πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
⚠ Apple to fix Siri bug that exposed parts of encrypted emails ⚠

Apple may care about your privacy but that doesn't mean it gets it right all the time, especially when it comes to training its Siri AI assistant.

πŸ“– Read

via "Naked Security".
πŸ•΄ Why Cyber-Risk Is a C-Suite Issue πŸ•΄

Organizations realize the scale of cyber-risk but lack counter-actions to build resilience.

πŸ“– Read

via "Dark Reading: ".
πŸ” Reasonable doubt: Only 17% of CISOs believe their stack is "completely effective" against attacks πŸ”

An overabundance of confidence can lead to blind spots, but a Nominet report finds widespread doubt in organizations' security posture.

πŸ“– Read

via "Security on TechRepublic".
πŸ” How firewall automation can help prevent breaches caused by wrong configurations πŸ”

A majority of IT staffers polled by firewall management service FireMon said they still use manual processes to manage changes.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ DDoS Attack Targets UK Labour Party Weeks Ahead of Election πŸ•΄

Cybercriminals tried to take the Labour Party's digital platforms offline weeks before the election on December 12.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ SHAKEN/STIR: Finally! A Solution to Caller ID Spoofing? πŸ•΄

The ubiquitous Caller ID hasn't changed much over the years, but the technology to exploit it has exploded. That may be about to change.

πŸ“– Read

via "Dark Reading: ".
❌ Adobe Patches Critical Bugs in Illustrator, Media Encoder ❌

Adobe’s monthly patch load is low for November, with only three critical bugs fixed and eight important.

πŸ“– Read

via "Threatpost".
❌ Magento Warns E-Commerce Sites to Upgrade ASAP to Prevent Attacks ❌

The platform is a favorite target for the Magecart collective of card-skimming threat groups.

πŸ“– Read

via "Threatpost".
❌ Intel Warns of Critical Info-Disclosure Bug in Security Engine ❌

The issue is in an Intel chip used for remote management.

πŸ“– Read

via "Threatpost".
πŸ” IBM social engineer easily hacked two journalists' information πŸ”

A member of IBM's X-Force Red team hacked two CBS reporters for three weeks. Find out what information she gathered, as well as what phishing entails.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Counterterrorism expert: Small healthcare companies are the new ransomware targets πŸ”

MonsterCloud CEO says RYUK attacks can be fatal for businesses that can't afford to pay the ransom or to get help from experts.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Senator Seeking Answers Following Medical Image Breach πŸ”

In wake of a massive breach, a U.S. Senator is pressing the U.S. Department of Health and Human Services to explain how it oversees medical imaging security.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
πŸ” What happens when your healthcare data is stolen or held for ransom? It depends πŸ”

Hospitals are reluctant to disclose attacks, and regulations don't offer clear advice about what to tell patients.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Researchers Disclose New Vulnerabilities in Windows Drivers πŸ•΄

Attackers could take advantage of simple design flaws in widely distributed drivers to gain control over Windows systems.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ The Myths of Multifactor Authentication πŸ•΄

Organizations without MFA are wide open to attack when employees fall for phishing scams or share passwords. What's holding them back?

πŸ“– Read

via "Dark Reading: ".
❌ Plugging the Data Leak in Manufacturing ❌

IIoT-generated data – calibrations, measurements and other parameters – still need to be stored, managed and shared securely.

πŸ“– Read

via "Threatpost".
πŸ•΄ New DDoS Attacks Leverage TCP Amplification πŸ•΄

Attackers over the past month have been using a rarely seen approach to disrupt services at large organizations in several countries.

πŸ“– Read

via "Dark Reading: ".
❌ Microsoft Patches RCE Bug Actively Under Attack ❌

Microsoft tackles 74 bugs as part of its November Patch Tuesday security bulletin.

πŸ“– Read

via "Threatpost".
❌ Insider Threats, a Cybercriminal Favorite, Not East to Mitigate ❌

Rogue employees -- not just external threat groups -- pose a formidable threat to incident response teams.

πŸ“– Read

via "Threatpost".
πŸ•΄ Microsoft Patches IE Zero-Day Among 74 Vulnerabilities πŸ•΄

The November Patch Tuesday update fixed 13 critical flaws, including a zero-day bug in Internet Explorer.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Companies Increasingly Fail Interim Security Test, But Gap Narrows πŸ•΄

Stability of PCI DSS helps companies cope and create more mature security programs, but some parts of the Payment Card Industry's Data Secure Standard continue to cause headaches.

πŸ“– Read

via "Dark Reading: ".