🛡 Cybersecurity & Privacy 🛡 - News
25.8K subscribers
89.2K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
🕴 A Warning From Weird Al 🕴

Should you get an e-mail with the subject 'stinky cheese'...

📖 Read

via "Dark Reading: ".
🕴 The Uphill Battle of Triaging Alerts 🕴

Prioritizing alerts is foundational to security, but almost every organization struggles to manage this process efficiently. Here's what you can do about it.

📖 Read

via "Dark Reading: ".
🔐 How to locate and close an open port in Linux 🔐

Locating and blocking unwanted open ports in Linux should be a task every network admin knows how to do.

📖 Read

via "Security on TechRepublic".
🛠 Bluto 2.4.16 🛠

Bluto is a dns reconnaissance, vulnerability checking, and enumeration tool.

📖 Go!

via "Security Tool Files ≈ Packet Storm".
🛠 AIEngine 1.9.1 🛠

AIEngine is a packet inspection engine with capabilities of learning without any human intervention. It helps network/security professionals to identify traffic and develop signatures for use them on NIDS, Firewalls, Traffic classifiers and so on.

📖 Go!

via "Security Tool Files ≈ Packet Storm".
🔐 How to copy a file from one server to another from a third with SSH 🔐

Find out how to work some SSH magic, by transferring a file from one machine to another from a third.

📖 Read

via "Security on TechRepublic".
DarkUniverse APT Emerges to Deliver Sophisticated, Targeted Spy Attacks

The group was exposed after a ShadowBrokers leak.

📖 Read

via "Threatpost".
Facebook Privacy Breach: 100 Developers Improperly Accessed Data

Facebook said that 100+ third-party app developers had access to restricted data for members of Groups, in its latest privacy snafu.

📖 Read

via "Threatpost".
🕴 California DMV Leak Spills Data from Thousands of Drivers 🕴

Federal agencies reportedly had improper access to Social Security data belonging to 3,200 license holders.

📖 Read

via "Dark Reading: ".
🔐 Cybercriminals using Google Analytics to enhance phishing efforts 🔐

A report from security firm Akamai found that hackers were using analytics services to optimize their phishing efforts.

📖 Read

via "Security on TechRepublic".
🔏 FBI, NIH Continue Biomed Research Theft Probe 🔏

A report in the New York Times this week revealed how widespread the theft of biomedical secrets is at U.S. universities and research institutions.

📖 Read

via "Subscriber Blog RSS Feed ".
🕴 Social Media: Corporate Cyber Espionage's Channel of Choice 🕴

Proactive defense and automation can help your company deal with scale and prioritize risks in order to more efficiently fight cyber espionage.

📖 Read

via "Dark Reading: ".
ATENTION New - CVE-2010-2471

drupal6 version 6.16 has open redirection

📖 Read

via "National Vulnerability Database".
ATENTION New - CVE-2010-2446

Rbot Reaction plugin allows command execution

📖 Read

via "National Vulnerability Database".
ATENTION New - CVE-2010-2247

makepasswd 1.10 default settings generate insecure passwords

📖 Read

via "National Vulnerability Database".
🕴 What a Security Products Blacklist Means for End Users and Integrators 🕴

A recent US Commerce Department blacklist of several Chinese entities leaves a looming question: What happens if your products are now prohibited?

📖 Read

via "Dark Reading: ".
ATENTION New - CVE-2009-5050

konversation before 1.2.3 allows attackers to cause a denial of service.

📖 Read

via "National Vulnerability Database".
ATENTION New - CVE-2009-5049

WebApp JSP Snoop page XSS in jetty though 6.1.21.

📖 Read

via "National Vulnerability Database".
ATENTION New - CVE-2009-5048

Cookie Dump Servlet stored XSS vulnerability in jetty though 6.1.20.

📖 Read

via "National Vulnerability Database".
ATENTION New - CVE-2009-5046

JSP Dump and Session Dump Servlet XSS in jetty before 6.1.22.

📖 Read

via "National Vulnerability Database".
ATENTION New - CVE-2009-5045

Dump Servlet information leak in jetty before 6.1.22.

📖 Read

via "National Vulnerability Database".