πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.9K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
❌ Fancy Bear Targets Sporting, Anti-Doping Orgs As 2020 Olympics Loom ❌

The APT is once again targeting the sports world, Microsoft warns.

πŸ“– Read

via "Threatpost".
❌ New Adwind Variant Targets Windows, Chromium Credentials ❌

A new version of the typically platform-agnostic Adwind trojan has been spotted targeting Windows applications and systems and Chromium-based browsers.

πŸ“– Read

via "Threatpost".
πŸ•΄ Cybersecurity Trumps Political, Reputational Concerns for Companies πŸ•΄

The average company has seen its risk increase, with cybersecurity topping the list of business threats, followed by damage to reputation and financial risks, a report finds.

πŸ“– Read

via "Dark Reading: ".
❌ Joker’s Stash Drops Largest-Ever Credit Card Cache on Dark Web ❌

1.3 million stolen cards, mostly from India, could fetch $130 million for the cybercrooks.

πŸ“– Read

via "Threatpost".
πŸ” Research finds 2019 increase in breaches and cybersecurity spending πŸ”

The ServiceNow and Ponemon study found an average 24% increase in cybersecurity spending and a 17% rise in attacks.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Who Made the List Of 2019's Nastiest Malware? πŸ•΄

This year's compilation features well-known ransomware, botnet, and cryptomining software.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Google Cloud Adds New Security Management Tools to G Suite πŸ•΄

Desktop devices that log into G Suite will have device management enabled by default, streamlining processes for IT admins.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Why Cloud-Native Applications Need Cloud-Native Security πŸ•΄

Today's developers and the enterprises they work for must prioritize security in order to reap the speed and feature benefits these applications and new architectures provide.

πŸ“– Read

via "Dark Reading: ".
πŸ” How to secure OneDrive files and folders with Personal Vault πŸ”

Learn how to make specific folders and files on OneDrive more secure by using Personal Vault.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Hacker Faces Jailtime After Stealing Employee, Company Data At Two Firms πŸ”

A man admitted he installed keyloggers at two companies and used them as a launching pad to steal data on emerging technology they were developing.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
πŸ•΄ The Real Reasons Why the C-Suite Isn't Complying with Security πŸ•΄

Is the C-suite really that bad at following security policy? Or is it a case of mixed messages and misunderstanding?

πŸ“– Read

via "Dark Reading: ".
❌ Facebook Sues NSO Group Over Alleged WhatsApp Hack ❌

In a new lawsuit, WhatsApp owner Facebook says that NSO Group was behind the WhatsApp zero-day exploits earlier in 2019.

πŸ“– Read

via "Threatpost".
πŸ•΄ Old RAT, New Moves: Adwind Hides in Java Commands to Target Windows πŸ•΄

The Adwind remote access Trojan conceals malicious activity in Java commands to slip past threat intelligence tools and steal user data.

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2012-2945

Hadoop 1.0.3 contains a symlink vulnerability.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2012-1187

Bitlbee does not drop extra group privileges correctly in unix.c

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2012-0046

mediawiki allows deleted text to be exposed

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2011-4931

gpw generates shorter passwords than required

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2011-2538

Cisco Video Communications Server (VCS) before X7.0.3 contains a command injection vulnerability which allows remote, authenticated attackers to execute arbitrary commands.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2011-0428

Cross Site Scripting (XSS) in ikiwiki before 3.20110122 could allow remote attackers to insert arbitrary JavaScript due to insufficient checking in comments.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2010-4237

Mercurial before 1.6.4 fails to verify the Common Name field of SSL certificates which allows remote attackers who acquire a certificate signed by a Certificate Authority to perform a man-in-the-middle attack.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2010-3375

qtparted has insecure library loading which may allow arbitrary code execution

πŸ“– Read

via "National Vulnerability Database".