πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.9K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ•΅οΈβ€β™‚οΈ Why Your Identity Is the Key to Modernizing Cybersecurity πŸ•΅οΈβ€β™‚οΈ

Ultimately, the goal of creating a trusted environment around all digital assets and devices is about modernizing the way you do business.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ PokΓ©mon Gaming Company Employee Info Leaked in Hack πŸ•΅οΈβ€β™‚οΈ

The gaming company reports that the server has been rebuilt after the leak, but has not confirmed if its insider video game data was leaked.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Microsoft: Schools Grapple With Thousands of Cyberattacks Weekly πŸ•΅οΈβ€β™‚οΈ

Education, including K12 schools and universities, has become the third most targeted sector due to the high variety of sensitive data it stores in its databases.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ ConfusedPilot Attack Can Manipulate RAG-Based AI Systems πŸ•΅οΈβ€β™‚οΈ

Attackers can introduce a malicious document in systems such as Microsoft 365 Copilot to confuse the system, potentially leading to widespread misinformation and compromised decisionmaking processes.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Fighting Crime With Technology: Safety First πŸ•΅οΈβ€β™‚οΈ

By combining human and nonhuman identity management in one solution, Flock Safety is helping law enforcement solve an impressive number of criminal cases every day.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 Surfshark VPN Review (2024): Is it a Safe and Trustworthy VPN? 🦿

With a healthy mix of features, performance, and value, Surfshark VPN makes a strong case for those looking for a highquality VPN at an affordable price.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Telekopye Scammers Target Booking.com and Airbnb Users πŸ“”

Online scammers are targeting Booking.com and Airbnb users with Telekopye, a Telegrambased toolkit.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” CISA Urges Encryption of Cookies in F5 BIG-IP Systems πŸ“”

CISA urged organizations to tackle security risks from unencrypted cookies in F5 BIGIP LTM systems.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Southeast Asian Cybercrime Profits Fuel Shadow Economy πŸ•΅οΈβ€β™‚οΈ

With cybercriminal gangs raking in at least 18 billion regionally and much more globally law enforcement and policymakers are struggling to keep up as the syndicates innovate and entrench themselves in national economies.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Serious Adversaries Circle Ivanti CSA Zero-Day Flaws πŸ•΅οΈβ€β™‚οΈ

Suspected nationstate actors are spotted stringing together three different zerodays in the Ivanti Cloud Services Application to gain persistent access to a targeted system.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ WordPress Plugin Jetpack Patches Major Vulnerability Affecting 27 Million Sites πŸ–‹οΈ

The maintainers of the Jetpack WordPress plugin have released a security update to remediate a critical vulnerability that could allow loggedin users to access forms submitted by others on a site. Jetpack, owned by WordPress maker Automattic, is an allinone plugin that offers a comprehensive suite of tools to improve site safety, performance, and traffic growth. It's used on 27 million.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Researchers Uncover Hijack Loader Malware Using Stolen Code-Signing Certificates πŸ–‹οΈ

Cybersecurity researchers have disclosed a new malware campaign that delivers Hijack Loader artifacts that are signed with legitimate codesigning certificates. French cybersecurity company HarfangLab, which detected the activity at the start of the month, said the attack chains aim to deploy an information stealer known as Lumma. Hijack Loader, also known as DOILoader, IDAT Loader, and.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Microsoft logs 600 million identity attacks per day as threat actors collaborate more πŸ“’

A shift to passwordless authentication and greater reliance on AI could help stem the flow of attacks as threat actors arm themselves with better techniques and tools.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ LLMs Are a New Type of Insider Adversary πŸ•΅οΈβ€β™‚οΈ

The inherent intelligence of large language models gives them unprecedented capabilities like no other enterprise tool before.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ WP Engine Accuses WordPress of 'Forcibly' Taking Over Its Plug-in πŸ•΅οΈβ€β™‚οΈ

WordPress moves could have security implications for sites using Advanced Custom Fields plugin.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ CISOs' Privacy Responsibilities Keep Growing πŸ•΅οΈβ€β™‚οΈ

A heated regulatory landscape, uncertainty over AI use, and how it all ties back to cybersecurity means CISOs have to add privacy to their portfolios.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Even Orgs With SSO Are Vulnerable to Identity-Based Attacks πŸ•΅οΈβ€β™‚οΈ

Use SSO, don't use SSO. Have MFA, don't have MFA. An analysis of a snapshot of organizations using Push Security's platform finds that 99 of accounts susceptible to phishing attacks.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 SentinelOne CISO Identifies β€˜Most Pressing Concern’ for Cyber Professionals 🦿

SentinelOnes Alex Stamos sees a future where defenders have the advantage when it comes to generative AI. At least until it can write exploit code.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 99% of UK Businesses Faced Cyber Attacks in the Last Year 🦿

Nearly half of respondents blamed remote work for these incidents.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 Are Password Managers Safe to Use? (Benefits, Risks & Best Practices) 🦿

Are password managers safe to use? Find out if they are really secure and discover the benefits and risks of using password managers.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ The Rise of Zero-Day Vulnerabilities: Why Traditional Security Solutions Fall Short πŸ–‹οΈ

In recent years, the number and sophistication of zeroday vulnerabilities have surged, posing a critical threat to organizations of all sizes. A zeroday vulnerability is a security flaw in software that is unknown to the vendor and remains unpatched at the time of discovery. Attackers exploit these flaws before any defensive measures can be implemented, making zerodays a potent weapon for.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity