πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
24.9K subscribers
88.4K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ•΅οΈβ€β™‚οΈ Keeping LLMs on the Rails Poses Design, Engineering Challenges πŸ•΅οΈβ€β™‚οΈ

Despite adding alignment training, guardrails, and filters, large language models continue to give up secrets, make unfiltered statements, and provide dangerous information.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘Ž1
πŸ•΅οΈβ€β™‚οΈ GitLab's AI Assistant Opened Devs to Code Theft πŸ•΅οΈβ€β™‚οΈ

Prompt injection risks in GitLab's AI assistant could have allowed attackers to steal source code, or indirectly deliver developers malware, dirty links, and more.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ GitLab's AI Assistant Opened Devs to Code Theft πŸ•΅οΈβ€β™‚οΈ

Prompt injection risks in GitLab's AI assistant could have allowed attackers to steal source code, or indirectly deliver developers malware, dirty links, and more.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ SideWinder APT Caught Spying on India's Neighbor Gov'ts πŸ•΅οΈβ€β™‚οΈ

A recent spearphishing campaign against countries in South Asia aligns with broader political tensions in the region.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ SideWinder APT Caught Spying on India's Neighbor Gov'ts πŸ•΅οΈβ€β™‚οΈ

A recent spearphishing campaign against countries in South Asia aligns with broader political tensions in the region.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
β™ŸοΈ Oops: DanaBot Malware Devs Infected Their Own PCs β™ŸοΈ

The U.S. government today unsealed criminal charges against 16 individuals accused of operating and selling DanaBot, a prolific strain of informationstealing malware that has been sold on Russian cybercrime forums since 2018. The FBI says a newer version of DanaBot was used for espionage, and that many of the defendants exposed their reallife identities after accidentally infecting their own systems with the malware.

πŸ“– Read more.

πŸ”— Via "Krebs on Security"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” AI-Generated TikTok Videos Used to Distribute Infostealer Malware πŸ“”

Malware campaign exploiting TikToks popularity has been observed using social engineering to spread Vidar and StealC.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
😱1
πŸ“” Kettering Health Cyber-Attack Disrupts Services πŸ“”

Kettering Health is facing significant disruptions from a cyberattack that impacted patient care.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Chinese Hackers Exploit Trimble Cityworks Flaw to Infiltrate U.S. Government Networks πŸ–‹οΈ

A Chinesespeaking threat actor tracked as UAT6382 has been linked to the exploitation of a nowpatched remotecodeexecution vulnerability in Trimble Cityworks to deliver Cobalt Strike and VShell. "UAT6382 successfully exploited CVE20250944, conducted reconnaissance, and rapidly deployed a variety of web shells and custommade malware to maintain longterm access," Cisco Talos researchers.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Coinbase Breach Affected Almost 70,000 Customers πŸ“”

The US cryptocurrency exchange claimed that the breach occurred in December 2024.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Critical Windows Server 2025 dMSA Vulnerability Enables Active Directory Compromise πŸ–‹οΈ

A privilege escalation flaw has been demonstrated in Windows Server 2025 that makes it possible for attackers to compromise any user in Active Directory AD. "The attack exploits the delegated Managed Service Account dMSA feature that was introduced in Windows Server 2025, works with the default configuration, and is trivial to implement," Akamai security researcher Yuval Gordon said in a.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Critical Zero-Days Found in Versa Networks SD-WAN/SASE Platform πŸ“”

The unpatched vulnerabilities, with a CVSS score of 8.6 to 10.0, can lead to remote code execution via authentication bypass.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Chinese Hackers Exploit Ivanti EPMM Bugs in Global Enterprise Network Attacks πŸ–‹οΈ

A recently patched pair of security flaws affecting Ivanti Endpoint Manager Mobile EPMM software has been exploited by a Chinanexus threat actor to target a wide range of sectors across Europe, North America, and the AsiaPacific region. The vulnerabilities, tracked as CVE20254427 CVSS score 5.3 and CVE20254428 CVSS score 7.2, could be chained to execute arbitrary code on a.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Sensitive Personal Data Stolen in West Lothian Ransomware Attack πŸ“”

West Lothian Council confirmed that ransomware attackers have stolen personal and sensitive information held on its education network.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Webinar: Learn How to Build a Reasonable and Legally Defensible Cybersecurity Program πŸ–‹οΈ

Its not enough to be secure. In todays legal climate, you need to prove it. Whether youre protecting a small company or managing compliance across a global enterprise, one thing is clear cybersecurity can no longer be left to guesswork, vague frameworks, or besteffort intentions. Regulators and courts are now holding organizations accountable for how reasonable their security programs are.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Global Law Enforcers and Microsoft Seize 2300+ Lumma Stealer Domains πŸ“”

Law enforcers worldwide have teamed up with Microsoft to disrupt the infrastructure behind Lumma Stealer.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Identity Security Has an Automation Problemβ€”And It's Bigger Than You Think πŸ–‹οΈ

For many organizations, identity security appears to be under control. On paper, everything checks out. But new research from Cerby, based on insights from over 500 IT and security leaders, reveals a different reality too much still depends on peoplenot systemsto function. In fact, fewer than 4 of security teams have fully automated their core identity workflows. Core workflows, like.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Western Logistics and Tech Firms Targeted by Russia’s APT28 πŸ“”

NSA, NCSC and allies warn Western tech and logistics firms of Russian APT28 cyberespionage threat.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Unpatched Versa Concerto Flaws Let Attackers Escape Docker and Compromise Host πŸ–‹οΈ

Cybersecurity researchers have uncovered multiple critical security vulnerabilities impacting the Versa Concerto network security and SDWAN orchestration platform that could be exploited to take control of susceptible instances. It's worth noting that the identified shortcomings remain unpatched despite responsible disclosure on February 13, 2025, prompting a public release of the issues.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” #Infosec2025: NCC Group Expert Warns UK Firms to Prepare for Cyber Security and Resilience Bill πŸ“”

UK businesses should start to plan for required changes to their cybersecurity programs ahead of the Cyber Security and Resilience Bill.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ FBI and Europol Disrupt Lumma Stealer Malware Network Linked to 10 Million Infections πŸ–‹οΈ

A sprawling operation undertaken by global law enforcement agencies and a consortium of private sector firms has disrupted the online infrastructure associated with a commodity information stealer known as Lumma aka LummaC or LummaC2, seizing 2,300 domains that acted as the commandandcontrol C2 backbone to commandeer infected Windows systems. "Malware like LummaC2 is deployed to steal.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity