πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.1K subscribers
88.4K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ•΅οΈβ€β™‚οΈ Halliburton Data Stolen in Oil-Sector Cyberattack πŸ•΅οΈβ€β™‚οΈ

The energy kahuna said that operations were disrupted after an attack on its supporting business applications.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Evolving npm Package Campaign Targets Roblox Devs, for Years πŸ•΅οΈβ€β™‚οΈ

Attackers have added aggressive social engineering to their arsenal, along with a novel Windowsmanipulating persistence mechanism that demands developer vigilance.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ BlackCat Spin-off 'Cicada3301' Uses Stolen Creds on the Fly, Skirts EDR πŸ•΅οΈβ€β™‚οΈ

Malware authors have iterated on one of the premier encryptors on the market, building something even bigger and better.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Apple device management for beginners πŸ“’

The next evolution of endpoint management and security.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Alert issued for β€˜Voldemort’ malware as dozens of organizations hit πŸ“’

Proofpoint researchers say the Voldemort malware campaign appears to be aimed at cyber espionage.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Modern management: The future of MDM πŸ“’

The next evolution of endpoint management and security.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ How not to conduct cyber awareness training: UCSC slammed for β€˜tone deaf’ Ebola phishing tests πŸ“’

Phishing training at a university in California went wrong when its IT department distributed highly alarming emails.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ California Approves Privacy Bill Requiring Opt-Out Tools πŸ•΅οΈβ€β™‚οΈ

This bill requires Web browsers to have an easytofind and use setting for consumers to send an optout preference signal by default to every site and app they interact with.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ North Korean APT Exploits Novel Chromium, Windows Bugs to Steal Crypto πŸ•΅οΈβ€β™‚οΈ

DPRK's innovative tack chains together previously unknown browser issues, then adds a rootkit to the mix to gain deep system access.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 Apptio: How Australians Are Navigating Economic Pressure Through Strategic IT Investments 🦿

Many Australian companies are investing in new technology, but others are having a hard time justifying such investments given the current economic climate.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ The New Effective Way to Prevent Account Takeovers πŸ–‹οΈ

Account takeover attacks have emerged as one of the most persistent and damaging threats to cloudbased SaaS environments. Yet despite significant investments in traditional security measures, many organizations continue to struggle with preventing these attacks. A new report, "Why Account Takeover Attacks Still Succeed, and Why the Browser is Your Secret Weapon in Stopping Them" argues that the.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Clearview AI Faces €30.5M Fine for Building Illegal Facial Recognition Database πŸ–‹οΈ

The Dutch Data Protection Authority Dutch DPA has imposed a fine of 30.5 million 33.7 million against facial recognition firm Clearview AI for violating the General Data Protection Regulation GDPR in the European Union E.U. by building an "illegal database with billions of photos of faces," including those of Dutch citizens. "Facial recognition is a highly intrusive technology that you.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Hackers Use Fake GlobalProtect VPN Software in New WikiLoader Malware Attack πŸ–‹οΈ

A new malware campaign is spoofing Palo Alto Networks' GlobalProtect VPN software to deliver a variant of the WikiLoader aka WailingCrab loader by means of a search engine optimization SEO campaign. The malvertising activity, observed in June 2024, is a departure from previously observed tactics wherein the malware has been propagated via traditional phishing emails, Unit 42 researchers.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸš€ In plain sight: Malicious ads hiding in search results πŸš€

Sometimes theres more than just an enticing product offer hiding behind an ad.

πŸ“– Read more.

πŸ”— Via "ESET - WeLiveSecurity"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Clearview AI Fined €30.5m by Dutch Watchdog Over Illegal Data Collection πŸ“”

The USbased facial recognition data company may even have to pay up to 5.1m in penalties for noncompliance.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Initial Access Brokers Target $2bn Revenue Companies πŸ“”

Cyberint claims that initial access brokers target companies with average revenue of nearly 2bn.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” APP Fraud Dominates as Scams Hit All-Time High πŸ“”

UKs Financial Ombudsman warns fraud and scams hit a record high in Q2 2024.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ¦… TA-FudModule Rootkit Targets Crypto, Linked to North Korean Citrine Sleet Group πŸ¦…

Key Takeaways  A North Korean threat actor, Citrine Sleet, has been observed exploiting a zeroday vulnerability in Chromium, designated as CVE20247971, to achieve Remote Code Execution RCE.  Citrine Sleet, also tracked by other security firms under the names AppleJeus, Labyrinth Chollima, UNC4736, and Hidden Cobra, is attributed to Bureau 121 of North Korea's Reconnaissance General Bureau. The group primarily focuses on financial institutions, especially those involved with cryptocurrency, aiming for financial gain.  The group's tactics, techniques, and procedures TTPs have now been linked to the FudModule rootkit, which has also been associated with Diamond Sleet, another North Korean threat actor.  Citrine Sleet creates fraudulent websites that mimic legitimate crypto...

πŸ“– Read more.

πŸ”— Via "CYBLE"

----------
πŸ‘οΈ Seen on @cibsecurity
❀1
πŸ¦… CISA Warns of Critical ICS Vulnerabilities in Rockwell and Delta Electronics πŸ¦…

Key Takeaways  CISA Alert CISA warns of critical ICS vulnerabilities in Rockwell Automation and Delta Electronics products.  ThinManager ThinServer Flaws in Rockwell Automations ThinManager ThinServer versions 11.1.0 to 13.2.1 could allow systemlevel code execution. Affected sector Manufacturing.  Delta DTN Soft Vulnerability in Deltas DTN Soft version 2.0.1 and prior enables remote code execution. Update to version 2.1. Affected sector Energy.  FactoryTalk View SE A flaw in Rockwell Automations FactoryTalk View SE 13.0 allows unauthorized file modifications. Affected sectors Chemical, Energy, and others.  Mitigation CISA advises minimizing ICS exposure, securing remote access, updating software, and implementing layered security measures.  Overview  On August ...

πŸ“– Read more.

πŸ”— Via "CYBLE"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ White House outlines plans to finally secure the border gateway protocol πŸ“’

The White House announces its plans to shore up the integrity of internet by boosting adoption of security measures to address frailties in the outdated border gateway protocol.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Compliance management for beginners πŸ“’

Adhere to laws, meet safety standards, and implement security requirements.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘1