πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
24.9K subscribers
88.4K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ“’ It's been a bad week for ransomware operators πŸ“’

A host of ransomware strains have been neutralized, servers seized, and key players indicted.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ SafeLine WAF: Open Source Web Application Firewall with Zero-Day Detection and Bot Protection πŸ–‹οΈ

From zeroday exploits to largescale bot attacks the demand for a powerful, selfhosted, and userfriendly web application security solution has never been greater. SafeLine is currently the most starred opensource Web Application Firewall WAF on GitHub, with over 16.4K stars and a rapidly growing global user base. This walkthrough covers what SafeLine is, how it works, and why its.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Law Enforcement Busts Initial Access Malware Used to Launch Ransomware πŸ“”

A new Europolled operation has dismantled infrastructure for key initial access malware used to launch ransomware attacks.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Global Dark Web Sting Sees 270 Arrested πŸ“”

Operation Raptor also resulted in the seizure of 184m and a record amount of illegal drugs, firearms and drug trafficking proceeds.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ¦… The Week in Vulnerabilities: Firefox, Roundcube and ICS Flaws Flagged by Cyble πŸ¦…

Cyble The Week in Vulnerabilities Firefox, Roundcube and ICS Flaws Flagged by Cyble " dataimagecaption"Cyble The Week in Vulnerabilities Firefox, Roundcube and ICS Flaws Flagged by Cyble " datamediumfile"httpscyble.comwpcontentuploads202505CybleBlogsITVulnerability300x150.jpg" datalargefile"httpscyble.comwpcontentuploads202505CybleBlogsITVulnerability.jpg" title"The Week in Vulnerabilities Firefox, Roundcube and ICS Flaws Flagged by Cyble 1" Cyble vulnerability intelligence researchers investigated nearly 100 IT and industrial control system ICS vulnerabilities this week and flagged eight as meriting highpriority attention by security teams including two targeted by Russian threat actors. In all, Cyble investigated 21 IT vulnerabilities this week, 68 ICS vulnerabilities, and eight v...

πŸ“– Read more.

πŸ”— Via "CYBLE"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘1
πŸ–‹οΈ 300 Servers and €3.5M Seized as Europol Strikes Ransomware Networks Worldwide πŸ–‹οΈ

As part of the latest "season" of Operation Endgame, a coalition of law enforcement agencies have taken down about 300 servers worldwide, neutralized 650 domains, and issued arrest warrants against 20 targets. Operation Endgame, first launched in May 2024, is an ongoing law enforcement operation targeting services and infrastructures assisting in or directly providing initial or consolidating.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ€”1
πŸ–‹οΈ ViciousTrap Uses Cisco Flaw to Build Global Honeypot from 5,300 Compromised Devices πŸ–‹οΈ

Cybersecurity researchers have disclosed that a threat actor codenamed ViciousTrap has compromised nearly 5,300 unique network edge devices across 84 countries and turned them into a honeypotlike network. The threat actor has been observed exploiting a critical security flaw impacting Cisco Small Business RV016, RV042, RV042G, RV082, RV320, and RV325 Routers CVE202320118 to corral them into.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Critical Bugs Left Unpatched in Versa's Concerto Tool πŸ•΅οΈβ€β™‚οΈ

Three zerodays allow an attacker to completely compromise the Concerto application and the host system running it. The vendor has yet to address the issues after being notified three months ago.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Rethinking Data Privacy in the Age of Generative AI πŸ•΅οΈβ€β™‚οΈ

The key to navigating this new GenAI landscape is a balanced approach one that fosters transparency, strengthens regulatory frameworks, and embraces privacyenhancing technologies.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘1
πŸ“’ US healthcare firm postponed procedures after cyber attack knocked systems offline πŸ“’

The incident at Kettering Health disrupted procedures for patients.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸš€ Danabot: Analyzing a fallen empire πŸš€

ESET Research shares its findings on the workings of Danabot, an infostealer recently disrupted in a multinational law enforcement operation.

πŸ“– Read more.

