πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
❌ Critical Bugs Open Food-Safety Systems to Remote Attacks ❌

The AK-EM 800 software from Danfoss centralizes alarm management, automatic data collection and food-quality reporting.

πŸ“– Read

via "Threatpost".
πŸ•΄ An Inside Look at How CISOs Prioritize Budgets & Evaluate Vendors πŸ•΄

In-depth interviews with four market-leading CISOs reveal how they prioritize budgets, measure ROI on security investments, and evaluate new vendors.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Back to School? 'Not So Fast,' Cybercriminals Say πŸ•΄

A New York State school district was forced to delay the start of its school year when ransomware struck.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Android Phone Flaw Allows Attackers to Divert Email πŸ•΄

Researchers find that a spoofing a service message from the phone carrier is simple and effective on some brands of Android smartphones.

πŸ“– Read

via "Dark Reading: ".
πŸ” Following $170M Fine of Google, FTC to Review, Update COPPA Rule πŸ”

Many privacy advocates, including the FTC's own commissioner, say the FTC's record $170 million fine that it violated COPPA, isn't enough.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
πŸ•΄ Phishing Campaign Uses SharePoint to Slip Past Defenses πŸ•΄

Cybercriminals targeting financial institutions in the UK bypassed Symantec email gateway and other perimeter technologies.

πŸ“– Read

via "Dark Reading: ".
❌ Android Zero-Day Bug Opens Door to Privilege Escalation Attack, Researchers Warn ❌

The zero-day vulnerability could enable privilege escalation, and is not part of Google's Android September security update.

πŸ“– Read

via "Threatpost".
πŸ•΄ 5G Standard to Get New Security Specifications πŸ•΄

Researchers had recently demonstrated how attackers could intercept device capability information and use it against 5G mobile subscribers.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Meet FPGA: The Tiny, Powerful, Hackable Bit of Silicon at the Heart of IoT πŸ•΄

Field-Programmable Gate Arrays are flexible, agile-friendly components that populate many infrastructure and IoT devices -- and have recently become the targets of researchers finding vulnerabilities.

πŸ“– Read

via "Dark Reading: ".
⚠ S2 Ep7: iPhone attack, Twitter hack and Android bots – Naked Security Podcast ⚠

Episode 7 of the Naked Security podcast is available now!

πŸ“– Read

via "Naked Security".
❌ Leaky Server Exposes 419M Phone Numbers of Facebook Users ❌

Server lacked password protection and included multiple databases with records from the U.S., U.K. and Vietnam.

πŸ“– Read

via "Threatpost".
⚠ Author of record-setting IoT botnets pleads guilty ⚠

He kept working on new botnets (and swatting a co-conspirator-cum-competitor) while indicted and on supervised release.

πŸ“– Read

via "Naked Security".
⚠ Android gets September update as price of flaws soars ⚠

When is a security update not a security update? When it’s patching flaws in a version of an OS nobody beyond developers is yet running.

πŸ“– Read

via "Naked Security".
πŸ•΄ It's Not Healthy to Confuse Compliance with Security πŸ•΄

Healthcare organizations should be alarmed by the frequency and severity of cyberattacks. Don't assume you're safe from them just because you're compliant with regulations.

πŸ“– Read

via "Dark Reading: ".
⚠ Firefox won’t follow Chrome’s anti-ad-blocker changes, says Mozilla ⚠

Mozilla has told developers not to fret - it won't follow Google in tweaking its browser to be unfriendly to ad blocking software.

πŸ“– Read

via "Naked Security".
⚠ Scammers deepfake CEO’s voice to talk underling into $243,000 transfer ⚠

The voice had the hint of a German accent and the same β€œmelody” that a UK CEO recognized in his boss's voice.

πŸ“– Read

via "Naked Security".
⚠ Raspberry Pi blasted into space, sends back video of Earth ⚠

Got a Pi? Here's a cool project idea for you...

πŸ“– Read

via "Naked Security".
❌ $5.3M Ransomware Demand: Massachusetts City Says No Thanks ❌

After being hit by a ransomware attack, Massachusetts city New Bedford faced a payout demand of more than $5 million - one of the latest known ransoms ever.

πŸ“– Read

via "Threatpost".
πŸ•΄ 419M Facebook User Phone Numbers Publicly Exposed πŸ•΄

It's still unclear who owned the server storing hundreds of millions of records online without a password.

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2018-18370 (advanced_secure_gateway, proxysg)

The ASG/ProxySG FTP proxy WebFTP mode allows intercepting FTP connections where a user accesses an FTP server via a ftp:// URL in a web browser. A stored cross-site scripting (XSS) vulnerability in the WebFTP mode allows a remote attacker to inject malicious JavaScript code in ASG/ProxySG's web listing of a remote FTP server. Exploiting the vulnerability requires the attacker to be able to upload crafted files to the remote FTP server. Affected versions: ASG 6.6 and 6.7 prior to 6.7.4.2; ProxySG 6.5 prior to 6.5.10.15, 6.6, and 6.7 prior to 6.7.4.2.

πŸ“– Read

via "National Vulnerability Database".