πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ•΄ SHAKEN/STIR: Finally! A Solution to Caller ID Spoofing? πŸ•΄

The ubiquitous Caller ID hasn't changed much over the years, but the technology to exploit it has exploded. That may be about to change.

πŸ“– Read

via "Dark Reading: ".
❌ Adobe Patches Critical Bugs in Illustrator, Media Encoder ❌

Adobe’s monthly patch load is low for November, with only three critical bugs fixed and eight important.

πŸ“– Read

via "Threatpost".
❌ Magento Warns E-Commerce Sites to Upgrade ASAP to Prevent Attacks ❌

The platform is a favorite target for the Magecart collective of card-skimming threat groups.

πŸ“– Read

via "Threatpost".
❌ Intel Warns of Critical Info-Disclosure Bug in Security Engine ❌

The issue is in an Intel chip used for remote management.

πŸ“– Read

via "Threatpost".
πŸ” IBM social engineer easily hacked two journalists' information πŸ”

A member of IBM's X-Force Red team hacked two CBS reporters for three weeks. Find out what information she gathered, as well as what phishing entails.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Counterterrorism expert: Small healthcare companies are the new ransomware targets πŸ”

MonsterCloud CEO says RYUK attacks can be fatal for businesses that can't afford to pay the ransom or to get help from experts.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Senator Seeking Answers Following Medical Image Breach πŸ”

In wake of a massive breach, a U.S. Senator is pressing the U.S. Department of Health and Human Services to explain how it oversees medical imaging security.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
πŸ” What happens when your healthcare data is stolen or held for ransom? It depends πŸ”

Hospitals are reluctant to disclose attacks, and regulations don't offer clear advice about what to tell patients.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Researchers Disclose New Vulnerabilities in Windows Drivers πŸ•΄

Attackers could take advantage of simple design flaws in widely distributed drivers to gain control over Windows systems.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ The Myths of Multifactor Authentication πŸ•΄

Organizations without MFA are wide open to attack when employees fall for phishing scams or share passwords. What's holding them back?

πŸ“– Read

via "Dark Reading: ".
❌ Plugging the Data Leak in Manufacturing ❌

IIoT-generated data – calibrations, measurements and other parameters – still need to be stored, managed and shared securely.

πŸ“– Read

via "Threatpost".
πŸ•΄ New DDoS Attacks Leverage TCP Amplification πŸ•΄

Attackers over the past month have been using a rarely seen approach to disrupt services at large organizations in several countries.

πŸ“– Read

via "Dark Reading: ".
❌ Microsoft Patches RCE Bug Actively Under Attack ❌

Microsoft tackles 74 bugs as part of its November Patch Tuesday security bulletin.

πŸ“– Read

via "Threatpost".
❌ Insider Threats, a Cybercriminal Favorite, Not East to Mitigate ❌

Rogue employees -- not just external threat groups -- pose a formidable threat to incident response teams.

πŸ“– Read

via "Threatpost".
πŸ•΄ Microsoft Patches IE Zero-Day Among 74 Vulnerabilities πŸ•΄

The November Patch Tuesday update fixed 13 critical flaws, including a zero-day bug in Internet Explorer.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Companies Increasingly Fail Interim Security Test, But Gap Narrows πŸ•΄

Stability of PCI DSS helps companies cope and create more mature security programs, but some parts of the Payment Card Industry's Data Secure Standard continue to cause headaches.

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2010-2247 (makepasswd)

makepasswd 1.10 default settings generate insecure passwords

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ While CISOs Fret, Business Leaders Tout Security Robustness πŸ•΄

A new Nominet survey shows a familiar disconnect between business and security teams on the matter of cyber preparedness.

πŸ“– Read

via "Dark Reading: ".
⚠ No, YouTube isn’t planning to jettison your unprofitable channel ⚠

Or your small/new channel, or to shut you down if you use an ad blocker, though a clause in its new ToS is leading people to fear the worst.

πŸ“– Read

via "Naked Security".
⚠ Microsoft says it will honor California’s new privacy law across US ⚠

Microsoft said CCPA is good news, given the failure of Congress to pass a comprehensive privacy protection law at the federal level.

πŸ“– Read

via "Naked Security".
❌ Federal Court: Suspicionless Search of Traveler Devices by Border Agents Is Unconstitutional ❌

U.S. Customs agents now must have reasonable cause and suspicion to search traveler devices at points of entry.

πŸ“– Read

via "Threatpost".