πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.9K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ” How to protect your organization's website against typosquatting πŸ”

Hundreds of fake domains have been set up against some of the presidential candidates through typosquatting, according to a report from digital risk company Digital Shadows.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Second Ransomware Attack Strikes Johannesburg πŸ•΄

Attackers who broke into the city's network demand four Bitcoins in ransom or threaten to share stolen personal and financial data.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Building a Cybersecurity Culture: What's Love Got to Do With It? πŸ•΄

Turns out, a lot. Get people to fall in love with the security team, and you'll get them to care about security, CISOs say in part 2 of a two-part series about building security culture.

πŸ“– Read

via "Dark Reading: ".
❌ News Wrap: Hotel Robot Hacks, FTC Stalkerware Crackdown ❌

From hacking hotel room robots to crackdowns on stalkerware apps, Threatpost editors break down this week's top news stories.

πŸ“– Read

via "Threatpost".
❌ U.N., UNICEF, Red Cross Under Ongoing Mobile Attack ❌

A smart mobile-first phishing effort uses valid certificates to sign fake Office 365 pages, and logs keystrokes in real time.

πŸ“– Read

via "Threatpost".
ATENTIONβ€Ό New - CVE-2015-0270

Zend Framework before 2.2.10 and 2.3.x before 2.3.5 has Potential SQL injection in PostgreSQL Zend\Db adapter.

πŸ“– Read

via "National Vulnerability Database".
❌ 7M Adobe Creative Cloud Users Exposed to Hackers ❌

An open cloud database sets the stage for phishing attacks for users of the subscription service.

πŸ“– Read

via "Threatpost".
πŸ” Cybersecurity Awareness Month: How individuals and businesses can stay vigilant πŸ”

October is Cybersecurity Awareness Month, and the Identity Theft Resource Center is providing tips to keep consumers and companies safe.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Cybersecurity Awareness Month: How individuals and businesses can stay vigilant πŸ”

October is Cybersecurity Awareness Month, and the Identity Theft Resource Center is providing tips to keep consumers and companies safe.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Friday Five: 10/25 Edition πŸ”

The FBI warns about e-skimming, a VPN is hacked, and the best and worst states for online privacy. Catch up on the news of the week with the Friday Five!

πŸ“– Read

via "Subscriber Blog RSS Feed ".
πŸ•΄ Get Up to Speed on the Latest Cryptographic Techniques at Black Hat Europe πŸ•΄

Study the weaknesses of WPA-TKIP encryption bone up on the most secure cryptographic APIs at Black Hat Europe.

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2013-4857

D-Link DIR-865L has PHP File Inclusion in the router xml file.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2013-4856

D-Link DIR-865L has Information Disclosure.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2013-4855

D-Link DIR-865L has SMB Symlink Traversal due to misconfiguration in the SMB service allowing symbolic links to be created to locations outside of the Samba share.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2013-4848

TP-Link TL-WDR4300 version 3.13.31 has multiple CSRF vulnerabilities.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2013-4658

Linksys EA6500 has SMB Symlink Traversal allowing symbolic links to be created to locations outside of the Samba share.

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ Online Beauty Store Hit by Magecart Attack πŸ•΄

An e-skimmer placed on the Procter & Gamble-owned First Aid Beauty site to steal payment card data went undetected for five months.

πŸ“– Read

via "Dark Reading: ".
❌ Is AWS Liable in Capital One Breach? ❌

Senators penned a letter to the FTC urging it to investigate whether Amazon is to blame for the massive Capital One data breach disclosed earlier this year.

πŸ“– Read

via "Threatpost".
πŸ•΄ Microsoft Office Bug Remains Top Malware Delivery Vector πŸ•΄

CVE-2017-11882 has been attackers' favorite malware delivery mechanism throughout the second and third quarters of 2019.

πŸ“– Read

via "Dark Reading: ".
⚠ Crypto Capital boss arrested over money laundering ⚠

Bitfinex says the payment processor has $880M of the cryptocurrency exchange's β€œlost” funds. Polish authorities seized $390m of it.

πŸ“– Read

via "Naked Security".
❌ Cybercriminals Impersonate Russian APT β€˜Fancy Bear’ to Launch DDoS Attacks ❌

Attacks are targeting international companies in the financial sector, demanding that victims pay ransom in Bitcoin.

πŸ“– Read

via "Threatpost".