πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.9K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
ATENTIONβ€Ό New - CVE-2002-2444

Snoopy 2.0.0-1 has a security hole in exec cURL

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ Database Error Exposes 7.5 Million Adobe Customer Records πŸ•΄

The database was open for approximately one week before the problem was discovered.

πŸ“– Read

via "Dark Reading: ".
πŸ” Ex-SEC Employee Took Data to Land New Job πŸ”

The DOJ says a former SEC examiner stole information from the government agency to help him land a chief compliance officer gig at a firm the SEC was investigating.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
πŸ•΄ US Lawmakers Fear Chinese-Owned TikTok Poses Security Risk πŸ•΄

The popular video app has more than 110 million downloads in the United States and could give China access to users' personal data, they say.

πŸ“– Read

via "Dark Reading: ".
❌ Pwn2Own Expands Into Industrial Control Systems Hacking ❌

White-hat hackers will now have the chance to win $20,000 for sniffing out remote code-execution flaws in industrial control systems.

πŸ“– Read

via "Threatpost".
πŸ” 2020 predictions for technology, consumer packaged goods and retail πŸ”

Nielsen released predictions for the next decade at the Gartner IT Symposium/Xpo 2019 and CPG and retail supply chains will need automation, blockchain and enhanced analytics to improve security.

πŸ“– Read

via "Security on TechRepublic".
ATENTIONβ€Ό New - CVE-2012-5577

Python keyring lib before 0.10 created keyring files with world-readable permissions.

πŸ“– Read

via "National Vulnerability Database".
⚠ Adobe database exposes 7.5 million Creative Cloud users ⚠

Adobe has become the latest company to be caught leaving an Elasticsearch database full of customer data exposed on the internet.

πŸ“– Read

via "Naked Security".
❌ UniCredit Suffers Third Breach Despite Investing Billions in Cybersecurity ❌

UniCredit was also hit with hacking incidents in September-October 2016 and June-July 2017.

πŸ“– Read

via "Threatpost".
πŸ” Hackers finding ways to exploit automotive software to overtake cars πŸ”

A new report from IntSights details the many ways cybercriminals break into a new generation of highly digitized cars.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Is Voting by Mobile App a Better Security Option or Just 'A Bad Idea'? πŸ•΄

Security experts say voting by app adds another level of risk, as mobile-voting pilots expand for overseas military and voters with disabilities.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Pwn2Own Adds Industrial Control Systems to Hacking Contest πŸ•΄

The Zero Day Initiative will bring its first ICS Pwn2Own competition to the S4x20 conference in January.

πŸ“– Read

via "Dark Reading: ".
πŸ›  Stegano 0.9.7 πŸ› 

Stegano is a basic Python Steganography module. Stegano implements two methods of hiding: using the red portion of a pixel to hide ASCII messages, and using the Least Significant Bit (LSB) technique. It is possible to use a more advanced LSB method based on integers sets. The sets (Sieve of Eratosthenes, Fermat, Carmichael numbers, etc.) are used to select the pixels used to hide the information.

πŸ“– Go!

via "Security Tool Files β‰ˆ Packet Storm".
πŸ” Top 5 things to know about alternative data πŸ”

Alternative data allows businesses to discover trends and financial opportunities without compromising consumer privacy. Tom Merritt explains the five things you need to know about alternative data.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Top 5 things to know about alternative data πŸ”

Alternative data allows businesses to discover trends and financial opportunities without compromising consumer privacy. Tom Merritt explains the five things you need to know about alternative data.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Fortinet Bolsters Endpoint Security with enSilo Acquisition πŸ•΄

As companies reduce their vendor count, consolidation will likely continue to accelerate in the next year.

πŸ“– Read

via "Dark Reading: ".
⚠ New Facebook AI fools facial recognition ⚠

The technology - which Facebook won't use in its own apps - subtly distorts face images so they're still recognizable, but not to machines.

πŸ“– Read

via "Naked Security".
⚠ PHP team fixes nasty site-owning remote execution bug ⚠

The PHP development team has fixed a bug that could allow remote code execution in some setups of the programming language.

πŸ“– Read

via "Naked Security".
⚠ Gradient β€œcelebrity matching” photo app sparks privacy fears ⚠

The Kardashians love the Gradient app - but they're being paid to use it, whereas for you it's the other way round. Is it safe?

πŸ“– Read

via "Naked Security".
❌ ThreatList: Most Retail Hardware Bug Bounty Flaws Are Critical ❌

Overall, across all retail programs, more than 18 percent of all bug bounty submissions are critical in severity, a new Bugcrowd report found.

πŸ“– Read

via "Threatpost".
❌ Country of Georgia Suffers Widespread Cyberattack ❌

The attack on local web-hosting provider Pro-Service - likely politically motivated - took out 2,000 websites and the national television station.

πŸ“– Read

via "Threatpost".