πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ“’ LastPass is getting stricter on master passwords in the wake of a disastrous 2022 security breach πŸ“’

A minimum character length for LastPass master passwords will now be enforced to reflect β€œheightened threat levels”

πŸ“– Read

via "ITPro".
πŸ“’ Accenture brings on 400 tech staff as 6point6 acquisition clears πŸ“’

Completion of the deal marks the latest in a series of takeovers by Accenture

πŸ“– Read

via "ITPro".
πŸ–‹οΈ Three Ways To Supercharge Your Software Supply Chain Security πŸ–‹οΈ

Section four of the "Executive Order on Improving the Nation’s Cybersecurity" introduced a lot of people in tech to the concept of a β€œSoftware Supply Chain” and securing it. If you make software and ever hope to sell it to one or more federal agencies, you have to pay attention to this. Even if you never plan to sell to a government, understanding your Software Supply Chain and

πŸ“– Read

via "The Hacker News".
πŸ›  SQLMAP - Automatic SQL Injection Tool 1.8 πŸ› 

sqlmap is an open source command-line automatic SQL injection tool. Its goal is to detect and take advantage of SQL injection vulnerabilities in web applications. Once it detects one or more SQL injections on the target host, the user can choose among a variety of options to perform an extensive back-end database management system fingerprint, retrieve DBMS session user and database, enumerate users, password hashes, privileges, databases, dump entire or user's specified DBMS tables/columns, run his own SQL statement, read or write either text or binary files on the file system, execute arbitrary commands on the operating system, establish an out-of-band stateful connection between the attacker box and the database server via Metasploit payload stager, database stored procedure buffer overflow exploitation or SMB relay attack and more.

πŸ“– Read

via "Packet Storm Security".
πŸ‘1
πŸ“” HealthEC Data Breach Impacts 4.5 Million Patients πŸ“”

HealthEC said that sensitive medical data was exposed in the breach, which is now thought to have impacted 4.5 million people

πŸ“– Read

via "Infosecurity Magazine".
πŸ•΄ 'Cyber Toufan' Hacktivists Leaked 100-Plus Israeli Orgs in One Month πŸ•΄

A new threat actor just concluded a month and a half of two major leaks per day. Now comes phase two: follow-on attacks.

πŸ“– Read

via "Dark Reading".
πŸ“” Using Stronger Passwords Among Top 2024 Digital Resolutions πŸ“”

Security measures top Kaspersky’s annual digital resolutions survey

πŸ“– Read

via "Infosecurity Magazine".
πŸ•΄ Navigating the New Age of Cybersecurity Enforcement πŸ•΄

The SolarWinds SEC lawsuit illuminates the potential risks faced by CISOs and other cybersecurity executives.

πŸ“– Read

via "Dark Reading".
❀1
πŸ“’ 11 million SSH servers are at risk of Terrapin attacks, here's how to protect yourself πŸ“’

Millions of SSH servers are potentially vulnerable to Terrapin attacks, with experts urging organizations to remain vigilant

πŸ“– Read

via "ITPro".
πŸ“’ 23andMe risks public relations disaster as it blames customers for data breach πŸ“’

23andMe has hit back at customers affected by a recent data breach with suggestions they’re at fault

πŸ“– Read

via "ITPro".
πŸ“’ HealthEC incident shows healthcare data breaches are getting out of control πŸ“’

The latest data breach at HealthEC draws attention to healthcare’s endemic cyber security problem

πŸ“– Read

via "ITPro".
πŸ“” Ukraine Blames Russian Sandworm Hackers for Kyivstar Attack πŸ“”

Ukraine’s security service says Sandworm accessed Kyivstar’s system at least six months before launching the attack

πŸ“– Read

via "Infosecurity Magazine".
πŸ“” LastPass Enforces 12-Character Master Passwords πŸ“”

Password manager provider LastPass has started implementing stricter password measures for its customers

πŸ“– Read

via "Infosecurity Magazine".
πŸ•΄ Mandiant's X (Twitter) Account Hacked to Promote Crypto Scam πŸ•΄

The hours-long breach β€” since resolved β€” directed users to a suspicious website as attackers posing as crypto-wallet service Phantom took over the feed of the Google subsidiary.

πŸ“– Read

via "Dark Reading".
πŸ•΄ Administrator Account For Middle East Internet Registry Hacked πŸ•΄

The compromise reportedly led to corruption in the routing of a Spanish telecom provider's network.

πŸ“– Read

via "Dark Reading".
🦿 Intel Spins Off Enterprise Generative AI Deployment Firm Articul8 🦿

Investment firm DigitalBridge Group and other backers provided the cash for the venture, which will enable generative AI deployment.

πŸ“– Read

via "Tech Republic".
πŸ•΄ Russia Kyivstar Hack Should Alarm West, Ukraine Security Chief Warns πŸ•΄

If Ukraine's core telephone network can be taken out, organizations in the West could easily be next, Ukraine's SBU chief says.

πŸ“– Read

via "Dark Reading".
πŸ•΄ Airbus Looks to Acquire Atos Cybersecurity Unit for Nearly $2 Billion πŸ•΄

One of the world's largest aerospace companies is eyeing a cybersecurity upgrade.

πŸ“– Read

via "Dark Reading".
πŸ–±οΈ Say what you will? Your favorite speech-to-text app may be a privacy risk πŸ–±οΈ

Typing with your voice? It should go without saying that you need to take some precautions and avoid spilling your secrets.

πŸ“– Read

via "WeLiveSecurity - ESET".
πŸ•΄ Industrial Defender Risk Signal, a Risk-Based Vulnerability Management Solution for OT Security πŸ•΄



πŸ“– Read

via "Dark Reading".
πŸ•΄ C3 Complete Acquires Information Security Business Unit of Compliance Solutions Inc. πŸ•΄



πŸ“– Read

via "Dark Reading".