πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
26.2K subscribers
89.3K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ“” Chinese State-Sponsored Operation β€œCrimson Palace” Revealed πŸ“”

Sophos said the campaign aimed to maintain prolonged network access for espionage purposes.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Hijacking Scheme Takes Over High-Profile TikTok Accounts πŸ•΅οΈβ€β™‚οΈ

Hijacking malware gets spread through TikTok's direct messaging and doesn't require the victim to click links or download anything.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 Cisco Talos: LilacSquid Threat Actor Targets Multiple Sectors Worldwide With PurpleInk Malware 🦿

Find out how the cyberespionage threat actor LilacSquid operates, and then learn how to protect your business from this security risk.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘1
🧨 How To Prevent Your Emails From Being Hacked 🧨

My mother recently turned 80, so of course a large celebration was in order. With 100 plus guests, entertainment, and... The post How To Prevent Your Emails From Being Hacked appeared first on McAfee Blog.

πŸ“– Read more.

πŸ”— Via "McAfee"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ RansomHub Actors Exploit ZeroLogon Vuln in Recent Ransomware Attacks πŸ•΅οΈβ€β™‚οΈ

CVE20201472 is a privilege escalation flaw that allows an attacker to take over an organization's domain controllers.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Hackers Target Python Developers with Fake "Crytic-Compilers" Package on PyPI πŸ–‹οΈ

Cybersecurity researchers have discovered a malicious Python package uploaded to the Python Package Index PyPI repository that's designed to deliver an information stealer called Lumma aka LummaC2. The package in question is cryticcompilers, a typosquatted version of a legitimate library named cryticcompile. The rogue package was downloaded 441 times before it was taken down by PyPI.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
🌊 Slack Security Best Practices 🌊

Slack is a powerful collaboration tool, but security becomes a top priority when sensitive data is involved. For organizations bound by regulations like PCI DSS and HIPAA, using Slack securely requires extra vigilance. Following best practices, you can leverage Slacks power while keeping your organizations sensitive data safe and secure. Why security matters on Slack The post Slack Security Best Practices appeared first on UnderDefense.

πŸ“– Read more.

πŸ”— Via "UnderDefense"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ InfoSec spends a lot of time talking about the dangers of burnout – here's how you can actually tackle the problem πŸ“’

Burnout in the cyber community has been a regular point of discussion at Infosec Europe, but how can firms actually go about addressing the growing challenge?.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Google Maps Timeline Data to be Stored Locally on Your Device for Privacy πŸ–‹οΈ

Google has announced plans to store Maps Timeline data locally on users' devices instead of their Google account effective December 1, 2024. The changes were originally announced by the tech giant in December 2023, alongside changes to the autodelete control when enabling Location History by setting it to three months by default, down from the previous limit of 18 months. Google Maps Timeline,.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Australian health insurance firm Medibank under fire over security blunders years after cyber attack πŸ“’

Legal proceedings have been filed against Medibank in relation to the 2022 data breach at the firm.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 1Password Review: Features, Pricing & Security 🦿

1Passwords toptier security and sleek user interface make it a solid password manager to try this year. Read our handson 1Password review to learn more.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Prevent Account Takeover with Better Password Security πŸ–‹οΈ

Tom works for a reputable financial institution. He has a long, complex password that would be nearimpossible to guess. Hes memorized it by heart, so he started using it for his social media accounts and on his personal devices too. Unbeknownst to Tom, one of these sites has had its password database compromised by hackers and put it up for sale on the dark web. Now threat actors are working.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Hackers Exploit Legitimate Packer Software to Spread Malware Undetected πŸ–‹οΈ

Threat actors are increasingly abusing legitimate and commercially available packer software such as BoxedApp to evade detection and distribute malware such as remote access trojans and information stealers. "The majority of the attributed malicious samples targeted financial institutions and government industries," Check Point security researcher Jiri Vinopal said in an analysis. The volume of.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” #Infosec2024: Supply Chains Remain Hidden Threat to Business πŸ“”

Supply chains pose a significant but often invisible risk to organizations across all sectors, experts warn.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Third-Party Cyber Attacks: The Threat No One Sees Coming – Here's How to Stop Them πŸ–‹οΈ

Learn about critical threats that can impact your organization and the bad actors behind them from Cybersixgills threat experts. Each story shines a light on underground activities, the threat actors involved, and why you should care, along with what you can do to mitigate risk.  In an increasingly interconnected world, supply chain attacks have emerged as a formidable threat, compromising.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” #Infosec2024: Mandatory Ransomware Reporting Would Be Positive Move, Say Experts πŸ“”

Police, insurance and private sector security experts argue UK government proposals on ransomware payments could benefit the community.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘1
πŸ•΅οΈβ€β™‚οΈ Trend Micro, Nvidia Partner to Secure AI Data Centers πŸ•΅οΈβ€β™‚οΈ

With companies pouring billions into AI software and hardware, these installations need to be protected from cybersecurity threats and other security lapses.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” #Infosec2024: How to Change Security Behaviors Beyond Awareness Training πŸ“”

Experts at Infosecurity Europe 2024 advised on how to ensure meaningful behavioral change in employees, moving beyond awareness training.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘1
πŸ“” #Infosec2024: Third of Web Traffic Comes from Malicious Bots, Veracity Says πŸ“”

Malicious bots keep growing, now accounting for over 30 of the global web traffic, the CEO of Veracity Trust Network said during Infosecurity Europe.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
🧠 AI-driven compliance: The key to cloud security 🧠

The growth of cloud computing continues unabated, but it has also created security challenges. The acceleration of cloud adoption has created greater complexity, with limited cloud technical expertise available in the market, an explosion in connected and Internet of Things IoT devices and a growing need for multicloud environments. When clients migrate to the cloud, The post AIdriven compliance The key to cloud security appeared first on Security Intelligence.

πŸ“– Read more.

πŸ”— Via "Security Intelligence"

----------
πŸ‘οΈ Seen on @cibsecurity
🌊 Protecting Kubernetes on AWS from Exploits 🌊

The post Protecting Kubernetes on AWS from Exploits appeared first on UnderDefense.

πŸ“– Read more.

πŸ”— Via "UnderDefense"

----------
πŸ‘οΈ Seen on @cibsecurity