πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
26.1K subscribers
89.3K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ“” Sysdig Report Exposes 91% Failure in Runtime Scans πŸ“”

The research also revealed 69 of enterprises have yet to integrate AI into cloud environments.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Dubai Cyber Force Names First Accredited Companies πŸ•΅οΈβ€β™‚οΈ

The initiative has named the first eight companies approved to cybersecure the Dubai government.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” US Senators Propose Cybersecurity Agriculture Bill πŸ“”

The Farm and Food Cybersecurity Act has crossparty support and aims enhance the US agriculture sectors cyber defenses.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” EU Launches First Cybersecurity Certification for Digital Products πŸ“”

The voluntary scheme aims to encourage ICT providers to boost the cybersecurity of products and services across the EU.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Pawn Storm’s Stealthy Net-NTLMv2 Assault Revealed πŸ“”

Trend Micro reported recent attacks focused on government sectors, including foreign affairs, energy, defense and transportation.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ›  OpenSSL Toolkit 3.2.1 πŸ› 

OpenSSL is a robust, fully featured Open Source toolkit implementing the Secure Sockets Layer and Transport Layer Security protocols with fullstrength cryptography worldwide. The latest stable version is the 3.2 series supported until 23rd November 2025.

πŸ“– Read more.

πŸ”— Via "Packet Storm - Tools"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ›  OpenSSL Toolkit 3.1.5 πŸ› 

OpenSSL is a robust, fully featured Open Source toolkit implementing the Secure Sockets Layer and Transport Layer Security protocols with fullstrength cryptography worldwide. The 3.1 series is supported until 14th March 2025.

πŸ“– Read more.

πŸ”— Via "Packet Storm - Tools"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ›  OpenSSL Toolkit 3.0.13 πŸ› 

OpenSSL is a robust, fully featured Open Source toolkit implementing the Secure Sockets Layer and Transport Layer Security protocols with fullstrength cryptography worldwide. The 3.0 series is a Long Term Support LTS version and is supported until 7th September 2026.

πŸ“– Read more.

πŸ”— Via "Packet Storm - Tools"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Looted RIPE Credentials for Sale on the Dark Web πŸ•΅οΈβ€β™‚οΈ

A monitoring exercise identified user details in 716 compromised RIPE NCC accounts, plus other valuable credentials belonging to those victims.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 What Is Cyber Threat Hunting? (Definition & How it Works) 🦿

Cyber threat hunting is the proactive process of searching for and detecting potential threats or malicious activities within a network or system.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ More Ivanti VPN Zero-Days Fuel Attack Frenzy as Patches Finally Roll πŸ•΅οΈβ€β™‚οΈ

Both Chinabacked APTs and ordinary cyberattackers have seized on a pair of Ivanti VPN bugs for global exploitation.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ RunC Flaws Enable Container Escapes, Granting Attackers Host Access πŸ–‹οΈ

Multiple security vulnerabilities have been disclosed in the runC command line tool that could be exploited by threat actors to escape the bounds of the container and stage followon attacks. The vulnerabilities, tracked as CVE202421626, CVE202423651, CVE202423652, and CVE202423653, have been collectively dubbed Leaky Vessels by cybersecurity vendor Snyk. "These container.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Johnson Controls Ransomware Cleanup Costs Top $27M and Counting πŸ•΅οΈβ€β™‚οΈ

JCI's latest SEC filing notes that its smartfactory installations weren't compromised, allaying physical security fears.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ 'Leaky Vessels' Cloud Bugs Allow Container Escapes Globally πŸ•΅οΈβ€β™‚οΈ

The four security vulnerabilities are found in Docker and beyond, and one affecting runC affects essentially every cloudnative developer worldwide.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Fulton County Suffers Power Outages as Cyberattack Continues πŸ•΅οΈβ€β™‚οΈ

County services have come to a halt and are not expected to resume until next week no threat actor has yet been identified.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Ransomware Groups Gain Clout With False Attack Claims πŸ•΅οΈβ€β™‚οΈ

Technica? Europcar? Cybercriminals are increasingly bluffing about ransomware attacks, and the cybersecurity community is helping by spreading their lies.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Incognia Secures $31M to Meet Demand for Proactive Approach to Fraud Prevention πŸ•΅οΈβ€β™‚οΈ



πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Aim Security Raises $10M to Secure Generative AI Enterprise Adoption πŸ•΅οΈβ€β™‚οΈ



πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Kasperskys ICS CERT Predictions for 2024: Ransomware Rampage, Cosmopolitical Hacktivism, and Beyond πŸ•΅οΈβ€β™‚οΈ



πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ CISA Warns of Active Exploitation of Critical Vulnerability in iOS, iPadOS, and macOS πŸ–‹οΈ

The U.S. Cybersecurity and Infrastructure Security Agency CISA on Wednesday added a highseverity flaw impacting iOS, iPadOS, macOS, tvOS, and watchOS to its Known Exploited Vulnerabilities KEV catalog, based on evidence of active exploitation. The vulnerability, tracked as CVE202248618 CVSS score 7.8, concerns a bug in the kernel component. "An attacker with.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ¦… Greenbean: Latest Android Banking Trojan Leveraging Simple RealTime Server (SRS) for C&C Communication πŸ¦…

Cyble analyzes GreenBean, a new Android Banking Trojan leveraging Simple RealTime Server SRS for CC Communication The post Greenbean Latest Android Banking Trojan Leveraging Simple RealTime Server SRS for CC Communication appeared first on Cyble. The post Greenbean Latest Android Banking Trojan Leveraging Simple RealTime Server SRS for CC Communication appeared first on Cyble.

πŸ“– Read more.

πŸ”— Via "CYBLE"

----------
πŸ‘οΈ Seen on @cibsecurity