πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
26.2K subscribers
89.3K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ–‹οΈ TikTok Slammed With €530 Million GDPR Fine for Sending E.U. Data to China πŸ–‹οΈ

Ireland's Data Protection Commission DPC on Friday fined popular videosharing platform TikTok 530 million 601 million for infringing data protection regulations in the region by transferring European users' data to China. "TikTok infringed the GDPR regarding its transfers of EEA European Economic Area User Data to China and its transparency requirements," the DPC said in a statement. ".

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘1
πŸ–‹οΈ TikTok Slammed With €530 Million GDPR Fine for Sending E.U. Data to China πŸ–‹οΈ

Ireland's Data Protection Commission DPC on Friday fined popular videosharing platform TikTok 530 million 601 million for infringing data protection regulations in the region by transferring European users' data to China. "TikTok infringed the GDPR regarding its transfers of EEA European Economic Area User Data to China and its transparency requirements," the DPC said in a statement. ".

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘1
πŸ“” Third of Online Users Hit by Account Hacks Due to Weak Passwords πŸ“”

FIDO Alliance found an uptick in awareness and takeup of passkeys as an alternative method to passwords.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
🚨 NCSC statement: Incident impacting retailers 🚨

The latest statement from the NCSC regarding the cyber incident impacting UK retailers.

πŸ“– Read more.

πŸ”— Via "UK NCSC"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ How to Automate CVE and Vulnerability Advisory Response with Tines πŸ–‹οΈ

Run by the team at workflow orchestration and AI platform Tines, the Tines library features prebuilt workflows shared by security practitioners from across the community all free to import and deploy through the platforms Community Edition. A recent standout is a workflow that automates monitoring for security advisories from CISA and other vendors, enriches advisories with CrowdStrike.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Harrods Latest UK Retailer to Fall Victim to Cyber-Attack in Recent Days πŸ“”

UK retailers including Harrods, MS, and the Coop are under a surge of cyberattacks that may be linked by a common supplier or shared technological vulnerability.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ How to Automate CVE and Vulnerability Advisory Response with Tines πŸ–‹οΈ

Run by the team at workflow orchestration and AI platform Tines, the Tines library features prebuilt workflows shared by security practitioners from across the community all free to import and deploy through the platforms Community Edition. A recent standout is a workflow that automates monitoring for security advisories from CISA and other vendors, enriches advisories with CrowdStrike.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ MintsLoader Drops GhostWeaver via Phishing, ClickFix β€” Uses DGA, TLS for Stealth Attacks πŸ–‹οΈ

The malware loader known as MintsLoader has been used to deliver a PowerShellbased remote access trojan called GhostWeaver. "MintsLoader operates through a multistage infection chain involving obfuscated JavaScript and PowerShell scripts," Recorded Future's Insikt Group said in a report shared with The Hacker News. "The malware employs sandbox and virtual machine evasion techniques, a domain.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘2
πŸ–‹οΈ MintsLoader Drops GhostWeaver via Phishing, ClickFix β€” Uses DGA, TLS for Stealth Attacks πŸ–‹οΈ

The malware loader known as MintsLoader has been used to deliver a PowerShellbased remote access trojan called GhostWeaver. "MintsLoader operates through a multistage infection chain involving obfuscated JavaScript and PowerShell scripts," Recorded Future's Insikt Group said in a report shared with The Hacker News. "The malware employs sandbox and virtual machine evasion techniques, a domain.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Microsoft Sets Passkeys Default for New Accounts; 15 Billion Users Gain Passwordless Support πŸ–‹οΈ

A year after Microsoft announced passkeys support for consumer accounts, the tech giant has announced a big change that pushes individuals signing up for new accounts to use the phishingresistant authentication method by default. "Brand new Microsoft accounts will now be 'passwordless by default,'" Microsoft's Joy Chik and Vasu Jakkal said. "New users will have several passwordless options for.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘Ž1
πŸ–‹οΈ Microsoft Sets Passkeys Default for New Accounts; 15 Billion Users Gain Passwordless Support πŸ–‹οΈ

A year after Microsoft announced passkeys support for consumer accounts, the tech giant has announced a big change that pushes individuals signing up for new accounts to use the phishingresistant authentication method by default. "Brand new Microsoft accounts will now be 'passwordless by default,'" Microsoft's Joy Chik and Vasu Jakkal said. "New users will have several passwordless options for.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘Ž1
🦿 Microsoft Switches to Passkeys By Default, Pledges to Eliminate Passwords 🦿

Apple and Google also pledged to use the FIDO Alliances standard for biometric or PIN logins as opposed to passwords.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘Ž1
🦿 Microsoft Switches to Passkeys By Default, Pledges to Eliminate Passwords 🦿

Apple and Google also pledged to use the FIDO Alliances standard for biometric or PIN logins as opposed to passwords.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘Ž1
🦿 Microsoft Switches to Passkeys By Default, Pledges to Eliminate Passwords 🦿

Apple and Google also pledged to use the FIDO Alliances standard for biometric or PIN logins as opposed to passwords.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘Ž1
🦿 Microsoft Switches to Passkeys By Default, Pledges to Eliminate Passwords 🦿

Apple and Google also pledged to use the FIDO Alliances standard for biometric or PIN logins as opposed to passwords.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘Ž1
🦿 Microsoft Switches to Passkeys By Default, Pledges to Eliminate Passwords 🦿

Apple and Google also pledged to use the FIDO Alliances standard for biometric or PIN logins as opposed to passwords.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘Ž1
πŸ•΅οΈβ€β™‚οΈ UK Retailers Reeling From Likely Ransomware Attacks πŸ•΅οΈβ€β™‚οΈ

A series of cyberattacks have struck multiple major British retailers in recent weeks, and a ransomware gang has reportedly claimed responsibility.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ What NY's New Security Rules Mean for Finance Firms πŸ•΅οΈβ€β™‚οΈ

According to the New York Department of Financial Services, finance companies operating in New York even if not based there must implement a variety of protections against unauthorized access to IT systems.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘1
πŸ•΅οΈβ€β™‚οΈ Attackers Ramp Up Efforts Targeting Developer Secrets πŸ•΅οΈβ€β™‚οΈ

Software teams need to follow security best practices to eliminate the leak of secrets, as threat actors increase their scanning for configuration and repository files.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Despite Arrests, Scattered Spider Continues High-Profile Hacking πŸ•΅οΈβ€β™‚οΈ

While law enforcement has identified and arrested several alleged members, the notorious threat group continues to wreak havoc.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Iranian Hackers Maintain 2-Year Access to Middle East CNI via VPN Flaws and Malware πŸ–‹οΈ

An Iranian statesponsored threat group has been attributed to a longterm cyber intrusion aimed at a critical national infrastructure CNI in the Middle East that lasted nearly two years. The activity, which lasted from at least May 2023 to February 2025, entailed "extensive espionage operations and suspected network prepositioning a tactic often used to maintain persistent access for future.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity