πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.1K subscribers
88.4K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸš€ Watch out for these traps lurking in search results πŸš€

Heres how to avoid being hit by fraudulent websites that scammers can catapult directly to the top of your search results.

πŸ“– Read more.

πŸ”— Via "ESET - WeLiveSecurity"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Malicious npm Package Targets Atomic Wallet, Exodus Users by Swapping Crypto Addresses πŸ–‹οΈ

Threat actors are continuing to upload malicious packages to the npm registry so as to tamper with alreadyinstalled local versions of legitimate libraries and execute malicious code in what's seen as a sneakier attempt to stage a software supply chain attack. The newly discovered package, named pdftooffice, masquerades as a utility for converting PDF files to Microsoft Word documents. But, in.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Incomplete Patch in NVIDIA Toolkit Leaves CVE-2024-0132 Open to Container Escapes πŸ–‹οΈ

Cybersecurity researchers have detailed a case of an incomplete patch for a previously addressed security flaw impacting the NVIDIA Container Toolkit that, if successfully exploited, could put sensitive data at risk. The original vulnerability CVE20240132 CVSS score 9.0 is a TimeofCheck TimeofUse TOCTOU vulnerability that could lead to a container escape attack and allow for.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” SpyNote Malware Targets Android Users with Fake Google Play Pages πŸ“”

A new Android malware campaign uses fake Google Play pages to distribute the SpyNote Trojan.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
🌊 UnderDefense Named a Finalist in 2025 SC Awards: Best MDR Service for Excellence in Cybersecurity 🌊

Were excited to share some big news UnderDefense has been named a finalist in the 2025 SC Awards, one of the most respected and competitive awards in the cybersecurity industry. This recognition isnt just a milestone its a reflection of the work weve poured into building a smarter, more proactive approach to security. Year The post UnderDefense Named a Finalist in 2025 SC Awards Best MDR Service for Excellence in Cybersecurity appeared first on UnderDefense.

πŸ“– Read more.

πŸ”— Via "UnderDefense"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ AuthZEN Aims to Harmonize Fractured Authorization Controls πŸ•΅οΈβ€β™‚οΈ

Managing permissions and authorizations across dozens or hundreds of cloud services and platforms poses significant headaches for companies. An open specification aims to change that.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Google Cloud: China Achieves β€œCyber Superpower” Status πŸ“”

Google Clouds Sandra Joyce said that Chinese state actors advanced techniques and ability to stay undetected pose huge challenges.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ PlayPraetor Reloaded: CTM360 Uncovers a Play Masquerading Party πŸ–‹οΈ

Overview of the PlayPraetor Masquerading Party Variants CTM360 has now identified a much larger extent of the ongoing Play Praetor campaign. What started with 6000 URLs of a very specific banking attack has now grown to 16,000 with multiple variants. This research is ongoing, and much more is expected to be discovered in the coming days.  As before, all the newly discovered play.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Incomplete Patch in NVIDIA Toolkit Leaves CVE-2024-0132 Open to Container Escapes πŸ–‹οΈ

Cybersecurity researchers have detailed a case of an incomplete patch for a previously addressed security flaw impacting the NVIDIA Container Toolkit that, if successfully exploited, could put sensitive data at risk. The original vulnerability CVE20240132 CVSS score 9.0 is a TimeofCheck TimeofUse TOCTOU vulnerability that could lead to a container escape attack and allow for.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Google Cloud: China Achieves β€œCyber Superpower” Status πŸ“”

Google Clouds Sandra Joyce said that Chinese state actors advanced techniques and ability to stay undetected pose huge challenges.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
🀬1
πŸ“” Google Cloud: China Achieves β€œCyber Superpower” Status πŸ“”

Google Clouds Sandra Joyce said that Chinese state actors advanced techniques and ability to stay undetected pose huge challenges.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Google Cloud: China Achieves β€œCyber Superpower” Status πŸ“”

Google Clouds Sandra Joyce said that Chinese state actors advanced techniques and ability to stay undetected pose huge challenges.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Incomplete Patch in NVIDIA Toolkit Leaves CVE-2024-0132 Open to Container Escapes πŸ–‹οΈ

Cybersecurity researchers have detailed a case of an incomplete patch for a previously addressed security flaw impacting the NVIDIA Container Toolkit that, if successfully exploited, could put sensitive data at risk. The original vulnerability CVE20240132 CVSS score 9.0 is a TimeofCheck TimeofUse TOCTOU vulnerability that could lead to a container escape attack and allow for.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Google Cloud: China Achieves β€œCyber Superpower” Status πŸ“”

Google Clouds Sandra Joyce said that Chinese state actors advanced techniques and ability to stay undetected pose huge challenges.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Google Cloud: CISOs Demand Simplified Security Tools Amid Growing Tech Complexity πŸ“”

Google Cloud announced a number of security products designed to reduce complexity for security leaders.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Google Cloud: CISOs Demand Simplified Security Tools Amid Growing Tech Complexity πŸ“”

Google Cloud announced a number of security products designed to reduce complexity for security leaders.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Google Cloud: CISOs Demand Simplified Security Tools Amid Growing Tech Complexity πŸ“”

Google Cloud announced a number of security products designed to reduce complexity for security leaders.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Malicious npm Package Targets Atomic Wallet, Exodus Users by Swapping Crypto Addresses πŸ–‹οΈ

Threat actors are continuing to upload malicious packages to the npm registry so as to tamper with alreadyinstalled local versions of legitimate libraries and execute malicious code in what's seen as a sneakier attempt to stage a software supply chain attack. The newly discovered package, named pdftooffice, masquerades as a utility for converting PDF files to Microsoft Word documents. But, in.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Over 40% of UK Businesses Faced Cybersecurity Breaches in 2024 πŸ“”

The Cyber Security Breaches Survey 2025 has been released by the UK Home Office and DSIT today, reporting a slight decline in incidents compared to 2024 report.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Over 40% of UK Businesses Faced Cybersecurity Breaches in 2024 πŸ“”

The Cyber Security Breaches Survey 2025 has been released by the UK Home Office and DSIT today, reporting a slight decline in incidents compared to 2024 report.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” SpyNote Malware Targets Android Users with Fake Google Play Pages πŸ“”

A new Android malware campaign uses fake Google Play pages to distribute the SpyNote Trojan.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity