πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.9K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
ATENTIONβ€Ό New - CVE-2016-10964

The dwnldr plugin before 1.01 for WordPress has XSS via the User-Agent HTTP header.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2016-10963

The icegram plugin before 1.9.19 for WordPress has XSS.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2016-10962

The icegram plugin before 1.9.19 for WordPress has CSRF via the wp-admin/edit.php option_name parameter.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2016-10961

The colorway theme before 3.4.2 for WordPress has XSS via the contactName parameter.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2016-10960

The wsecure plugin before 2.4 for WordPress has remote code execution via shell metacharacters in the wsecure-config.php publish parameter.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2016-10959

The estatik plugin before 2.3.1 for WordPress has authenticated arbitrary file upload (exploitable with CSRF) via es_media_images[] to wp-admin/admin-ajax.php.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2016-10958

The estatik plugin before 2.3.0 for WordPress has unauthenticated arbitrary file upload via es_media_images[] to wp-admin/admin-ajax.php.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2016-10957

The Akal theme through 2016-08-22 for WordPress has XSS via the framework/brad-shortcodes/tinymce/preview.php sc parameter.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2016-10956

The mail-masta plugin 1.0 for WordPress has local file inclusion in count_of_send.php and csvexport.php.

πŸ“– Read

via "National Vulnerability Database".
πŸ” How to connect the Buttercup password manager to a cloud account πŸ”

There's a new password manager in town. Find out how to connect Buttercup to a cloud account for easy password management.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Companies still unprepared for GDPR rule changes and potential EU data breaches πŸ”

A new survey finds many companies are still in the dark about GDPR compliance.

πŸ“– Read

via "Security on TechRepublic".
πŸ” How to connect the Buttercup password manager to a cloud account πŸ”

There's a new password manager in town. Find out how to connect Buttercup to a cloud account for easy password management.

πŸ“– Read

via "Security on TechRepublic".
❌ U.S. Sanctions North Korean Group Behind WannaCry, Sony Hacks ❌

Three North Korean threat groups have been sanctioned in the U.S. as part of a larger U.S. initiative against North Korea-linked malicious cyber activity.

πŸ“– Read

via "Threatpost".
πŸ•΄ Data Leak Affects Most of Ecuador's Population πŸ•΄

An unsecured database containing 18GB of data exposed more than 20 million records, most of which held details about Ecuadorian citizens.

πŸ“– Read

via "Dark Reading: ".
❌ Asus, Lenovo and Other Routers Riddled with Remotely Exploitable Bugs ❌

Independent researchers found 125 different CVEs across 13 different router and NAS models.

πŸ“– Read

via "Threatpost".
πŸ•΄ Court Rules In Favor of Firm 'Scraping' Public Data πŸ•΄

US appeals court said a company can legally use publicly available LinkedIn account information.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ How a PIA Can CYA πŸ•΄

More than a compliance mandate, privacy impact assessments can also spot risks early in the product development cycle.

πŸ“– Read

via "Dark Reading: ".
❌ Marketing Analytics Company Leaks Deep Profiles of Entire Ecuador Population ❌

Julian Assange is among those impacted.

πŸ“– Read

via "Threatpost".
πŸ” Final Round of CCPA Amendments Outlined, Sent for Approval πŸ”

Five amendments to the California Consumer Privacy Act were sent to governor of California’s desk on Friday as the most stringent law on consumer privacy continues to take form.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
πŸ•΄ US Turning Up the Heat on North Korea's Cyber Threat Operations πŸ•΄

Sanctions on North Korean nation-state hacking groups came amid reports of fresh malicious campaigns directed at US entities from the isolated nation.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Oracle Expands Cloud Security Services at OpenWorld 2019 πŸ•΄

The company broadens its portfolio with new services developed to centralize and automate cloud security.

πŸ“– Read

via "Dark Reading: ".