πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
⚠ Google patches bug that let nearby hackers send malware to your phone ⚠

Google has patched an Android bug that could have allowed attackers to use NFC to send over a malicious file to the victim's phone

πŸ“– Read

via "Naked Security".
πŸ•΄ Enterprise Web Security: Risky Business πŸ•΄

Web development is at much more risk than commonly perceived. As attackers eye the enterprise, third-party code provides an easy way in.

πŸ“– Read

via "Dark Reading: ".
πŸ” Top 5 additional ways to fend off ransomware πŸ”

In 2019, 23 city governments in Texas experienced a coordinated ransomware attack. Tom Merritt explains how they defended themselves and ways you can protect your own business.

πŸ“– Read

via "Security on TechRepublic".
❌ Trump, Putin and Politics Name-Dropped to Peddle Malware ❌

Cybercriminals are leveraging political names and figures for social engineering as the elections loom.

πŸ“– Read

via "Threatpost".
πŸ” Top 5 additional ways to fend off ransomware πŸ”

In 2019, 23 city governments in Texas experienced a coordinated ransomware attack. Tom Merritt explains how they defended themselves and ways you can protect your own business.

πŸ“– Read

via "Security on TechRepublic".
ATENTIONβ€Ό New - CVE-2010-0737 (jboss_operations_network)

A missing permission check was found in The CLI in JBoss Operations Network before 2.3.1 does not properly check permissions, which allows JBoss ON users to perform management tasks and configuration changes with the privileges of the administrator user.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2010-0398 (autokey)

The init script in autokey before 0.61.3-2 allows local attackers to write to arbitrary files via a symlink attack.

πŸ“– Read

via "National Vulnerability Database".
⚠ Office for Mac 2011 users warned about SYLK file format ⚠

Still running Office 2011 on a Mac? If so, there are at least two reasons why that might not be a good idea.

πŸ“– Read

via "Naked Security".
πŸ•΄ Proofpoint Acquires ObserveIT to Bolster DLP Capabilities πŸ•΄

The $225 million acquisition will help Proofpoint expand its data loss prevention capabilities with email, CASB, and data at rest.

πŸ“– Read

via "Dark Reading: ".
πŸ” How Microsoft and Digital Guardian Help Protect Your Sensitive Data πŸ”

Digital Guardian, through its integration with Microsoft Information Protection, helps enrich Microsoft’s data loss prevention capabilities.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
πŸ” How boot camps may fill the need for more white hats in the US πŸ”

New study: 3 in 5 have experienced discrimination in the workplace

πŸ“– Read

via "Security on TechRepublic".
πŸ” How boot camps may fill the need for more white hats in the US πŸ”

Cyberspace is the fifth domain of warfare, yet there is a critical shortage of security experts ready to combat cybercrime.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ The State of Email Security and Protection πŸ•΄

Phishing and ransomware top the list of security risks that organizations are not fully prepared to deal with.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ 10 Tips for Building Compliance by Design into Cloud Architecture πŸ•΄

A pair of experts pass along lessons learned while building out the team and processes necessary to support Starbucks' mobile app.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Disclosure Does Little to Dissuade Cyber Spies πŸ•΄

In the past, outing nation-state cyber espionage groups caused a few to close up shop, but nowadays actors are more likely to switch to new infrastructure and continue operations.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ The Edge Cartoon Contest: Need a Lift? πŸ•΄

Feeling creative? Submit your caption in the comments, and our panel of experts will reward the winner with a $25 Amazon gift card.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Google Launches OpenTitan Project to Open Source Chip Security πŸ•΄

OpenTitan is an open source collaboration among Google and technology companies to strengthen root-of-trust chip design.

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2010-2222

The _ger_parse_control function in Red Hat Directory Server 8 and the 389 Directory Server allows attackers to cause a denial of service (NULL pointer dereference) via a crafted search query.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2010-2064 (rpcbind)

rpcbind 0.2.0 allows local users to write to arbitrary files or gain privileges via a symlink attack on (1) /tmp/portmap.xdr and (2) /tmp/rpcbind.xdr.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2010-2061 (rpcbind)

rpcbind 0.2.0 does not properly validate (1) /tmp/portmap.xdr and (2) /tmp/rpcbind.xdr, which can be created by an attacker before the daemon is started.

πŸ“– Read

via "National Vulnerability Database".