πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.9K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
ATENTIONβ€Ό New - CVE-2016-10959

The estatik plugin before 2.3.1 for WordPress has authenticated arbitrary file upload (exploitable with CSRF) via es_media_images[] to wp-admin/admin-ajax.php.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2016-10958

The estatik plugin before 2.3.0 for WordPress has unauthenticated arbitrary file upload via es_media_images[] to wp-admin/admin-ajax.php.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2016-10957

The Akal theme through 2016-08-22 for WordPress has XSS via the framework/brad-shortcodes/tinymce/preview.php sc parameter.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2016-10956

The mail-masta plugin 1.0 for WordPress has local file inclusion in count_of_send.php and csvexport.php.

πŸ“– Read

via "National Vulnerability Database".
πŸ” How to connect the Buttercup password manager to a cloud account πŸ”

There's a new password manager in town. Find out how to connect Buttercup to a cloud account for easy password management.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Companies still unprepared for GDPR rule changes and potential EU data breaches πŸ”

A new survey finds many companies are still in the dark about GDPR compliance.

πŸ“– Read

via "Security on TechRepublic".
πŸ” How to connect the Buttercup password manager to a cloud account πŸ”

There's a new password manager in town. Find out how to connect Buttercup to a cloud account for easy password management.

πŸ“– Read

via "Security on TechRepublic".
❌ U.S. Sanctions North Korean Group Behind WannaCry, Sony Hacks ❌

Three North Korean threat groups have been sanctioned in the U.S. as part of a larger U.S. initiative against North Korea-linked malicious cyber activity.

πŸ“– Read

via "Threatpost".
πŸ•΄ Data Leak Affects Most of Ecuador's Population πŸ•΄

An unsecured database containing 18GB of data exposed more than 20 million records, most of which held details about Ecuadorian citizens.

πŸ“– Read

via "Dark Reading: ".
❌ Asus, Lenovo and Other Routers Riddled with Remotely Exploitable Bugs ❌

Independent researchers found 125 different CVEs across 13 different router and NAS models.

πŸ“– Read

via "Threatpost".
πŸ•΄ Court Rules In Favor of Firm 'Scraping' Public Data πŸ•΄

US appeals court said a company can legally use publicly available LinkedIn account information.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ How a PIA Can CYA πŸ•΄

More than a compliance mandate, privacy impact assessments can also spot risks early in the product development cycle.

πŸ“– Read

via "Dark Reading: ".
❌ Marketing Analytics Company Leaks Deep Profiles of Entire Ecuador Population ❌

Julian Assange is among those impacted.

πŸ“– Read

via "Threatpost".
πŸ” Final Round of CCPA Amendments Outlined, Sent for Approval πŸ”

Five amendments to the California Consumer Privacy Act were sent to governor of California’s desk on Friday as the most stringent law on consumer privacy continues to take form.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
πŸ•΄ US Turning Up the Heat on North Korea's Cyber Threat Operations πŸ•΄

Sanctions on North Korean nation-state hacking groups came amid reports of fresh malicious campaigns directed at US entities from the isolated nation.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Oracle Expands Cloud Security Services at OpenWorld 2019 πŸ•΄

The company broadens its portfolio with new services developed to centralize and automate cloud security.

πŸ“– Read

via "Dark Reading: ".
⚠ Teen music hacker arrested in UK for stealing bands’ unreleased music ⚠

Manhattan District Attorney Cyrus R. Vance, Jr.: If he's guilty, he'll face the music. Heh. Heh.

πŸ“– Read

via "Naked Security".
⚠ US Treasury targets North Korean hacking groups ⚠

The US has formally sanctioned the Lazarus Group and offshoots Bluenoroff and Andariel, which are allegedly acting on behalf of the DPRK.

πŸ“– Read

via "Naked Security".
⚠ Former hacker warns against password reuse ⚠

Kyle Milliken is back from jail, and he has some advice for you: Do. Not. Reuse. Your. Passwords.

πŸ“– Read

via "Naked Security".
⚠ Robocalls now flooding US phones with 200m calls per day ⚠

According to a new report, nearly 30% of all US calls placed in the first half of 2019 were garbage, as in, nuisance, scam or fraud calls.

πŸ“– Read

via "Naked Security".
❌ LastPass Fixes Bug That Leaks Credentials ❌

The company has patched a vulnerability that could allow malicious sites unauthorized access to usernames and passwords.

πŸ“– Read

via "Threatpost".