πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.1K subscribers
88.4K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ“” Malicious Microsoft VS Code Extensions Used in Cryptojacking Campaign πŸ“”

Security researchers from ExtensionTotal have found nine malicious extensions in Visual Studio Code, Microsofts lightweight sourcecode editor.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ ⚑ Weekly Recap: VPN Exploits, Oracle's Silent Breach, ClickFix Surge and More πŸ–‹οΈ

Today, every unpatched system, leaked password, and overlooked plugin is a doorway for attackers. Supply chains stretch deep into the code we trust, and malware hides not just in shady apps but in job offers, hardware, and cloud services we rely on every day. Hackers dont need sophisticated exploits anymore. Sometimes, your credentials and a little social engineering are enough. This week,.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 Google’s Sec-Gemini v1 Takes on Hackers & Outperforms Rivals by 11% 🦿

SecGemini v1 has access to realtime cybersecurity data from trusted sources including Google Threat Intelligence, Mandiants attack reports, and the Open Source Vulnerabilities database.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Malicious Microsoft VS Code Extensions Used in Cryptojacking Campaign πŸ“”

Security researchers from ExtensionTotal have found nine malicious extensions in Visual Studio Code, Microsofts lightweight sourcecode editor.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
🌊 What Is Cyber Threat Hunting? 🌊

Cyber threat hunting is a proactive approach of searching networks, endpoints, and datasets to uncover hidden cyber threats that have bypassed traditional security measures. Threat hunting in cybersecurity is not just about reacting to alerts its about actively seeking out malicious activities and advanced persistent threats that lurk beneath the surface, potentially causing significant damage The post What Is Cyber Threat Hunting? appeared first on UnderDefense.

πŸ“– Read more.

πŸ”— Via "UnderDefense"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ ToddyCat APT Targets ESET Bug to Load Silent Malware πŸ•΅οΈβ€β™‚οΈ

Researchers found the threat actor attempting to use the nowpatched flaw to load and execute a malicious dynamic link library on infected systems.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Smishing Triad Fuels Surge in Toll Payment Scams in US, UK πŸ“”

A rise in smishing campaigns impersonating toll service providers has been linked to Chinas Smishing Triad.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Smishing Triad Fuels Surge in Toll Payment Scams in US, UK πŸ“”

A rise in smishing campaigns impersonating toll service providers has been linked to Chinas Smishing Triad.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Smishing Triad Fuels Surge in Toll Payment Scams in US, UK πŸ“”

A rise in smishing campaigns impersonating toll service providers has been linked to Chinas Smishing Triad.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ NIST to Implement 'Deferred' Status to Dated Vulnerabilities πŸ•΅οΈβ€β™‚οΈ

The changes will go into effect over the next several days to reflect which CVEs are being prioritized in the National Vulnerability Database NVD.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Smishing Triad Fuels Surge in Toll Payment Scams in US, UK πŸ“”

A rise in smishing campaigns impersonating toll service providers has been linked to Chinas Smishing Triad.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Security Theater: Vanity Metrics Keep You Busy - and Exposed πŸ–‹οΈ

After more than 25 years of mitigating risks, ensuring compliance, and building robust security programs for Fortune 500 companies, Ive learned that looking busy isnt the same as being secure.  Its an easy trap for busy cybersecurity leaders to fall into. We rely on metrics that tell a story of the tremendous efforts were expending how many vulnerabilities we patched, how fast we.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ CISA and FBI Warn Fast Flux is Powering Resilient Malware, C2, and Phishing Networks πŸ–‹οΈ

Cybersecurity agencies from Australia, Canada, New Zealand, and the United States have published a joint advisory about the risks associated with a technique called fast flux that has been adopted by threat actors to obscure a commandandcontrol C2 channel. "'Fast flux' is a technique used to obfuscate the locations of malicious servers through rapidly changing Domain Name System DNS.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ CISA and FBI Warn Fast Flux is Powering Resilient Malware, C2, and Phishing Networks πŸ–‹οΈ

Cybersecurity agencies from Australia, Canada, New Zealand, and the United States have published a joint advisory about the risks associated with a technique called fast flux that has been adopted by threat actors to obscure a commandandcontrol C2 channel. "'Fast flux' is a technique used to obfuscate the locations of malicious servers through rapidly changing Domain Name System DNS.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ CISA and FBI Warn Fast Flux is Powering Resilient Malware, C2, and Phishing Networks πŸ–‹οΈ

Cybersecurity agencies from Australia, Canada, New Zealand, and the United States have published a joint advisory about the risks associated with a technique called fast flux that has been adopted by threat actors to obscure a commandandcontrol C2 channel. "'Fast flux' is a technique used to obfuscate the locations of malicious servers through rapidly changing Domain Name System DNS.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Darknet’s Xanthorox AI Offers Customizable Tools for Hackers πŸ“”

Xanthorox AI, a selfcontained system for offensive cyber operations, has emerged on darknet forums.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Darknet’s Xanthorox AI Offers Customizable Tools for Hackers πŸ“”

Xanthorox AI, a selfcontained system for offensive cyber operations, has emerged on darknet forums.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Darknet’s Xanthorox AI Offers Customizable Tools for Hackers πŸ“”

Xanthorox AI, a selfcontained system for offensive cyber operations, has emerged on darknet forums.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Scattered Spider's 'King Bob' Pleads Guilty to Cyber Charges πŸ•΅οΈβ€β™‚οΈ

The 20yearold was arrested in January 2024 alongside four other group members who carried out related cybercriminal acts, earning them similar charges.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ ⚑ Weekly Recap: VPN Exploits, Oracle's Silent Breach, ClickFix Surge and More πŸ–‹οΈ

Today, every unpatched system, leaked password, and overlooked plugin is a doorway for attackers. Supply chains stretch deep into the code we trust, and malware hides not just in shady apps but in job offers, hardware, and cloud services we rely on every day. Hackers dont need sophisticated exploits anymore. Sometimes, your credentials and a little social engineering are enough. This week,.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Darknet’s Xanthorox AI Offers Customizable Tools for Hackers πŸ“”

Xanthorox AI, a selfcontained system for offensive cyber operations, has emerged on darknet forums.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity