πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ•΄ Microsoft Issues Out-of-Band Patch for Internet Explorer πŸ•΄

The security update fixes a vulnerability that could allow an attacker to remotely execute code at the same privilege as the legitimate user.

πŸ“– Read

via "Dark Reading: ".
❌ More U.S. Utility Firms Targeted in Evolving LookBack Spearphishing Campaign ❌

A spearphishing campaign first uncovered in July is hitting more utilities firms and spreading the LookBack malware, which has capabilities to view system data and reboot machines.

πŸ“– Read

via "Threatpost".
πŸ•΄ Rethinking Risk Management πŸ•΄

Where most organizations fall short in risk management tools, technologies, and talent, and how they can improve.

πŸ“– Read

via "Dark Reading: ".
❌ Microsoft Internet Explorer Zero-Day Flaw Addressed in Out-of-Band Security Update ❌

Microsoft has issued a patch for an Internet Explorer remote code execution flaw that is being actively exploited in the wild.

πŸ“– Read

via "Threatpost".
πŸ›  XSSer Penetration Testing Tool 1.8-1 πŸ› 

XSSer is an open source penetration testing tool that automates the process of detecting and exploiting XSS injections against different applications. It contains several options to try to bypass certain filters, and various special techniques of code injection.

πŸ“– Go!

via "Security Tool Files β‰ˆ Packet Storm".
⚠ Instagram phish poses as copyright infringement warning – don’t click! ⚠

Your Instagram account has value to the crooks - so they're coming up with some cunning tricks to get at your passsword.

πŸ“– Read

via "Naked Security".
⚠ Jira development and ticketing software hit by critical flaws ⚠

Atlassian admins have a spot of patching work on their hands after the company released updates addressing two critical flaws.

πŸ“– Read

via "Naked Security".
⚠ Apple restricts adblocking extensions ⚠

Apple has turned off the ability for adblocking companies to use their own blocking mechanisms in Safari.

πŸ“– Read

via "Naked Security".
⚠ Facebook has booted tens of thousands of data-grabbing apps ⚠

400 developers have been naughty with user data, noncompliant with policy, and/or have ignored Facebook's audit, it says.

πŸ“– Read

via "Naked Security".
πŸ” How to use the new Firefox Private Network πŸ”

Need to hide your location and encrypt your Firefox browser data? Look no further than the new Firefox Private Network add-on.

πŸ“– Read

via "Security on TechRepublic".
❌ Malicious Ad Blockers for Chrome Caught in Ad Fraud Scheme ❌

'AdBlock' and 'uBlock' impersonate legitimate extensions but instead engage in cookie stuffing to defraud affiliate marketing programs, a researcher has found.

πŸ“– Read

via "Threatpost".
πŸ•΄ Bridging the Gap Between Security & DevOps πŸ•΄

An inside look into the engineering mindset of DevOps from the vantage of a career security professional.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ 6 Best Practices for Performing Physical Penetration Tests πŸ•΄

A cautionary tale from a pen test gone wrong in an Iowa county courthouse.

πŸ“– Read

via "Dark Reading: ".
πŸ” Financial impact of ransomware attacks increasing despite overall decrease in attacks πŸ”

Vulnerabilities originally discovered by US government security services have been used by cybercriminals against municipalities, costing taxpayers an estimated $11.5 billion in 2019.

πŸ“– Read

via "Security on TechRepublic".
πŸ” How to add a password manager to Nextcloud πŸ”

Add a password manager to Nextcloud so your users can start using strong passwords more easily.

πŸ“– Read

via "Security on TechRepublic".
⚠ YouTube β€˜influencers’ get 2FA tokens phished ⚠

100K or so creators in the YouTube car community were targeted by a phishing campaign that captured 2FA codes.

πŸ“– Read

via "Naked Security".
❌ Zebrocy Retools for New Political Attacks ❌

Researchers warn that the Russia-linked APT has freshened up their tools with an improved downloader and more.

πŸ“– Read

via "Threatpost".
πŸ” Why employees still fall for phishing emails πŸ”

Nearly half of office workers said they had their data compromised. Here's why they keep falling for phishing scams.

πŸ“– Read

via "Security on TechRepublic".
❌ Dtrack RAT is Behind Virulent ATM-Espionage Campaign ❌

Seen this month attacking victims in India, the Dtrack malware is bent on financial gain and high-end spying.

πŸ“– Read

via "Threatpost".