πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
26.1K subscribers
89.3K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ“” Microsoft Provides Defense Guidance After Nation-State Compromise πŸ“”

Microsoft said the Russian nationstate group Midnight Blizzard obfuscated its attack through the use of an OAuth application.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ PoC exploits for Jenkins vulnerability are being targeted in the wild, researchers reveal πŸ“’

Hackers are already sniffing around a number of proofofconcept exploits for a critical vulnerability in the Jenkins open source automation software, experts warn.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
😱1
πŸ“” Nigerian 'Yahoo Boys' Behind Social Media Sextortion Surge in the US πŸ“”

Nigeriabased cybercriminals known as Yahoo Boys are the main drivers of a financial sextortion increase on TikTok, Instagram and Snapchat, targeting Englishspeaking teenagers.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Researchers Uncover How Outlook Vulnerability Could Leak Your NTLM Passwords πŸ–‹οΈ

A nowpatched security flaw in Microsoft Outlook could be exploited by threat actors to access NT LAN Manager NTLM v2 hashed passwords when opening a specially crafted file. The issue, tracked as CVE202335636 CVSS score 6.5, was addressed by the tech giant as part of its Patch Tuesday updates for December 2023. "In an email attack scenario, an attacker could exploit the.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Take your business further with a dedicated internet connection πŸ“’

Achieve internet speed and reliability to match your business ambitions.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
🧠 Ermac malware: The other side of the code 🧠

When the Cerberus code was leaked in late 2020, IBM Trusteer researchers projected that a new Cerberus mutation was just a matter of time. Multiple actors used the leaked Cerberus code but without significant changes to the malware. However, the MalwareHunterTeam discovered a new variant of Cerberus known as Ermac also known as Hook The post Ermac malware The other side of the code appeared first on Security Intelligence.

πŸ“– Read more.

πŸ”— Via "Security Intelligence"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Top 3 Data Breaches of 2023, and What Lies Ahead in 2024 πŸ•΅οΈβ€β™‚οΈ

Take a look at last year's most impactful data breaches and what companies can do to protect themselves going forward.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” US Senator Exposes NSA Purchase of Americans’ Internet Records πŸ“”

The call follows an FTC order saying data brokers must secure consent before selling user data.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ New Jersey School District Shut Down by Cyberattack πŸ•΅οΈβ€β™‚οΈ

Sunday night, Freehold Township district officials notified its staff and parents that school would not be in session Monday due to technical difficulties caused by a cyber incident.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Phobos Ransomware Family Expands With New FAUST Variant πŸ“”

FortiGuard said the variant was found in an Office document using a VBA script.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ›  PrommetriX Prometheus Metrics Leaker πŸ› 

PrommetriX is a tool that demonstrates a data leakage vulnerability in the Prometheus metricsbased event monitoring software.

πŸ“– Read more.

πŸ”— Via "Packet Storm - Tools"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Iran's 'Cyber Centers' Dodge Sanctions to Sell Cyber Operations πŸ•΅οΈβ€β™‚οΈ

Networks of Iranian officials and cyberoffensive specialists have created a variety of cybersecurity contractor in an attempt to dodge sanctions, according to leaked documents.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 What Do Apple’s EU App Store Changes Mean for App Developers? 🦿

The EU says the DMA keeps markets fair and open Apple says the DMA introduces security problems. Apple is leveling fees against independent app stores.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
❀1
🦿 Ransomware’s Impact Could Include Heart Attacks, Strokes & PTSD 🦿

New research details the possible effects of ransomware attacks on businesses and staff, society, the economy and national security, highlighting that its impact on mental and physical health is often overlooked.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘1
πŸ•΅οΈβ€β™‚οΈ SolarWinds Files Motion to Dismiss SEC Lawsuit πŸ•΅οΈβ€β™‚οΈ

Responding to SEC charges, SolarWinds fired back with a detailed defense of how a Russianbacked cyber espionage attack on its system was handled.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ PoC Exploits Heighten Risks Around Critical New Jenkins Vuln πŸ•΅οΈβ€β™‚οΈ

The arbitrary fileread flaw can lead to remote code execution.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Keenan & Associates Reports Data Breach Exposing Social Security Numbers of More Than 1.5M πŸ•΅οΈβ€β™‚οΈ



πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Juniper Networks Releases Urgent Junos OS Updates for High-Severity Flaws πŸ–‹οΈ

Juniper Networks has released outofband updates to address highseverity flaws in SRX Series and EX Series that could be exploited by a threat actor to take control of susceptible systems. The vulnerabilities, tracked as CVE202421619 and CVE202421620, are rooted in the JWeb component and impact all versions of Junos OS. Two other shortcomings, CVE202336846 and.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘1
πŸ–‹οΈ New ZLoader Malware Variant Surfaces with 64-bit Windows Compatibility πŸ–‹οΈ

Threat hunters have identified a new campaign that delivers the ZLoader malware, resurfacing nearly two years after the botnet's infrastructure was dismantled in April 2022. A new variant of the malware is said to have been in development since September 2023, Zscaler ThreatLabz said in an analysis published this month. "The new version of Zloader made significant changes to the loader.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” UK House of Lords Calls For Legislation on Facial Recognition Tech πŸ“”

The House of Lords has questioned the legal basis for police use of facial recognition and wants parliament to legislate.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” FBI: Scammers Are Sending Couriers to Collect Cash From Victims πŸ“”

The FBI is warning the public not to fall for scams where they are urged to liquidate assets and hand them to couriers for safekeeping.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity