πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
26K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
ATENTIONβ€Ό New - CVE-2013-0293

oVirt Node: Lock screen accepts F2 to drop to shell causing privilege escalation

πŸ“– Read

via "National Vulnerability Database".
πŸ›  TOR Virtual Network Tunneling Tool 0.4.2.5 πŸ› 

Tor is a network of virtual tunnels that allows people and groups to improve their privacy and security on the Internet. It also enables software developers to create new communication tools with built-in privacy features. It provides the foundation for a range of applications that allow organizations and individuals to share information over public networks without compromising their privacy. Individuals can use it to keep remote Websites from tracking them and their family members. They can also use it to connect to resources such as news sites or instant messaging services that are blocked by their local Internet service providers (ISPs).

πŸ“– Go!

via "Security Tool Files β‰ˆ Packet Storm".
❌ Download: The 2020 Cybersecurity Salary Survey Results ❌

Today you can access the aggregated and analyzed 2020 Cybersecurity Salary Survey Results and gain insight into the main ranges and factors of current cybersecurity salaries.

πŸ“– Read

via "Threatpost".
❌ Amazon’s Blink Smart Security Cameras Open to Hijack ❌

Amazon is rolling out patches for the vulnerabilities and users are urged to confirm their device is updated to firmware version 2.13.11 or later.

πŸ“– Read

via "Threatpost".
πŸ•΄ Only 53% of Security Pros Have Ownership of Workforce IAM πŸ•΄

Most practitioners report an increase in identities, but many don't have control over how those identities are protected from a range of attacks.

πŸ“– Read

via "Dark Reading: ".
❌ Adobe Fixes 17 Critical Acrobat, Photoshop and Brackets Flaws ❌

The patches are part of Adobe's regularly-scheduled fixes.

πŸ“– Read

via "Threatpost".
❌ Snatch Team Steals Data and Hammers Orgs with Ransomware ❌

Snatch has burst on the scene, featuring an array of executables and tools for carrying out carefully orchestrated attacks.

πŸ“– Read

via "Threatpost".
πŸ” How to protect your organization against the Snatch ransomware threat πŸ”

Discovered and analyzed by security provider Sophos, Snatch attempts to bypass traditional security software by rebooting your PC into Safe Mode.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Mac Deploy Stick 2.0: Benefits of the free MDM for macOS πŸ”

MDS 2.0 helps admins modernize their workflow and deploy Apple hardware and software. Also, this Mac deployment utility is free.

πŸ“– Read

via "Security on TechRepublic".
πŸ” How to use the Firefox Lockwise password manager πŸ”

Mozilla has evolved its Lockbox password tool into a more standard password manager. Find out if Firefox Lockwise is right for you.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Intel's CPU Flaws Continue to Create Problems for the Tech Community πŸ•΄

We can't wait out this problem and hope that it goes away. We must be proactive.

πŸ“– Read

via "Dark Reading: ".
❌ Cyberattack Downs Pensacola’s City Systems ❌

The cyberattack comes days after a shooting at U.S. military base Naval Air Station Pensacola rocked the city.

πŸ“– Read

via "Threatpost".
πŸ•΄ Security 101: What Is a Man-in-the-Middle Attack? πŸ•΄

A breakdown of the common ways criminals employ MitM techniques to snare victims, and tips for protecting users from these dirty tricks.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Blink Cameras Found with Multiple Vulnerabilities πŸ•΄

Researchers found three broad types of vulnerabilities, one of which should be particularly concerning to consumers.

πŸ“– Read

via "Dark Reading: ".
πŸ” Executive Stole Trade Secrets, Then Lied About It πŸ”

In a lawsuit filed last week, the company claims the ex-executive stole and retained confidential and trade secret data and lied to cover it up.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
❌ Microsoft Zaps Actively Exploited Zero-Day Bug ❌

December 2019's relatively light Patch Tuesday update also fixes seven critical flaws.

πŸ“– Read

via "Threatpost".
ATENTIONβ€Ό New - CVE-2012-5620

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2012-1577

lib/libc/stdlib/random.c in OpenBSD returns 0 when seeded with 0.

πŸ“– Read

via "National Vulnerability Database".
πŸ” Your open source gift giving guide for 2019 πŸ”

'Tis the season for open source gifts. But what to buy? Jack Wallen has a few ideas that are sure to put a smile on the faces of the open source lovers in your life.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Microsoft Fixes Windows Zero-Day on Lightest Patch Tuesday of 2019 πŸ•΄

This month's batch of security updates addresses 36 CVEs, seven of which are rated Critical and one of which has been exploited in the wild.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Data Leak Week: Billions of Sensitive Files Exposed Online πŸ•΄

A total of 2.7 billion email addresses, 1 billion email account passwords, and nearly 800,000 applications for copies of birth certificate were found on unsecured cloud buckets.

πŸ“– Read

via "Dark Reading: ".