πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
26K subscribers
89.3K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ•΅οΈβ€β™‚οΈ Cisco ASA, FTD Software Under Active VPN Exploitation πŸ•΅οΈβ€β™‚οΈ

Unauthenticated threat actors can remotely cause a denialofservice DoS cyberattack within the Remote Access VPN software in Cisco's ASA and Firepower software.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Lazarus Group Exploits Google Chrome Flaw in New Campaign πŸ“”

Lazarus Group exploited Google Chrome zeroday, infecting systems with Manuscrypt malware.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘1
πŸ–‹οΈ New Qilin.B Ransomware Variant Emerges with Improved Encryption and Evasion Tactics πŸ–‹οΈ

Cybersecurity researchers have discovered an advanced version of the Qilin ransomware sporting increased sophistication and tactics to evade detection. The new variant is being tracked by cybersecurity firm Halcyon under the moniker Qilin.B. "Notably, Qilin.B now supports AES256CTR encryption for systems with AESNI capabilities, while still retaining Chacha20 for systems that lack this support.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Critical Bug Exploited in Fortinet's Management Console πŸ•΅οΈβ€β™‚οΈ

An attacker compromised one of Fortinet's most sensitive products and mopped up all kinds of reconnaissance data helpful for future mass device attacks.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
😱1
πŸ•΅οΈβ€β™‚οΈ AWS's Predictable Bucket Names Make Accounts Easier to Crack πŸ•΅οΈβ€β™‚οΈ

Amazon's open source Cloud Development Kit generates dangerously predictable naming patterns that could lead to an account takeover.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Microsoft: Healthcare Sees 300% Surge in Ransomware Attacks πŸ•΅οΈβ€β™‚οΈ

Even after the ransom is paid, such attacks lead to spikes in strokes and heart attacks and increased wait times for patients.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Irish Watchdog Imposes Record €310 Million Fine on LinkedIn for GDPR Violations πŸ–‹οΈ

The Irish data protection watchdog on Thursday fined LinkedIn 310 million 335 million for violating the privacy of its users by conducting behavioral analyses of personal data for targeted advertising. "The inquiry examined LinkedIn's processing of personal data for the purposes of behavioral analysis and targeted advertising of users who have created LinkedIn profiles members," the Data.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘2
🌊 vCISO GRC Auditor 🌊

The post vCISO GRC Auditor appeared first on UnderDefense.

πŸ“– Read more.

πŸ”— Via "UnderDefense"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” MacOS-Focused Ransomware Attempts Leverage LockBit Brand πŸ“”

An unidentified threat actor has attempted to develop ransomware targeting macOS devices, posing as LockBit.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Everything you need to know about the β€˜mass exploitation’ of FortiManager appliances πŸ“’

A missing authentication flaw could allow an attacker to use a compromised FortiManager device to move laterally to other Fortinet devices and target enterprise environments.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Human error is cybersecurity’s number one concern, Kaseya report finds πŸ“’

IT professionals highlight bad user behavior and a lack of security training as key hurdles to overcome this year.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Eliminating AI Deepfake Threats: Is Your Identity Security AI-Proof? πŸ–‹οΈ

Artificial Intelligence AI has rapidly evolved from a futuristic concept to a potent weapon in the hands of bad actors. Today, AIbased attacks are not just theoretical threatsthey're happening across industries and outpacing traditional defense mechanisms.  The solution, however, is not futuristic. It turns out a properly designed identity security platform is able to deliver defenses.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ SEC Charges 4 Companies Over Misleading SolarWinds Cyberattack Disclosures πŸ–‹οΈ

The U.S. Securities and Exchange Commission SEC has charged four current and former public companies for making "materially misleading disclosures" related to the largescale cyber attack that stemmed from the hack of SolarWinds in 2020. The SEC said the companies Avaya, Check Point, Mimecast, and Unisys are being penalized for how they handled the disclosure process in the aftermath of.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘1
πŸ“” Ukraine Warns of Mass Phishing Campaign Targeting Citizens Data πŸ“”

CERTUA said the phishing campaign lures victims into downloading malware used to exfiltrate files containing sensitive personal data.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Irish Data Protection Watchdog Fines LinkedIn $336m πŸ“”

LinkedIn violated the EUs GDPR in how it processes its users personal data for behavioral purposes.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Inequity Challenges Women in Digital Trust, But Progress is Being Made πŸ“”

A new ISACA study reveals that pay inequity and a lack of female leadership are significant issues noted by women in the digital trust sector.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
❀2πŸ‘Ž1πŸ”₯1
🧠 Addressing growing concerns about cybersecurity in manufacturing 🧠

Manufacturing has become increasingly reliant on modern technology, including industrial control systems ICS, Internet of Things IoT devices and operational technology OT. While these innovations boost productivity and streamline operations, theyve vastly expanded the cyberattack surface. According to the 2024 IBM Cost of a Data Breach report, the average total cost of a data breach in The post Addressing growing concerns about cybersecurity in manufacturing appeared first on Security Intelligence.

πŸ“– Read more.

πŸ”— Via "Security Intelligence"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Living off the land attacks πŸ“’

How adversaries are using native system files against you and what you can do to block it.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
❀1
πŸ“’ Understanding least privileges πŸ“’

Protect your company from ransomware attacks.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ”₯1
πŸ•΅οΈβ€β™‚οΈ My Journey From the Air Force to Cybersecurity πŸ•΅οΈβ€β™‚οΈ

Cybersecurity is missiondriven, meaningful work that coincides with the service branches' goals to protect, defend, and create a safer world.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Cybersecurity Isn't Easy When You're Trying to Be Green πŸ•΅οΈβ€β™‚οΈ

Renewable energy firms deal with a large cyberattack surface area, given the distributed nature of power generation and more pervasive connectivity.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity