πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.9K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ” How schools can better protect themselves against cyberattacks πŸ”

Reported cyberattacks against K-12 schools in the US have hit 301 so far in 2019 compared to 124 in 2018 and 218 in 2017, according to a new report from security provider Barracuda Networks.

πŸ“– Read

via "Security on TechRepublic".
πŸ›  Falco 0.18.0 πŸ› 

Sysdig falco is a behavioral activity monitoring agent that is open source and comes with native support for containers. Falco lets you define highly granular rules to check for activities involving file and network activity, process execution, IPC, and much more, using a flexible syntax. Falco will notify you when these rules are violated. You can think about falco as a mix between snort, ossec and strace.

πŸ“– Go!

via "Security Tool Files β‰ˆ Packet Storm".
πŸ” How to locate and close an open port in Linux πŸ”

Locating and blocking unwanted open ports in Linux should be a task every network admin knows how to do.

πŸ“– Read

via "Security on TechRepublic".
❌ China-Linked Hackers Spy on Texts With MessageTap Malware ❌

Chinese state-sponsored hackers are attacking telecom networks to sniff out SMS messages that contain keywords revolving around political dissidents.

πŸ“– Read

via "Threatpost".
πŸ” Ex-Pipeline Workers Charged with Stealing Data for Competing Firm πŸ”

These ex-employees copied trade secrets onto private storage devices then bragged that their new business would soon be competing with it.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
πŸ•΄ New Office 365 Phishing Scam Leaves A Voicemail πŸ•΄

A fake voice message lures victims to a fake Microsoft 365 login page that prompts them to enter credentials.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Quantifying Security Results to Justify Costs πŸ•΄

The CISO job isn't to protect the entire business from all threats for any budget. It's to spell out what level of protection executives can expect for a given budget.

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2010-2490

Mumble: murmur-server has DoS due to malformed client query

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2009-5043

burn allows file names to escape via mishandled quotation marks

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2009-5042

python-docutils allows insecure usage of temporary files

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2009-5041

overkill has buffer overflow via long player names that can corrupt data on the server machine

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ Coalfire CEO Wants Criminal Charges Against His Employees Dropped πŸ•΄

Felony charges against two employees tasked with testing the physical security of the Dallas County, Iowa, courthouse have been lessened, but that's not enough, CEO says.

πŸ“– Read

via "Dark Reading: ".
❌ Calypso APT Emerges from the Shadows to Target Governments ❌

Researchers believe the threat group is based in China.

πŸ“– Read

via "Threatpost".
πŸ•΄ Chinese Cyber Espionage Group Steals SMS Messages via Telco Networks πŸ•΄

APT41's new campaign is latest to highlight trend by Chinese threat groups to attack upstream service providers as a way to reach its intended targets, FireEye says.

πŸ“– Read

via "Dark Reading: ".
πŸ” How to configure SSH authentication to a FreeRADIUS server πŸ”

Find out how to configure FreeRADIUS as an SSH authentication server on Ubuntu.

πŸ“– Read

via "Security on TechRepublic".
πŸ” How to configure SSH authentication to a FreeRADIUS server πŸ”

Find out how to configure FreeRADIUS as an SSH authentication server on Ubuntu.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Slow Retreat from Python 2 Threatens Code Security πŸ•΄

The end of life is near for Python 2, and there will be no rising from the grave this time. So why are some companies and developers risking a lack of security patches to stay with the old version of the programming language?

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ 32,000+ WiFi Routers Potentially Exposed to New Gafgyt Variant πŸ•΄

Researchers detect an updated Gafgyt variant that targets flaws in small office and home wireless routers from Zyxel, Huawei, and Realtek.

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2010-2783

IcedTea6 before 1.7.4 allow unsigned apps to read and write arbitrary files, related to Extended JNLP Services.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2010-2548

IcedTea6 before 1.7.4 does not properly check property access, which allows unsigned apps to read and write arbitrary files.

πŸ“– Read

via "National Vulnerability Database".
⚠ Hackers plead guilty to breach that Uber covered up ⚠

The two men pointed to Uber's $100K hush-money payment when they tried to extort Linkedin-owned Lynda... that instead called the cops.

πŸ“– Read

via "Naked Security".