πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
26.1K subscribers
89.3K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ•΅οΈβ€β™‚οΈ Perfecting the Proactive Security Playbook πŸ•΅οΈβ€β™‚οΈ

It's more important than ever for organizations to prepare themselves and their cybersecurity postures against known and unknown threats.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” New Multi-Stage Malware Targets Windows Users in Ukraine πŸ“”

Discovered by FortiGuard Labs, the attack leverages an Excel file embedded with a VBA macro.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Cox Biz Auth-Bypass Bug Exposes Millions of Devices to Takeover πŸ•΅οΈβ€β™‚οΈ

The US broadband provider fixed an issue that allowed attackers to gain access to business customers modems, and then access info and execute commands with the same permissions of an ISP support team.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” #Infosec2024: How to Develop Your Future Team πŸ“”

Expert panel advises CISOs to look beyond pay and at career progression and worklife balance to fill skills gaps.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Cyber attacks force London hospital trusts to suspend non-emergency operations πŸ“’

The cyber attacks have caused widespread disruption for patients and staff.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Telerik Report Server Flaw Could Let Attackers Create Rogue Admin Accounts πŸ–‹οΈ

Progress Software has rolled out updates to address a critical security flaw impacting the Telerik Report Server that could be potentially exploited by a remote attacker to bypass authentication and create rogue administrator users. The issue, tracked as CVE20244358, carries a CVSS score of 9.8 out of a maximum of 10.0. "In Progress Telerik Report Server, version 2024 Q1 10.0.24.305 or.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Account Takeovers Outpace Ransomware as Top Security Concern πŸ“”

The latest Abnormal Security report shows 83 of firms faced at least one account takeover in the past year.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Ticketmaster Breach Showcases SaaS Data Security Risks πŸ•΅οΈβ€β™‚οΈ

MFA and other mechanisms are critical to protect against unauthorized access to data in cloud application environments, but businesses still fall down on the job.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 Cisco Live 2024: Cisco Unveils AI Deployment Solution With NVIDIA 🦿

A 1 billion commitment will send Cisco money to Cohere, Mistral AI and Scale AI.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 Paris Olympics 2024: Cyber Attackers are Targeting Companies Associated With Games, Report Finds 🦿

The authors of the report also say that attendees will almost certainly be targeted with Olympicsrelated phishing schemes.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Russian Power Companies, IT Firms, and Govt Agencies Hit by Decoy Dog Trojan πŸ–‹οΈ

Russian organizations are at the receiving end of cyber attacks that have been found to deliver a Windows version of a malware called Decoy Dog. Cybersecurity company Positive Technologies is tracking the activity cluster under the name Operation Lahat, attributing it to an advanced persistent threat APT group called HellHounds. "The Hellhounds group compromises organizations they select and.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” London Hospitals Cancel Operations Following Ransomware Incident πŸ“”

A ransomware attack on a supplier of pathology services has forced leading London hospitals to cancel operations and divert emergency patients.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” #Infosec2024 Ransomware: The Key Updates You Need to Know πŸ“”

Organizations need to collaborate to bolster their defenses in the face of new and emerging threats.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
🧨 How Data Brokers Sell Your Identity 🧨

Data brokers gather hundreds, sometimes thousands, of data points on individuals. The question is, how do they round it up?... The post How Data Brokers Sell Your Identity appeared first on McAfee Blog.

πŸ“– Read more.

πŸ”— Via "McAfee"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ 'Fog' Ransomware Rolls in to Target Education, Recreation Sectors πŸ•΅οΈβ€β™‚οΈ

A new group of hackers is encrypting data in virtual machines, leaving ransom notes, and calling it a day.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Ukrainian Systems Hit by Cobalt Strike Via a Malicious Excel File πŸ•΅οΈβ€β™‚οΈ

The campaign uses a multistage payloaddelivery process and various mechanisms for evasion and persistence.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ CISOs are facing a β€˜tsunami of regulations’ β€” here’s why it’s crucial they focus on quantifying cyber risk πŸ“’

Identifying and addressing cyber risk is a key challenge for CISOs, and with an onslaught of pending regulation it's critical that security leaders sharpen up.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Africa Ranks Low on Phishing Cyber Resilience πŸ•΅οΈβ€β™‚οΈ

As threats to Africa's cybersphere continue to grow, the continent faces high risks to its society and economy with a growing cyber skills gap and lack of preparedness.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Celebrity TikTok Accounts Compromised Using Zero-Click Attack via DMs πŸ–‹οΈ

Popular videosharing platform TikTok has acknowledged a security issue that has been exploited by threat actors to take control of highprofile accounts on the platform. The development was first reported by Semafor and Forbes, which detailed a zeroclick account takeover campaign that allows malware propagated via direct messages to compromise brand and celebrity accounts without having to.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Cisco: β€œAI is changing everything” – including security πŸ“’

Cisco has unveiled a series of updates to its security and monitoring software.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Zyxel Releases Patches for Firmware Vulnerabilities in EoL NAS Models πŸ–‹οΈ

Zyxel has released security updates to address critical flaws impacting two of its networkattached storage NAS devices that have currently reached endoflife EoL status. Successful exploitation of three of the five vulnerabilities could permit an unauthenticated attacker to execute operating system OS commands and arbitrary code on affected installations. Impacted models include NAS326.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity