things you should know about this security research foundational tool.

πŸ“– Read

via "Dark Reading: ".
⚠ S2 Ep6: Instagram phishing, jailbreaking iPhones and social media hoaxes – Naked Security Podcast ⚠

New podcast episode available now!

πŸ“– Read

via "Naked Security".
πŸ” How to remove saved addresses from Firefox Autofill πŸ”

If you're serious about privacy, don't allow Firefox to save and autofill your addresses.

πŸ“– Read

via "Security on TechRepublic".
πŸ” How to remove saved addresses from Firefox Autofill πŸ”

If you're serious about privacy, don't allow Firefox to save and autofill your addresses.

πŸ“– Read

via "Security on TechRepublic".
πŸ” How HackerOne empowers independent hackers to improve security πŸ”

Enabling responsible vulnerability disclosure programs protects companies and hackers in their endeavor to squash software bugs.

πŸ“– Read

via "Security on TechRepublic".
❌ Venmo’s Public Transactions Policy Stirs Privacy Concerns ❌

In an open letter, the Mozilla Foundation and EFF scolded Venmo for its data privacy policies, which they say could open the door to stalking and spear-phishing.

πŸ“– Read

via "Threatpost".
πŸ•΄ New Botnet Targets Android Set-Top Boxes πŸ•΄

ARES has already infected thousands of devices and is growing, IoT security firm says.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Google Cloud Releases Beta of Managed Service to Microsoft AD πŸ•΄

Managed Service for Microsoft Active Directory was built to help admins handle cloud-based workloads.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Bug Bounties Continue to Rise, but Market Has Its Own 1% Problem πŸ•΄

The average payout for a critical vulnerability has almost reached $3,400, but only the top bug hunters of a field of 500,000 are truly profiting.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Google Announces New, Expanded Bounty Programs πŸ•΄

The company is significantly expanding the bug-bounty program for Google Play and starting a program aimed at user data protection.

πŸ“– Read

via "Dark Reading: ".
❌ Google Targets Data-Abusing Apps with Bug Bounty Launch ❌

Google is looking to battle the malicious apps - and apps abusing user data - on Google Play by improving its bug-bounty program arsenal.

πŸ“– Read

via "Threatpost".
πŸ” Biometric Privacy Legislation Catching On Across America πŸ”

The past few years has seen several states in the U.S. adopt, or look to adopt biometric privacy legislation that dictates what type of facial, fingerprint, or retinal data organizations can collect, use, and store.

πŸ“– Read

via "Subscriber Blog RSS Feed ".