πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
26.2K subscribers
89.3K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ•΅οΈβ€β™‚οΈ Technology, Regulations Can't Save Orgs From Deepfake Harm πŸ•΅οΈβ€β™‚οΈ

Monetary losses, reputational damage, share price declines it's hard to counter, much less try to stay ahead of, AIbased attacks.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ›  OpenSSL Toolkit 3.3.1 πŸ› 

OpenSSL is a robust, fully featured Open Source toolkit implementing the Secure Sockets Layer and Transport Layer Security protocols with fullstrength cryptography worldwide.

πŸ“– Read more.

πŸ”— Via "Packet Storm - Tools"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ›  OpenSSL Toolkit 3.2.2 πŸ› 

OpenSSL is a robust, fully featured Open Source toolkit implementing the Secure Sockets Layer and Transport Layer Security protocols with fullstrength cryptography worldwide.

πŸ“– Read more.

πŸ”— Via "Packet Storm - Tools"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ›  OpenSSL Toolkit 3.1.6 πŸ› 

OpenSSL is a robust, fully featured Open Source toolkit implementing the Secure Sockets Layer and Transport Layer Security protocols with fullstrength cryptography worldwide.

πŸ“– Read more.

πŸ”— Via "Packet Storm - Tools"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ›  OpenSSL Toolkit 3.0.14 πŸ› 

OpenSSL is a robust, fully featured Open Source toolkit implementing the Secure Sockets Layer and Transport Layer Security protocols with fullstrength cryptography worldwide.

πŸ“– Read more.

πŸ”— Via "Packet Storm - Tools"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ 'Commando Cat' Digs Its Claws into Exposed Docker Containers πŸ•΅οΈβ€β™‚οΈ

Attackers are taking advantage of misconfigured containers to deploy cryptocurrency mining software.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Attacks Surge on Check Point's Recent VPN Zero-Day Flaw πŸ•΅οΈβ€β™‚οΈ

One monitoring firm has detected exploitation attempts targeting CVE202424919 from more than 780 unique IP addresses in the past week.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
🧨 How To Protect Your Family’s Smartphones While on Vacation 🧨

Summer is synonymous with vacations, a time when families pack their bags, grab their sunscreen, and embark on exciting adventures.... The post How To Protect Your Familys Smartphones While on Vacation appeared first on McAfee Blog.

πŸ“– Read more.

πŸ”— Via "McAfee"

----------
πŸ‘οΈ Seen on @cibsecurity
🧨 How Free VPNs Come With a Price 🧨

The number of people who use VPNs virtual private networks continues to mushroom. Recent research shows that 46 of American... The post How Free VPNs Come With a Price appeared first on McAfee Blog.

πŸ“– Read more.

πŸ”— Via "McAfee"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸš€ The job hunter’s guide: Separating genuine offers from scams πŸš€

90,000year, full home office, and 30 days of paid leave, and all for a job as a junior data analyst unbelievable, right? This and many other job offers are fake though made just to ensnare unsuspecting victims into giving up their data.

πŸ“– Read more.

πŸ”— Via "ESET - WeLiveSecurity"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Commando Cat Cryptojacking Attacks Target Misconfigured Docker Instances πŸ–‹οΈ

The threat actor known as Commando Cat has been linked to an ongoing cryptojacking attack campaign that leverages poorly secured Docker instances to deploy cryptocurrency miners for financial gain. "The attackers used the cmd.catchattr docker image container that retrieves the payload from their own commandandcontrol CC infrastructure," Trend Micro researchers Sunil Bharti and Shubham.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Researchers issue warning over new ransomware variant targeting the education sector πŸ“’

Researchers have published research on a new ransomware variant using compromised VPN credentials to target education organizations in the US.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ SPECTR Malware Targets Ukraine Defense Forces in SickSync Campaign πŸ–‹οΈ

The Computer Emergency Response Team of Ukraine CERTUA has warned of cyber attacks targeting defense forces in the country with a malware called SPECTR as part of an espionage campaign dubbed SickSync. The agency attributed the attacks to a threat actor it tracks under the moniker UAC0020, which is also called Vermin and is assessed to be associated with security agencies of the Luhansk.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Supply chain attacks are still plaguing enterprises – here's why πŸ“’

A host of organizations have fallen prey to supply chain attacks over the last month, including Santander, Ticketmaster, and two major hospitals.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ FBI Distributes 7,000 LockBit Ransomware Decryption Keys to Help Victims πŸ–‹οΈ

The U.S. Federal Bureau of Investigation FBI has disclosed that it's in possession of more than 7,000 decryption keys associated with the LockBit ransomware operation to help victims get their data back at no cost. "We are reaching out to known LockBit victims and encouraging anyone who suspects they were a victim to visit our Internet Crime Complaint Center at ic3.gov," FBI Cyber Division.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” #Infosec2024: Cyber Resilience Means Being Willing to Learn From a Crisis πŸ“”

Experts advised that crisis management and recovery is as much about communications and testing as it is about technical defense measures.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Security Flaws Found in Popular WooCommerce Plugin πŸ“”

Despite reported attempts from Patchstack to contact the vendor, no response has been received.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” #Infosec2024: Collaboration is Key to an Effective Security Culture πŸ“”

Organizations need a culture that goes beyond reporting incidents, where the business wants to collaborate with the security team.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘1
πŸ–‹οΈ Cyber Landscape is Evolving - So Should Your SCA πŸ–‹οΈ

Traditional SCAs Are Broken Did You Know You Are Missing Critical Pieces? Application Security professionals face enormous challenges securing their software supply chains, racing against time to beat the attacker to the mark.  Software Composition Analysis SCA tools have become a basic instrument in the application security arsenal in the last 7 years. Although essential, many platforms.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ The AI Debate: Google's Guidelines, Meta's GDPR Dispute, Microsoft's Recall Backlash πŸ–‹οΈ

Google is urging thirdparty Android app developers to incorporate generative artificial intelligence GenAI features in a responsible manner. The new guidance from the search and advertising giant is an effort to combat problematic content, including sexual content and hate speech, created through such tools. To that end, apps that generate content using AI must ensure they don't create.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ With hundreds of Snowflake credentials published on the dark web, it’s time for enterprises to get MFA in order πŸ“’

The recent Snowflake debacle highlights the need for more stringent enterprise MFA practices.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity