πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
26.1K subscribers
89.3K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
β™ŸοΈ Using Google Search to Find Software Can Be Risky β™ŸοΈ

Google continues to struggle with cybercriminals running malicious ads on its search platform to trick people into downloading boobytrapped copies of popular free software applications. The malicious ads, which appear above organic search results and often precede links to legitimate sources of the same software, can make searching for software on Google a dicey affair.

πŸ“– Read more.

πŸ”— Via "Krebs on Security"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸͺ– New Year, New Initiatives for the NIST Privacy Framework! πŸͺ–

Its been four years since the release of The NIST Privacy Framework A Tool for Improving Privacy Through Enterprise Risk Management, Version 1.0. Since then, many organizations have found it highly valuable for building or improving their privacy programs. Weve also been able to add a variety of resources to support its implementation. Were proud of how much has been accomplished in just a few short years, but were not resting on our laurels. As another, more famous, Dylan once said, the times they are achangin. For example, the past year has seen the release of the NIST AI Risk.

πŸ“– Read more.

πŸ”— Via "NIST"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Airline Gets SASE to Modernize Operations πŸ•΅οΈβ€β™‚οΈ

Cathay, a travel lifestyle brand that includes the Cathay Pacific airline, had a growing cybersecurity problem made worse by its aging technology infrastructure. It solved part of the problem by replacing legacy technology with a modern one that has security built in.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Russian TrickBot Mastermind Gets 5-Year Prison Sentence for Cybercrime Spree πŸ–‹οΈ

40yearold Russian national Vladimir Dunaev has been sentenced to five years and four months in prison for his role in creating and distributing the TrickBot malware, the U.S. Department of Justice DoJ said. The development comes nearly two months after Dunaev pleaded guilty to committing computer fraud and identity theft and conspiracy to commit wire fraud and bank fraud. ".

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Critical Cisco Flaw Lets Hackers Remotely Take Over Unified Comms Systems πŸ–‹οΈ

Cisco has released patches to address a critical security flaw impacting Unified Communications and Contact Center Solutions products that could permit an unauthenticated, remote attacker to execute arbitrary code on an affected device. Tracked as CVE202420253 CVSS score 9.9, the issue stems from improper processing of userprovided data that a threat actor could abuse to send a.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Microsoft Warns of Widening APT29 Espionage Attacks Targeting Global Orgs πŸ–‹οΈ

Microsoft on Thursday said the Russian statesponsored threat actors responsible for a cyber attack on its systems in late November 2023 have been targeting other organizations and that it's currently beginning to notify them. The development comes a day after Hewlett Packard Enterprise HPE revealed that it had been the victim of an attack perpetrated by a hacking crew.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Malicious Ads on Google Target Chinese Users with Fake Messaging Apps πŸ–‹οΈ

Chinesespeaking users have been targeted by malicious Google ads for restricted messaging apps like Telegram as part of an ongoing malvertising campaign. "The threat actor is abusing Google advertiser accounts to create malicious ads and pointing them to pages where unsuspecting users will download Remote Administration Trojan RATs instead," Malwarebytes' Jrme Segura said in a.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Data Privacy Week: Companies are Banning Generative AI Due to Privacy Risks πŸ“”

Cisco found that privacy and data security risks have led to over a quarter of organizations banning generative AI, at least temporarily, while a majority have instituted controls.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Perfecting the Defense-in-Depth Strategy with Automation πŸ–‹οΈ

Medieval castles stood as impregnable fortresses for centuries, thanks to their meticulous design. Fast forward to the digital age, and this medieval wisdom still echoes in cybersecurity. Like castles with strategic layouts to withstand attacks, the DefenseinDepth strategy is the modern counterpart a multilayered approach with strategic redundancy and a blend of passive and active security.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ The 23andMe data breach is getting messier by the day πŸ“’

23andMe said it was unaware a breach occurred for several months, just weeks after an embarrassing public spat with concerned customers.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 Malwarebytes vs. Norton (2024): Which Antivirus Solution Is Better? 🦿

Which is better, Malwarebytes or Norton? Read this guide to find out which one is better in terms of features, performance and protection against malware.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” New Leaks Expose Web of Iranian Intelligence and Cyber Companies πŸ“”

Recorded Future analyzed leaks describing the close relationship between the Iranian government and Iranaligned APT groups.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ CISO Corner: Deep Dive Into SecOps, Insurance, & CISOs' Evolving Role πŸ•΅οΈβ€β™‚οΈ

Our collection of the most relevant reporting and industry perspectives for those guiding cybersecurity strategies and focused on SecOps.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
🧨 Protect What Matters on Data Privacy Day 🧨

Imagine a Privacy Facts label on the apps, devices, and websites you use. Like a digital version of the Nutrition... The post Protect What Matters on Data Privacy Day appeared first on McAfee Blog.

πŸ“– Read more.

πŸ”— Via "McAfee"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ ICS Ransomware Danger Rages Despite Fewer Attacks πŸ•΅οΈβ€β™‚οΈ

Refined tactics, increased collaboration between groups, and continued success exploiting zerodays is helping ICS ransomware attackers inflict more damage, researchers find.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Redefining Cybersecurity for a Comprehensive Security Posture πŸ•΅οΈβ€β™‚οΈ

The integration of different disciplines of cybersecurity and fraud management is a necessary evolution in the face of increasingly sophisticated digital threats.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Saudi Arabia Boosts Railway Cybersecurity πŸ•΅οΈβ€β™‚οΈ

Saudi rail provider partners will help Saudi Telecommunication Company stc to keep its security on track.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Ukraine Arrests Hacker for Assisting Russian Missile Strikes πŸ“”

Ukraines security services said that the IT specialist from Kharkiv targeted government websites and provided intelligence to Russia to carry out missile strikes.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
🧠 DORA and your quantum-safe cryptography migration 🧠

Quantum computing is a new paradigm with the potential to tackle problems that classical computers cannot solve today. Unfortunately, this also introduces threats to the digital economy and particularly the financial sector. The Digital Operational Resilience Act DORA is a regulatory framework that introduces uniform requirements across the European Union EU to achieve a high The post DORA and your quantumsafe cryptography migration appeared first on Security Intelligence.

πŸ“– Read more.

πŸ”— Via "Security Intelligence"

----------
πŸ‘οΈ Seen on @cibsecurity
β™ŸοΈ Who is Alleged Medibank Hacker Aleksandr Ermakov? β™ŸοΈ

Authorities in Australia, the United Kingdom and the United States this week levied financial sanctions against a Russian man accused of stealing data on nearly 10 million customers of the Australian health insurance giant Medibank. 33yearold Aleksandr Ermakov allegedly stole and leaked the Medibank data while working with one of Russia's most destructive ransomware groups, but little more is shared about the accused. Here's a closer look at the activities of Mr. Ermakov's alleged hacker handles.

πŸ“– Read more.

πŸ”— Via "Krebs on Security"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Series of Cyberattacks Hit Ukrainian Critical Infrastructure Organizations πŸ•΅οΈβ€β™‚οΈ

It's unclear if the attacks which hit oil and gas, postal service, transport safety, and railway organizations in the nation were related.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity