πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
❌ Innovative PureLocker Ransomware Emerges in Targeted Attacks ❌

PureLocker is an example of the sustained and continuing efforts ransomware threat actors are putting into malware development.

πŸ“– Read

via "Threatpost".
⚠ Facebook fixes iPhone camera bug ⚠

Facebook was quick to reassure iPhone users this week that it wasn’t secretly spying on them via its app, after someone found the software keeping the phone’s rear camera active in the background.

πŸ“– Read

via "Naked Security".
❌ ENFUSE 2019: Security Regulations, Insider Threats, and IoT Privacy Risks ❌

Threatpost sits down with incident response expert Kevin Golas to discuss the top takeaways of ENFUSE 2019 this week.

πŸ“– Read

via "Threatpost".
❌ Download: The Comprehensive Compliance Guide ❌

The Comprehensive Compliance Guide can help security leaders save time and resources from creating their own compliance evaluation methods.

πŸ“– Read

via "Threatpost".
❌ Threat Actor Impersonates USPS to Deliver Backdoor Malware ❌

The campaign is consistent with emerging tactics from bad actors to use increasingly sophisticated social engineering and spoofing to deliver malware.

πŸ“– Read

via "Threatpost".
πŸ” How retail companies can better protect themselves against cyberattacks πŸ”

The sector has been hit by more data breaches than any other this year as criminal groups devise more advanced hacking methods, says threat intelligence company IntSights.

πŸ“– Read

via "Security on TechRepublic".
⚠ S2 Ep17: Fake AirBnBs, lying ISPs and a glance at the cyberfuture – Naked Security Podcast ⚠

Listen now!

πŸ“– Read

via "Naked Security".
❌ APT33 Mounts Focused, Highly Targeted Botnet Attacks Against U.S. Victims ❌

The APT is using small botnets to take espionage aim at military and academic organizations.

πŸ“– Read

via "Threatpost".
❌ Website, Know Thyself: What Code Are You Serving? ❌

Code-injection via third- and fourth-party scripts -- as seen with Magecart -- is a growing security problem for websites.

πŸ“– Read

via "Threatpost".
❌ California’s Domino Effect on U.S. Privacy Regulation ❌

The California Consumer Privacy Act (CCPA), which goes into effect Jan. 1, will have a longstanding impact on privacy regulation across the U.S., a security expert says.

πŸ“– Read

via "Threatpost".
πŸ” How a hacker at IBM uses disguises and devices to steal private information πŸ”

An IBM X-Force Red team member explains how her background in makeup and sales helps her social engineering career. Also, she demonstrates how cybercriminals can easily clone your work ID badge.

πŸ“– Read

via "Security on TechRepublic".
ATENTIONβ€Ό New - CVE-2008-7272 (firegpg)

FireGPG before 0.6 handle user?s passphrase and decrypted cleartext insecurely by writing pre-encrypted cleartext and the user's passphrase to disk which may result in the compromise of secure communication or a users?s private key.

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ 8 Backup & Recovery Questions to Ask Yourself πŸ•΄

Don't wait until after a disaster, DDoS, or ransomware attack to learn just how good your backups really are.

πŸ“– Read

via "Dark Reading: ".
πŸ” New phishing email campaign impersonates US postal service to deliver malware πŸ”

The same threat actor has been observed targeting companies in the US, Italy, and Germany, according to a new report from security provider Proofpoint.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ US-CERT Warns of Remotely Exploitable Bugs in Medical Devices πŸ•΄

Vulnerabilities in key surgical equipment could be remotely exploited by a low-skill attacker.

πŸ“– Read

via "Dark Reading: ".
❌ Just-Released Checkra1n iPhone Jailbreak Stirs Security Concerns ❌

Now that the checkm8 BootROM vulnerability has a working exploit, security pros are warning of potential attacks.

πŸ“– Read

via "Threatpost".
ATENTIONβ€Ό New - CVE-2008-5083 (jboss_operations_network)

In JON 2.1.x before 2.1.2 SP1, users can obtain unauthorized security information about private resources managed by JBoss ON.

πŸ“– Read

via "National Vulnerability Database".