πŸ”— Via "ESET - WeLiveSecurity"

----------
πŸ‘οΈ Seen on @cibsecurity
🌊 12 Top Threat Detection Tools That Cybersecurity Pros Are Using in 2025 🌊

Cyber threats are getting faster, smarter, and bolderand so should your threat detection tools to fight them. Slow threat detection and response lead to data loss, reputational damage, regulatory fines, and costly downtime. Add to it alert fatigue, understaffed security teams, and disconnected tools, and youre facing a perfect risk storm with limited time to The post 12 Top Threat Detection Tools That Cybersecurity Pros Are Using in 2025 appeared first on UnderDefense.

πŸ“– Read more.

πŸ”— Via "UnderDefense"

----------
πŸ‘οΈ Seen on @cibsecurity
🌊 12 Top Threat Detection Tools That Cybersecurity Pros Are Using in 2025 🌊

Cyber threats are getting faster, smarter, and bolderand so should your threat detection tools to fight them. Slow threat detection and response lead to data loss, reputational damage, regulatory fines, and costly downtime. Add to it alert fatigue, understaffed security teams, and disconnected tools, and youre facing a perfect risk storm with limited time to The post 12 Top Threat Detection Tools That Cybersecurity Pros Are Using in 2025 appeared first on UnderDefense.

πŸ“– Read more.

πŸ”— Via "UnderDefense"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ 3 Critical Pillars of Cyber-Resilience πŸ•΅οΈβ€β™‚οΈ

Encryption, collaboration, and AI can help organizations build up essential protection against ransomware.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 184 Million Records Database Leak: Microsoft, Apple, Google, Facebook, PayPal Logins Found 🦿

The databases exposure duration is unknown. Signs of infostealer malware were found, but no confirmed breach or misuse of user data, says cybersecurity researcher.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
🀯1😱1
🦿 Microsoft, DOJ Take Actions Against β€˜Favored Info-Stealing Malware’ Lumma 🦿

Lumma malware, a MaaS platform active since 2022, has stolen data from 1.7M devices, targeting cryptos, logins, and financial information on Windows systems.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Hackers Use TikTok Videos to Distribute Vidar and StealC Malware via ClickFix Technique πŸ–‹οΈ

The malware known as Latrodectus has become the latest to embrace the widelyused social engineering technique called ClickFix as a distribution vector. "The ClickFix technique is particularly risky because it allows the malware to execute in memory rather than being written to disk," Expel said in a report shared with The Hacker News. "This removes many opportunities for browsers or security.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
❀1πŸ₯°1πŸ€”1😱1
🦿 Anthropic Future-Proofs New AI Model With Rigorous Safety Rules 🦿

Anthropics AI Safety Level 3 protections add a filter and limited outbound traffic to prevent anyone from stealing the entire model weights.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘Ž1
🦿 Big Apple OS Makeover: Here’s What to Expect & When 🦿

Apples next OS update dubbed Solarium may bring major design changes, according to reports.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Adidas Customer Data Stolen in Third-Party Attack πŸ“”

Adidas revealed that customer contact information, including names, emails and phone numbers were accessed by an unauthorized party.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ¦… FBI Warns Silent Ransom Group Targeting U.S. Law Firms Using Social Engineering and Callback Phishing πŸ¦…

Cyble FBI Warns Silent Ransom Group Targeting U.S. Law Firms Using Social Engineering and Callback Phishing " dataimagecaption"Cyble FBI Warns Silent Ransom Group Targeting U.S. Law Firms Using Social Engineering and Callback Phishing " datamediumfile"httpscyble.comwpcontentuploads202505CybleBlogsFBISilentRansom300x150.jpg" datalargefile"httpscyble.comwpcontentuploads202505CybleBlogsFBISilentRansom.jpg" title"FBI Warns Silent Ransom Group Targeting U.S. Law Firms Using Social Engineering and Callback Phishing 1" Overview The U.S. Federal Bureau of Investigation FBI has issued a fresh alert warning law firms and cybersecurity professionals about ongoing cyber threat activity linked to the Silent Ransom Group SRGalso known as Luna Moth, Chatty Spider, or UNC3753. This threat actor is...

πŸ“– Read more.

πŸ”— Via "CYBLE"

----------
πŸ‘οΈ Seen on @cibsecurity