πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.9K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ–‹οΈ President Trump Pardons Silk Road Creator Ross Ulbricht After 11 Years in Prison πŸ–‹οΈ

U.S. President Donald Trump on Tuesday granted a "full and unconditional pardon" to Ross Ulbricht, the creator of the infamous Silk Road drug marketplace, after spending 11 years behind bars. "I just called the mother of Ross William Ulbricht to let her know that in honor of her and the Libertarian Movement, which supported me so strongly, it was my pleasure to have just signed a full and.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Account Compromise and Phishing Top Healthcare Security Incidents πŸ“”

Netwrix claims 84 of healthcare organizations detected a cyberattack in the past year.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Cloudflare Mitigates Record-Breaking 5.6Tbps DDoS Attack πŸ“”

Cloudflare warns of a surge in hypervolumetric DDoS after revealing it stopped a massive 5.6Tbps attack.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ¦… Australian Cyber Security Centre Targets Bulletproof Hosting Providers to Disrupt Cybercrime Networks πŸ¦…

Overview The Australian Cyber Security Centre ACSC has issued a detailed warning regarding Bulletproof Hosting Providers BPH. These illicit infrastructure services play a critical role in supporting cybercrime, allowing malicious actors to conduct their operations while remaining largely undetectable. The Australian governments growing efforts to combat cybercrime highlight the increasing difficulty for cybercriminals to maintain secure, resilient, and hidden infrastructures. BPH services are an integral part of the CybercrimeasaService CaaS ecosystem, which provides a range of tools and services enabling cybercriminals to carry out their attacks. From ransomware campaigns to data theft, cybercriminals rely on BPH providers to host illicit websites, deploy malware, and execute p...

πŸ“– Read more.

πŸ”— Via "CYBLE"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ GDPR fines might’ve dipped last year, but don’t get complacent – personal liability risks are rising πŸ“’

A decrease in big GDPR fines doesnt mean its plane sailing for enterprises in 2025.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Major Cybersecurity Vendors' Credentials Found on Dark Web πŸ“”

Cyble has found thousands of security vendors' credentials on the dark web, likely pulled from infostealer logs.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Guardz launches new β€œUltimate Plan” for MSPs πŸ“’

The offering embeds SentinelOnes endpoint protection capabilities into Guardz unified detection and response platform.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ GDPR fines might’ve dipped last year, but don’t get complacent – personal liability risks are rising πŸ“’

A decrease in big GDPR fines doesnt mean its plane sailing for enterprises in 2025.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Will 2025 See a Rise of NHI Attacks? πŸ•΅οΈβ€β™‚οΈ

The flurry of nonhuman identity attacks at the end of 2024 demonstrates extremely strong momentum heading into the new year. That does not bode well.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 How to Create a Secure Username 🦿

Discover how to create a unique and secure username for your online accounts, and find out why its just as important as having a strong password.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
β™ŸοΈ MasterCard DNS Error Went Unnoticed for Years β™ŸοΈ

The payment card giant MasterCard just fixed a glaring error in its domain name server settings that could have allowed anyone to intercept or divert Internet traffic for the company by registering an unused domain name. The misconfiguration persisted for nearly five years until a security researcher spent 300 to register the domain and prevent it from being grabbed by cybercriminals.

πŸ“– Read more.

πŸ”— Via "Krebs on Security"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ”₯1
🧠 2024 Cloud Threat Landscape Report: How does cloud security fail? 🧠

Organizations often set up security rules to help reduce cybersecurity vulnerabilities and risks. The 2024 Cost of a Data Breach Report discovered that 40 of all data breaches involved data distributed across multiple environments, meaning that these bestlaid plans often fail in the cloud environment. Not surprisingly, many organizations find keeping a robust security posture The post 2024 Cloud Threat Landscape Report How does cloud security fail? appeared first on Security Intelligence.

πŸ“– Read more.

πŸ”— Via "Security Intelligence"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Trump Terminates DHS Advisory Committee Memberships, Disrupting Cybersecurity Review πŸ–‹οΈ

The new Trump administration has terminated all memberships of advisory committees that report to the Department of Homeland Security DHS.  "In alignment with the Department of Homeland Security's DHS commitment to eliminating the misuse of resources and ensuring that DHS activities prioritize our national security, I am directing the termination of all current memberships on advisory.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Hackers Exploit Zero-Day in cnPilot Routers to Deploy AIRASHI DDoS Botnet πŸ–‹οΈ

Threat actors are exploiting an unspecified zeroday vulnerability in Cambium Networks cnPilot routers to deploy a variant of the AISURU botnet called AIRASHI to carry out distributed denialofservice DDoS attacks. According to QiAnXin XLab, the attacks have leveraged the security flaw since June 2024. Additional details about the shortcomings have been withheld to prevent further abuse. Some.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” PlushDaemon APT Targeted South Korean VPN Software πŸ“”

PlushDaemon APT hacked South Korean VPN software with SlowStepper backdoor as part of a 2023 espionage campaign.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Tycoon 2FA Phishing Kit Upgraded to Bypass Security Measures πŸ“”

Threat researchers analyzed the updated Tycoon 2FA phishing kit, which bypasses MFA.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” 73% of UK Education Sector Hit by Cyber-Attacks in Past Five Years πŸ“”

New ESET research reveals that 73 of UK educational institutions experienced at least one cyberattack or breach in the past five years.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Ransomware Attacks Surge to Record High in December 2024 πŸ“”

NCC Group observed 574 global ransomware attacks in December, the highest monthly volume it has recorded.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Chinese Cyberspies Target South Korean VPN in Supply Chain Attack πŸ•΅οΈβ€β™‚οΈ

Advanced persistent threat group PlushDaemon, active since 2019, is using a sophisticated modular backdoor to collect data from infected systems in South Korea.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Trump Pardons 'Silk Road' Dark Web Drug Market Creator πŸ•΅οΈβ€β™‚οΈ

The pardon comes after 11 years in prison for Ross Ulbricht, who was sentenced to life without parole on several charges, including computer hacking, distribution of narcotics, and money laundering.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Trump Overturns Biden Rules on AI Development, Security πŸ•΅οΈβ€β™‚οΈ

The new administration moved quickly to remove any constraints on AI development and collected 500 billion in investment pledges for an Americanowned AI joint venture.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity