πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
26.2K subscribers
89.3K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ“” #Infosec2024: Experts Share How CISOs Can Manage Change as the Only Constant πŸ“”

CISOs explain how to build highperforming teams, communicate with the business and manage security amid constant volatility.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Understanding Security's New Blind Spot: Shadow Engineering πŸ•΅οΈβ€β™‚οΈ

In the rush to digital transformation, many organizations are exposed to security risks associated with citizen developer applications without even knowing it.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 Some Generative AI Company Employees Pen Letter Wanting β€˜Right to Warn’ About Risks 🦿

Both the promise and the risk of "humanlevel" AI has always been part of OpenAIs makeup. What should business leaders take away from this letter?.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Muhstik Botnet Exploiting Apache RocketMQ Flaw to Expand DDoS Attacks πŸ–‹οΈ

The distributed denialofservice DDoS botnet known as Muhstik has been observed leveraging a nowpatched security flaw impacting Apache RocketMQ to coopt susceptible servers and expand its scale. "Muhstik is a wellknown threat targeting IoT devices and Linuxbased servers, notorious for its ability to infect devices and utilize them for cryptocurrency mining and launching Distributed Denial.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” #Infosec2024: CISOs Need to Move Beyond Passwords to Keep Up With Security Threats πŸ“”

Experts at Infosecurity Europe 2024 advised organizations to move away from passwords for greater security.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” #Infosec2024: Ransomware Ecosystem Transformed, New Groups β€œChanging the Rules” πŸ“”

Significant changes to the ransomware ecosystem were discussed at Infosecurity Europe 2024, with new groups changing the rules of the game.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” #Infosec2024: AI Red Teaming Provider Mindgard Named UK's Most Innovative Cyber SME πŸ“”

Mingard provides a continuous AI red teaming and vulnerability remediation platform.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Mallox Ransomware Variant Targets Privileged VMWare ESXi Environments πŸ•΅οΈβ€β™‚οΈ

Novel attack vector uses a custom shell for payload delivery and execution and only goes after systems with administrative privileges.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Interpol, FBI Disrupt Moldova-Based Cyber Ring πŸ•΅οΈβ€β™‚οΈ

Four suspects were taken into custody, accused of paying intermediaries in Moldova to inform criminals of their Red Notice status and wipe lawenforcement flags from the system.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Technology, Regulations Can't Save Orgs From Deepfake Harm πŸ•΅οΈβ€β™‚οΈ

Monetary losses, reputational damage, share price declines it's hard to counter, much less try to stay ahead of, AIbased attacks.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ›  OpenSSL Toolkit 3.3.1 πŸ› 

OpenSSL is a robust, fully featured Open Source toolkit implementing the Secure Sockets Layer and Transport Layer Security protocols with fullstrength cryptography worldwide.

πŸ“– Read more.

πŸ”— Via "Packet Storm - Tools"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ›  OpenSSL Toolkit 3.2.2 πŸ› 

OpenSSL is a robust, fully featured Open Source toolkit implementing the Secure Sockets Layer and Transport Layer Security protocols with fullstrength cryptography worldwide.

πŸ“– Read more.

πŸ”— Via "Packet Storm - Tools"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ›  OpenSSL Toolkit 3.1.6 πŸ› 

OpenSSL is a robust, fully featured Open Source toolkit implementing the Secure Sockets Layer and Transport Layer Security protocols with fullstrength cryptography worldwide.

πŸ“– Read more.

πŸ”— Via "Packet Storm - Tools"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ›  OpenSSL Toolkit 3.0.14 πŸ› 

OpenSSL is a robust, fully featured Open Source toolkit implementing the Secure Sockets Layer and Transport Layer Security protocols with fullstrength cryptography worldwide.

πŸ“– Read more.

πŸ”— Via "Packet Storm - Tools"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ 'Commando Cat' Digs Its Claws into Exposed Docker Containers πŸ•΅οΈβ€β™‚οΈ

Attackers are taking advantage of misconfigured containers to deploy cryptocurrency mining software.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Attacks Surge on Check Point's Recent VPN Zero-Day Flaw πŸ•΅οΈβ€β™‚οΈ

One monitoring firm has detected exploitation attempts targeting CVE202424919 from more than 780 unique IP addresses in the past week.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
🧨 How To Protect Your Family’s Smartphones While on Vacation 🧨

Summer is synonymous with vacations, a time when families pack their bags, grab their sunscreen, and embark on exciting adventures.... The post How To Protect Your Familys Smartphones While on Vacation appeared first on McAfee Blog.

πŸ“– Read more.

πŸ”— Via "McAfee"

----------
πŸ‘οΈ Seen on @cibsecurity
🧨 How Free VPNs Come With a Price 🧨

The number of people who use VPNs virtual private networks continues to mushroom. Recent research shows that 46 of American... The post How Free VPNs Come With a Price appeared first on McAfee Blog.

πŸ“– Read more.

πŸ”— Via "McAfee"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸš€ The job hunter’s guide: Separating genuine offers from scams πŸš€

90,000year, full home office, and 30 days of paid leave, and all for a job as a junior data analyst unbelievable, right? This and many other job offers are fake though made just to ensnare unsuspecting victims into giving up their data.

πŸ“– Read more.

πŸ”— Via "ESET - WeLiveSecurity"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Commando Cat Cryptojacking Attacks Target Misconfigured Docker Instances πŸ–‹οΈ

The threat actor known as Commando Cat has been linked to an ongoing cryptojacking attack campaign that leverages poorly secured Docker instances to deploy cryptocurrency miners for financial gain. "The attackers used the cmd.catchattr docker image container that retrieves the payload from their own commandandcontrol CC infrastructure," Trend Micro researchers Sunil Bharti and Shubham.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Researchers issue warning over new ransomware variant targeting the education sector πŸ“’

Researchers have published research on a new ransomware variant using compromised VPN credentials to target education organizations in the US.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity