πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
26.1K subscribers
89.3K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ–‹οΈ The SEC Won't Let CISOs Be: Understanding New SaaS Cybersecurity Rules πŸ–‹οΈ

The SEC isnt giving SaaS a free pass. Applicable public companies, known as registrants, are now subject to cyber incident disclosure and cybersecurity readiness requirements for data stored in SaaS systems, along with the 3rd and 4th party apps connected to them.  The new cybersecurity mandates make no distinction between data exposed in a breach that was stored onpremise, in the.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Italian Businesses Hit by Weaponized USBs Spreading Cryptojacking Malware πŸ–‹οΈ

A financially motivated threat actor known as UNC4990 is leveraging weaponized USB devices as an initial infection vector to target organizations in Italy. Googleowned Mandiant said the attacks single out multiple industries, including health, transportation, construction, and logistics. "UNC4990 operations generally involve widespread USB infection followed by the deployment of the.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Most UK firms pay ransom pay ransomware demands, despite β€˜do not pay’ policies πŸ“’

With ransomware attacks on the rise, organizations are paying up but still take weeks to recover.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ BCDR buyer's guide for MSPs πŸ“’

How to choose a business continuity and disaster recovery solution.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
🚨 Exploitation of vulnerabilities affecting Ivanti Connect Secure and Ivanti Policy Secure 🚨

Organisations are encouraged to take immediate action to mitigate vulnerabilities affecting Ivanti Connect Secure ICS and Ivanti Policy Secure IPS gateways CVE202346805, CVE202421887, CVE202421888 and CVE202421893, and follow the latest vendor advice.

πŸ“– Read more.

πŸ”— Via "UK NCSC"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” US Sanctions Egyptian IT Experts Aiding ISIS in Cybersecurity πŸ“”

The US said the two Egyptian nationals provided cybersecurity training and support to ISIS leadership and supporters, as well as helping enable the group to use cryptocurrency.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘1
🚨 Exploitation of vulnerabilities affecting Ivanti Connect Secure and Ivanti Policy Secure 🚨

Organisations are encouraged to take immediate action to mitigate vulnerabilities affecting Ivanti Connect Secure ICS and Ivanti Policy Secure IPS gateways CVE202346805, CVE202421887, CVE202421888 and CVE202421893, and follow the latest vendor advice.

πŸ“– Read more.

πŸ”— Via "UK NCSC"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘1
πŸ“’ Nearly 50 million Europcar customer records put up for sale on the dark web – or were they? πŸ“’

Europcar denies alleged breach, claiming the exfiltrated data was fabricated. Experts are now arguing over whether AI is to blame.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Telegram Marketplaces Fuel Phishing Attacks with Easy-to-Use Kits and Malware πŸ–‹οΈ

Cybersecurity researchers are calling attention to the "democratization" of the phishing ecosystem owing to the emergence of Telegram as an epicenter for cybercrime, enabling threat actors to mount a mass attack for as little as 230. "This messaging app has transformed into a bustling hub where seasoned cybercriminals and newcomers alike exchange illicit tools and insights creating a dark and.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
🌊 UnderDefense and Agile Cybersecurity Solutions partner to protect business from potential cyberthreats 🌊

The post UnderDefense and Agile Cybersecurity Solutions partner to protect business from potential cyberthreats appeared first on UnderDefense.

πŸ“– Read more.

πŸ”— Via "UnderDefense"

----------
πŸ‘οΈ Seen on @cibsecurity
🚨 Exploitation of vulnerabilities affecting Ivanti Connect Secure and Ivanti Policy Secure 🚨

Organisations are encouraged to take immediate action to mitigate vulnerabilities affecting Ivanti Connect Secure ICS and Ivanti Policy Secure IPS gateways CVE202346805, CVE202421887, CVE202421888 and CVE202421893, and follow the latest vendor advice.

πŸ“– Read more.

πŸ”— Via "UK NCSC"

----------
πŸ‘οΈ Seen on @cibsecurity
🚨 Exploitation of vulnerabilities affecting Ivanti Connect Secure and Ivanti Policy Secure 🚨

Organisations are encouraged to take immediate action to mitigate vulnerabilities affecting Ivanti Connect Secure ICS and Ivanti Policy Secure IPS gateways CVE202346805, CVE202421887, CVE202421888 and CVE202421893, and follow the latest vendor advice.

πŸ“– Read more.

πŸ”— Via "UK NCSC"

----------
πŸ‘οΈ Seen on @cibsecurity
🧠 Data security posture management vs cloud security posture management 🧠

A data breach has just occurred, is a phrase no security professional wants to hear. From the CISO on down to the SOC analysts, a data breach is the definition of a very bad day. It can cause serious brand damage and financial loss for enterprises, lead to abrupt career changes among security professionals, and The post Data security posture management vs cloud security posture management appeared first on Security Intelligence.

πŸ“– Read more.

πŸ”— Via "Security Intelligence"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ¦… GhostSec Continues to Extend their Support for Cyber Threat Actors and Hacktivists πŸ¦…

CRIL raises concerns about the rise in GhostSec's activities supporting threat actorshacktivists and their newly launched project, which aims to raise funds to help them anonymize their identities. The post GhostSec Continues to Extend their Support for Cyber Threat Actors and Hacktivists appeared first on Cyble. The post GhostSec Continues to Extend their Support for Cyber Threat Actors and Hacktivists appeared first on Cyble.

πŸ“– Read more.

πŸ”— Via "CYBLE"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 Limited Time Deal: a Lifetime of Powerful VPN Protection is Just $35 Through 2/4 🦿

Get the ultimate online protection of privacy and security for up to five devices, including speedy servers, unlimited bandwidth, kill switch and more.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Alert: Ivanti Discloses 2 New Zero-Day Flaws, One Under Active Exploitation πŸ–‹οΈ

Ivanti is alerting of two new highseverity flaws in its Connect Secure and Policy Secure products, one of which is said to have come under targeted exploitation in the wild. The list of vulnerabilities is as follows CVE202421888 CVSS score 8.8 A privilege escalation vulnerability in the web component of Ivanti Connect Secure 9.x, 22.x and Ivanti Policy Secure 9.x, 22.x allows.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Recognizing Security as a Strategic Component of Business πŸ•΅οΈβ€β™‚οΈ

In today's environments, security can be a revenue enabler, not just a cost center. Organizations should take advantage of the opportunities.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘1
πŸ“” Sysdig Report Exposes 91% Failure in Runtime Scans πŸ“”

The research also revealed 69 of enterprises have yet to integrate AI into cloud environments.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Dubai Cyber Force Names First Accredited Companies πŸ•΅οΈβ€β™‚οΈ

The initiative has named the first eight companies approved to cybersecure the Dubai government.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” US Senators Propose Cybersecurity Agriculture Bill πŸ“”

The Farm and Food Cybersecurity Act has crossparty support and aims enhance the US agriculture sectors cyber defenses.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” EU Launches First Cybersecurity Certification for Digital Products πŸ“”

The voluntary scheme aims to encourage ICT providers to boost the cybersecurity of products and services across the EU.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity