๐Ÿ›ก Cybersecurity & Privacy ๐Ÿ›ก - News
25.8K subscribers
89.2K links
๐Ÿ—ž The finest daily news on cybersecurity and privacy.

๐Ÿ”” Daily releases.

๐Ÿ’ป Is your online life secure?

๐Ÿ“ฉ lalilolalo.dev@gmail.com
Download Telegram
๐Ÿฆฟ Australian Governmentโ€™s โ€˜Six Cyber Shieldsโ€™ Is Potentially a Well-Meaning Skills Crisis ๐Ÿฆฟ

The Australian governmentโ€™s new national cyber security strategy might have the inadvertent effect of making security efforts even more difficult for businesses by intensifying the current skills shortage.

๐Ÿ“– Read

via "Tech Republic".
๐Ÿ•ด 4 Pillars for Building a Responsible Cybersecurity Disclosure Program ๐Ÿ•ด

Responsible disclosure must strike a balance between the immediate need to protect users and the broader security implications for the entire community.

๐Ÿ“– Read

via "Dark Reading".
โค1
๐Ÿ•ด Suspicious New Ransomware Group Claims Sony Hack ๐Ÿ•ด

A deceitful threat actor claims its biggest haul yet. But what, if any, Sony data does it actually have?

๐Ÿ“– Read

via "Dark Reading".
๐Ÿ•ด Researchers Uncover RaaS Affiliate Distributing Multiple Ransomware Strains ๐Ÿ•ด

Ransomware-as-a-service affiliate ShadowSyndicate is unusual for the size of its malicious infrastructure and the fact that it's distributing seven different ransomware strains.

๐Ÿ“– Read

via "Dark Reading".
๐Ÿฆฟ Upgrade Your Cybersecurity With This VPN Thatโ€™s Only $89 for Three Years ๐Ÿฆฟ

Windscribe VPN gives you tools to block ads, create a safe hotspot, spoof your location, and more for the 3 years for the best price online.

๐Ÿ“– Read

via "Tech Republic".
โ™Ÿ๏ธ โ€˜Snatchโ€™ Ransom Group Exposes Visitor IP Addresses โ™Ÿ๏ธ

The victim shaming site operated by the Snatch ransomware group is leaking data about its true online location and internal operations, as well as the Internet addresses of its visitors, KrebsOnSecurity has found. The leaked data suggest that Snatch is one of several ransomware groups using paid ads on Google.com to trick people into installing malware disguised as popular free software, such as Microsoft Teams, Adobe Reader, Mozilla Thunderbird, and Discord.

๐Ÿ“– Read

via "Krebs on Security".
๐Ÿ“ข Hackers are spoofing themselves as GitHub's Dependabot to steal user passwords ๐Ÿ“ข

GitHub Dependabot was crudely spoofed in hundreds of successful attacks on open source projects

๐Ÿ“– Read

via "ITPro".
๐Ÿ•ด Will Government Secure Open Source or Muck It Up? ๐Ÿ•ด

The US government aims to support open source projects, while the European Union seeks to make open source projects liable for their software. Which approach will lead to more security?

๐Ÿ“– Read

via "Dark Reading".
๐Ÿฆฟ Atlas VPN Review (2023): Features, Pricing, Alternatives ๐Ÿฆฟ

Atlas VPN is a budget-friendly VPN that offers a unique IP address swapping feature perfect for privacy enthusiasts.

๐Ÿ“– Read

via "Tech Republic".
โ€ผ CVE-2023-40391 โ€ผ

The issue was addressed with improved memory handling. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17, macOS Sonoma 14, Xcode 15. An app may be able to disclose kernel memory.

๐Ÿ“– Read

via "National Vulnerability Database".
โ€ผ CVE-2023-44023 โ€ผ

Tenda AC10U v1.0 US_AC10UV1.0RTL_V15.03.06.49_multi_TDE01 was discovered to contain a stack overflow via the ssid parameter in the form_fast_setting_wifi_set function.

๐Ÿ“– Read

via "National Vulnerability Database".
โค1
โ€ผ CVE-2023-41241 โ€ผ

Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in SureCart WordPress Ecommerce For Creating Fast Online Stores plugin <=ร‚ 2.5.0 versions.

๐Ÿ“– Read

via "National Vulnerability Database".
โ€ผ CVE-2023-41238 โ€ผ

Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in UltimatelySocial Social Media Share Buttons & Social Sharing Icons plugin <=ร‚ 2.8.3 versions.

๐Ÿ“– Read

via "National Vulnerability Database".
๐Ÿ‘1
โ€ผ CVE-2023-40431 โ€ผ

The issue was addressed with improved memory handling. This issue is fixed in iOS 17 and iPadOS 17. An app may be able to execute arbitrary code with kernel privileges.

๐Ÿ“– Read

via "National Vulnerability Database".
โ€ผ CVE-2023-35990 โ€ผ

The issue was addressed with improved checks. This issue is fixed in iOS 17 and iPadOS 17, watchOS 10, iOS 16.7 and iPadOS 16.7, macOS Sonoma 14. An app may be able to identify what other apps a user has installed.

๐Ÿ“– Read

via "National Vulnerability Database".
โ€ผ CVE-2023-40434 โ€ผ

A configuration issue was addressed with additional restrictions. This issue is fixed in iOS 17 and iPadOS 17, macOS Sonoma 14. An app may be able to access a user's Photos Library.

๐Ÿ“– Read

via "National Vulnerability Database".