πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ” Cybercriminals using Google Analytics to enhance phishing efforts πŸ”

A report from security firm Akamai found that hackers were using analytics services to optimize their phishing efforts.

πŸ“– Read

via "Security on TechRepublic".
πŸ” FBI, NIH Continue Biomed Research Theft Probe πŸ”

A report in the New York Times this week revealed how widespread the theft of biomedical secrets is at U.S. universities and research institutions.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
πŸ•΄ Social Media: Corporate Cyber Espionage's Channel of Choice πŸ•΄

Proactive defense and automation can help your company deal with scale and prioritize risks in order to more efficiently fight cyber espionage.

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2010-2471

drupal6 version 6.16 has open redirection

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2010-2446

Rbot Reaction plugin allows command execution

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2010-2247

makepasswd 1.10 default settings generate insecure passwords

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ What a Security Products Blacklist Means for End Users and Integrators πŸ•΄

A recent US Commerce Department blacklist of several Chinese entities leaves a looming question: What happens if your products are now prohibited?

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2009-5050

konversation before 1.2.3 allows attackers to cause a denial of service.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2009-5049

WebApp JSP Snoop page XSS in jetty though 6.1.21.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2009-5048

Cookie Dump Servlet stored XSS vulnerability in jetty though 6.1.20.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2009-5046

JSP Dump and Session Dump Servlet XSS in jetty before 6.1.22.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2009-5045

Dump Servlet information leak in jetty before 6.1.22.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2009-5043 (burn, debian_linux)

burn allows file names to escape via mishandled quotation marks

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2009-5042 (debian_linux, python-docutils)

python-docutils allows insecure usage of temporary files

πŸ“– Read

via "National Vulnerability Database".
❌ Trend Micro: Rogue Employee Sold Customer Data for 68K Accounts ❌

Trend Micro customers whose data was sold are getting scam calls from criminals purporting to be support staff.

πŸ“– Read

via "Threatpost".
πŸ•΄ Google Announces App Defense Alliance πŸ•΄

The industry partnership will scan apps for malware before they're published on the Google Play Store.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Accounting Scams Continue to Bilk Businesses πŸ•΄

Yes, ransomware is plaguing businesses and government organizations, but impersonators inserting themselves into financial workflows - most often via e-mail - continue to enable big paydays.

πŸ“– Read

via "Dark Reading: ".
❌ You’ve Been Served…with Subpoena-Themed Phishing Emails ❌

A targeted campaign is delivering an information-stealing malware called Predator the Thief.

πŸ“– Read

via "Threatpost".
❌ Microsegmentation and Isolation: 2 Essential Strategies in Zero-Trust Security ❌

Tactics for when authorized users need to connect to network resources, or need to venture out to the web to complete important tasks.

πŸ“– Read

via "Threatpost".
⚠ Warrant let police search online DNA database ⚠

This is a "game changer" when it comes to genetic privacy rights, experts say.

πŸ“– Read

via "Naked Security".
⚠ Facebook scam steals famous faces and BBC branding ⚠

An email scam from earlier this year has resurfaced on Facebook - don't fall for it!

πŸ“– Read

via "Naked Security".