πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.9K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ“” Nigerian Faces $7.5m BEC Charges After Charities Are Swindled πŸ“”

A Nigerian man is facing a 100-year jail term after being arrested on multimillion-dollar BEC charges

πŸ“– Read

via "Infosecurity Magazine".
πŸ“” Experts Clash Over Ransomware Payment Ban πŸ“”

Emsisoft has called for a complete ban on ransomware payments after another record-breaking year of attacks

πŸ“– Read

via "Infosecurity Magazine".
πŸ“’ UK small businesses plan to ramp up tech investment in 2024 πŸ“’

Small business tech investment will be a key focus in the year ahead, but many could struggle to implement new tools

πŸ“– Read

via "ITPro".
πŸ–‹οΈ Beware: 3 Malicious PyPI Packages Found Targeting Linux with Crypto Miners πŸ–‹οΈ

Three new malicious packages have been discovered in the Python Package Index (PyPI) open-source repository with capabilities to deploy a cryptocurrency miner on affected Linux devices.The three harmful packages, named modularseven, driftme, and catme, attracted a total of 431 downloads over the past month before they were taken down.β€œThese packages, upon initial use, deploy a CoinMiner

πŸ“– Read

via "The Hacker News".
πŸ“’ LastPass is getting stricter on master passwords in the wake of a disastrous 2022 security breach πŸ“’

A minimum character length for LastPass master passwords will now be enforced to reflect β€œheightened threat levels”

πŸ“– Read

via "ITPro".
πŸ“’ Accenture brings on 400 tech staff as 6point6 acquisition clears πŸ“’

Completion of the deal marks the latest in a series of takeovers by Accenture

πŸ“– Read

via "ITPro".
πŸ–‹οΈ Three Ways To Supercharge Your Software Supply Chain Security πŸ–‹οΈ

Section four of the "Executive Order on Improving the Nation’s Cybersecurity" introduced a lot of people in tech to the concept of a β€œSoftware Supply Chain” and securing it. If you make software and ever hope to sell it to one or more federal agencies, you have to pay attention to this. Even if you never plan to sell to a government, understanding your Software Supply Chain and

πŸ“– Read

via "The Hacker News".
πŸ›  SQLMAP - Automatic SQL Injection Tool 1.8 πŸ› 

sqlmap is an open source command-line automatic SQL injection tool. Its goal is to detect and take advantage of SQL injection vulnerabilities in web applications. Once it detects one or more SQL injections on the target host, the user can choose among a variety of options to perform an extensive back-end database management system fingerprint, retrieve DBMS session user and database, enumerate users, password hashes, privileges, databases, dump entire or user's specified DBMS tables/columns, run his own SQL statement, read or write either text or binary files on the file system, execute arbitrary commands on the operating system, establish an out-of-band stateful connection between the attacker box and the database server via Metasploit payload stager, database stored procedure buffer overflow exploitation or SMB relay attack and more.

πŸ“– Read

via "Packet Storm Security".
πŸ‘1
πŸ“” HealthEC Data Breach Impacts 4.5 Million Patients πŸ“”

HealthEC said that sensitive medical data was exposed in the breach, which is now thought to have impacted 4.5 million people

πŸ“– Read

via "Infosecurity Magazine".
πŸ•΄ 'Cyber Toufan' Hacktivists Leaked 100-Plus Israeli Orgs in One Month πŸ•΄

A new threat actor just concluded a month and a half of two major leaks per day. Now comes phase two: follow-on attacks.

πŸ“– Read

via "Dark Reading".
πŸ“” Using Stronger Passwords Among Top 2024 Digital Resolutions πŸ“”

Security measures top Kaspersky’s annual digital resolutions survey

πŸ“– Read

via "Infosecurity Magazine".
πŸ•΄ Navigating the New Age of Cybersecurity Enforcement πŸ•΄

The SolarWinds SEC lawsuit illuminates the potential risks faced by CISOs and other cybersecurity executives.

πŸ“– Read

via "Dark Reading".
❀1
πŸ“’ 11 million SSH servers are at risk of Terrapin attacks, here's how to protect yourself πŸ“’

Millions of SSH servers are potentially vulnerable to Terrapin attacks, with experts urging organizations to remain vigilant

πŸ“– Read

via "ITPro".
πŸ“’ 23andMe risks public relations disaster as it blames customers for data breach πŸ“’

23andMe has hit back at customers affected by a recent data breach with suggestions they’re at fault

πŸ“– Read

via "ITPro".
πŸ“’ HealthEC incident shows healthcare data breaches are getting out of control πŸ“’

The latest data breach at HealthEC draws attention to healthcare’s endemic cyber security problem

πŸ“– Read

via "ITPro".
πŸ“” Ukraine Blames Russian Sandworm Hackers for Kyivstar Attack πŸ“”

Ukraine’s security service says Sandworm accessed Kyivstar’s system at least six months before launching the attack

πŸ“– Read

via "Infosecurity Magazine".
πŸ“” LastPass Enforces 12-Character Master Passwords πŸ“”

Password manager provider LastPass has started implementing stricter password measures for its customers

πŸ“– Read

via "Infosecurity Magazine".
πŸ•΄ Mandiant's X (Twitter) Account Hacked to Promote Crypto Scam πŸ•΄

The hours-long breach β€” since resolved β€” directed users to a suspicious website as attackers posing as crypto-wallet service Phantom took over the feed of the Google subsidiary.

πŸ“– Read

via "Dark Reading".
πŸ•΄ Administrator Account For Middle East Internet Registry Hacked πŸ•΄

The compromise reportedly led to corruption in the routing of a Spanish telecom provider's network.

πŸ“– Read

via "Dark Reading".
🦿 Intel Spins Off Enterprise Generative AI Deployment Firm Articul8 🦿

Investment firm DigitalBridge Group and other backers provided the cash for the venture, which will enable generative AI deployment.

πŸ“– Read

via "Tech Republic".
πŸ•΄ Russia Kyivstar Hack Should Alarm West, Ukraine Security Chief Warns πŸ•΄

If Ukraine's core telephone network can be taken out, organizations in the West could easily be next, Ukraine's SBU chief says.

πŸ“– Read

via "Dark Reading".