🛡 Cybersecurity & Privacy 🛡 - News
25.8K subscribers
89.2K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
🔐 Reasonable doubt: Only 17% of CISOs believe their stack is "completely effective" against attacks 🔐

An overabundance of confidence can lead to blind spots, but a Nominet report finds widespread doubt in organizations' security posture.

📖 Read

via "Security on TechRepublic".
🔐 How firewall automation can help prevent breaches caused by wrong configurations 🔐

A majority of IT staffers polled by firewall management service FireMon said they still use manual processes to manage changes.

📖 Read

via "Security on TechRepublic".
🕴 DDoS Attack Targets UK Labour Party Weeks Ahead of Election 🕴

Cybercriminals tried to take the Labour Party's digital platforms offline weeks before the election on December 12.

📖 Read

via "Dark Reading: ".
🕴 SHAKEN/STIR: Finally! A Solution to Caller ID Spoofing? 🕴

The ubiquitous Caller ID hasn't changed much over the years, but the technology to exploit it has exploded. That may be about to change.

📖 Read

via "Dark Reading: ".
Adobe Patches Critical Bugs in Illustrator, Media Encoder

Adobe’s monthly patch load is low for November, with only three critical bugs fixed and eight important.

📖 Read

via "Threatpost".
Magento Warns E-Commerce Sites to Upgrade ASAP to Prevent Attacks

The platform is a favorite target for the Magecart collective of card-skimming threat groups.

📖 Read

via "Threatpost".
Intel Warns of Critical Info-Disclosure Bug in Security Engine

The issue is in an Intel chip used for remote management.

📖 Read

via "Threatpost".
🔐 IBM social engineer easily hacked two journalists' information 🔐

A member of IBM's X-Force Red team hacked two CBS reporters for three weeks. Find out what information she gathered, as well as what phishing entails.

📖 Read

via "Security on TechRepublic".
🔐 Counterterrorism expert: Small healthcare companies are the new ransomware targets 🔐

MonsterCloud CEO says RYUK attacks can be fatal for businesses that can't afford to pay the ransom or to get help from experts.

📖 Read

via "Security on TechRepublic".
🔏 Senator Seeking Answers Following Medical Image Breach 🔏

In wake of a massive breach, a U.S. Senator is pressing the U.S. Department of Health and Human Services to explain how it oversees medical imaging security.

📖 Read

via "Subscriber Blog RSS Feed ".
🔐 What happens when your healthcare data is stolen or held for ransom? It depends 🔐

Hospitals are reluctant to disclose attacks, and regulations don't offer clear advice about what to tell patients.

📖 Read

via "Security on TechRepublic".
🕴 Researchers Disclose New Vulnerabilities in Windows Drivers 🕴

Attackers could take advantage of simple design flaws in widely distributed drivers to gain control over Windows systems.

📖 Read

via "Dark Reading: ".
🕴 The Myths of Multifactor Authentication 🕴

Organizations without MFA are wide open to attack when employees fall for phishing scams or share passwords. What's holding them back?

📖 Read

via "Dark Reading: ".
Plugging the Data Leak in Manufacturing

IIoT-generated data – calibrations, measurements and other parameters – still need to be stored, managed and shared securely.

📖 Read

via "Threatpost".
🕴 New DDoS Attacks Leverage TCP Amplification 🕴

Attackers over the past month have been using a rarely seen approach to disrupt services at large organizations in several countries.

📖 Read

via "Dark Reading: ".
Microsoft Patches RCE Bug Actively Under Attack

Microsoft tackles 74 bugs as part of its November Patch Tuesday security bulletin.

📖 Read

via "Threatpost".
Insider Threats, a Cybercriminal Favorite, Not East to Mitigate

Rogue employees -- not just external threat groups -- pose a formidable threat to incident response teams.

📖 Read

via "Threatpost".
🕴 Microsoft Patches IE Zero-Day Among 74 Vulnerabilities 🕴

The November Patch Tuesday update fixed 13 critical flaws, including a zero-day bug in Internet Explorer.

📖 Read

via "Dark Reading: ".
🕴 Companies Increasingly Fail Interim Security Test, But Gap Narrows 🕴

Stability of PCI DSS helps companies cope and create more mature security programs, but some parts of the Payment Card Industry's Data Secure Standard continue to cause headaches.

📖 Read

via "Dark Reading: ".
ATENTION New - CVE-2010-2247 (makepasswd)

makepasswd 1.10 default settings generate insecure passwords

📖 Read

via "National Vulnerability Database".
🕴 While CISOs Fret, Business Leaders Tout Security Robustness 🕴

A new Nominet survey shows a familiar disconnect between business and security teams on the matter of cyber preparedness.

📖 Read

via "Dark Reading: ".