πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
26.1K subscribers
89.3K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ¦… Threat Actor profile: SideCopy πŸ¦…

Since early 2019, Operation SideCopy has remained active, exclusively targeting Indian defense forces and armed forces personnel. The malware modules associated with this Threat Actor are continually evolving, with updated versions released following reconnaissance of victim data. Threat Actors behind Operation SideCopy closely monitor malware detections and promptly update modules upon detection by antivirus software. Notably, nearly all command and control CC infrastructure is attributed to Contabo GmbH, and network infrastructure has similarities with the Transparent Tribe advanced persistent threat APT group.   Figure 1 Cyble Vision Threat Library  Country of Origin  SideCopy originates from Pakistan and operates as an APT group.  Targeted Country SideCopy primarily ...

πŸ“– Read more.

πŸ”— Via "CYBLE"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Voter Registration System Taken Offline in Coffee County Cyber-Incident πŸ“”

Coffee County has discovered malicious cyberactivity on its IT systems, and it reportedly severed its connection to Georgias state voter registration system.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Don’t let your network become a security blind spot πŸ“’

Networks represent critical pieces of IT infrastructure and make up the backbone of every modern organization, but are often overlooked when it comes to tightening defenses.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Addressing Risk Caused by Innovation πŸ•΅οΈβ€β™‚οΈ

By embracing a proactive approach to cyberrisk management, companies can better detect, prevent, and mitigate cyber threats while integrating the latest stateoftheart technology.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ How to Red Team GenAI: Challenges, Best Practices, and Learnings πŸ•΅οΈβ€β™‚οΈ

Red teaming is a crucial part of proactive GenAI security that helps map and measure AI risks.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ China-Linked 'Muddling Meerkat' Hijacks DNS to Map Internet on Global Scale πŸ–‹οΈ

A previously undocumented cyber threat dubbed Muddling Meerkat has been observed undertaking sophisticated domain name system DNS activities in a likely effort to evade security measures and conduct reconnaissance of networks across the world since October 2019. Cloud security firm Infoblox described the threat actor as likely affiliated with the.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
🧨 How to Protect Your Personal Data 🧨

All your online activity creates a trail of data. And that data tells a story. The story of you.  The... The post How to Protect Your Personal Data appeared first on McAfee Blog.

πŸ“– Read more.

πŸ”— Via "McAfee"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Judge0 Sandbox Vulnerabilities Expose Systems to Takeover Risk πŸ“”

Tanto Security uncovered three vulnerabilities which could allow attackers to execute sandbox escapes and gain root permissions on host machines.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ 'Muddling Meerkat' Poses Nation-State DNS Mystery πŸ•΅οΈβ€β™‚οΈ

Likely Chinalinked adversary has blanketed the Internet with DNS mail requests over the past five years via open resolvers, furthering Great Firewall of China ambitions. But the exact nature of its activity is unclear.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Study Reveals Alarming Levels of USPS Phishing Traffic πŸ“”

The top malicious domains attracted over 100,000 hits each, according to Akamai Security.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Google Prevented 2.28 Million Malicious Apps from Reaching Play Store in 2023 πŸ–‹οΈ

Google on Monday revealed that almost 200,000 app submissions to its Play Store for Android were either rejected or remediated to address issues with access to sensitive data such as location or SMS messages over the past year. The tech giant also said it blocked 333,000 bad accounts from the app storefront in 2023 for attempting to distribute malware or for repeated policy violations. "In 2023,.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
🧨 The Darkgate Menace: Leveraging Autohotkey & Attempt to Evade Smartscreen 🧨

Authored by Yashvi Shah, Lakshya Mathur and Preksha Saxena McAfee Labs has recently uncovered a novel infection chain associated with... The post The Darkgate Menace Leveraging Autohotkey Attempt to Evade Smartscreen appeared first on McAfee Blog.

πŸ“– Read more.

πŸ”— Via "McAfee"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ 13.4M Kaiser Insurance Members Affected by Data Leak to Online Advertisers πŸ•΅οΈβ€β™‚οΈ

Tracking code used for keeping tabs on how members navigated through the healthcare giant's online and mobile sites was oversharing a concerning amount of information.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
🀯1
πŸ•΅οΈβ€β™‚οΈ Okta: Credential-Stuffing Attacks Spike via Proxy Networks πŸ•΅οΈβ€β™‚οΈ

Okta warns users that the attack requests are made through an anonymizing service like Tor or various commercial proxy networks.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Cybersecurity Is Becoming More Diverse … Except by Gender πŸ•΅οΈβ€β™‚οΈ

While other professions are making up ground, cybersecurity still lags behind in female representation, thanks to a lack of respect and inclusion.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ ESET PROTECT Portfolio Now Includes New MDR Tiers and Features πŸ•΅οΈβ€β™‚οΈ



πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
β™ŸοΈ FCC Fines Major U.S. Wireless Carriers for Selling Customer Location Data β™ŸοΈ

The U.S. Federal Communications Commission FCC today levied fines totaling nearly 200 million against the four major carriers including ATT, Sprint, TMobile and Verizon for illegally sharing access to customers' location information without consent.

πŸ“– Read more.

πŸ”— Via "Krebs on Security"

----------
πŸ‘οΈ Seen on @cibsecurity
🀬1
πŸ–‹οΈ New U.K. Law Bans Default Passwords on Smart Devices Starting April 2024 πŸ–‹οΈ

The U.K. National Cyber Security Centre NCSC is calling on manufacturers of smart devices to comply with new legislation that prohibits them from using default passwords, effective April 29, 2024. "The law, known as the Product Security and Telecommunications Infrastructure act or PSTI act, will help consumers to choose smart devices that have been designed to.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘1
πŸš€ Why space exploration is important for Earth and its future: Q&A with David Eicher πŸš€

We caught up with Astronomy magazine editorinchief David Eicher to talk about key challenges facing our planet, the benefits of space exploration, and the possibility of life beyond Earth.

πŸ“– Read more.

πŸ”— Via "ESET - WeLiveSecurity"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Google Blocks 2.3 Million Apps From Play Store Listing πŸ“”

Google blocked millions of policyviolating apps from being listed on Play in 2023 and banned 333,000 bad accounts.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
❀1
πŸ“” FCC Fines Carriers $200m For Selling User Location Data πŸ“”

Some of Americas biggest wireless carriers illegally sold customer location, says FCC.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity