πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.9K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ“” Shai-Hulud Worm Prowls npm to Steal Hundreds of Secrets πŸ“”

A secretstealing worm is spreading fast across the npm ecosystem, experts have warned.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ BreachForums founder resentenced to three years in prison πŸ“’

A US appeals court vacated his previous sentence and remanded the case for resentencing.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ BreachForums founder resentenced to three years in prison πŸ“’

A US appeals court vacated his previous sentence and remanded the case for resentencing.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ BreachForums founder resentenced to three years in prison πŸ“’

A US appeals court vacated his previous sentence and remanded the case for resentencing.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” VC Firm Insight Partners Notifies Victims After Ransomware Breach πŸ“”

Insight Partners has released more details of a 2024 ransomware breach impacting thousands of individuals.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Microsoft and Cloudflare just took down a major phishing operation πŸ“’

RaccoonO365s phishing as a service platform has risen to prominence via Telegram.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Cyber professionals are losing sleep over late night attacks πŸ“’

Hackers are biding their time and launching attacks when businesses cant respond.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 Break Into Cybersecurity with 38 Hours of Training β€” Now Less Than $25 for Life 🦿

Build jobready cybersecurity skills with 38 hours of selfpaced training from this lifetime bundle. The post Break Into Cybersecurity with 38 Hours of Training Now Less Than 25 for Life appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ SilentSync RAT Delivered via Two Malicious PyPI Packages Targeting Python Developers πŸ–‹οΈ

Cybersecurity researchers have discovered two new malicious packages in the Python Package Index PyPI repository that are designed to deliver a remote access trojan called SilentSync on Windows systems. "SilentSync is capable of remote command execution, file exfiltration, and screen capturing," Zscaler ThreatLabz's Manisha Ramcharan Prajapati and Satyam Singh said. "SilentSync also extracts.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ‘1
πŸ–‹οΈ How CISOs Can Drive Effective AI Governance πŸ–‹οΈ

AIs growing role in enterprise environments has heightened the urgency for Chief Information Security Officers CISOs to drive effective AI governance. When it comes to any emerging technology, governance is hard but effective governance is even harder. The first instinct for most organizations is to respond with rigid policies. Write a policy document, circulate a set of restrictions, and.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Google Patches Chrome Zero-Day CVE-2025-10585 as Active V8 Exploit Threatens Millions πŸ–‹οΈ

Google on Wednesday released security updates for the Chrome web browser to address four vulnerabilities, including one that it said has been exploited in the wild. The zeroday vulnerability in question is CVE202510585, which has been described as a type confusion issue in the V8 JavaScript and WebAssembly engine. Type confusion vulnerabilities can have severe consequences as they can be.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” 1 in 3 Android Apps Leak Sensitive Data πŸ“”

One third of Android and over half iOS apps shown to be leaking insecure APIs and hardcoded secrets.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” SonicWall Discloses Compromise of Cloud Backup Service πŸ“”

SonicWall said that threat actors accessed firewall preference files stored in the cloud for around 5 of its firewall install base.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” VC Firm Insight Partners Notifies Victims After Ransomware Breach πŸ“”

Insight Partners has released more details of a 2024 ransomware breach impacting thousands of individuals.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” NCA Singles Out β€œThe Com” as it Chairs Five Eyes Group πŸ“”

The UKs National Crime Agency is the new chair of the Five Eyes Law Enforcement Group.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ¦… Ransomware Landscape August 2025: Qilin Dominates as Sinobi Emerges πŸ¦…

In August, Qilin was the most active ransomware group for the fourth time in five months, while a new ransomware group is quickly moving up the ranks.  Qilins 104 claimed victims in August were nearly double secondplace Akiras 56, but the rapid rise of Sinobi to third place has been one of the more intriguing recent developments in the ransomware landscape chart below.   The dominance of Qilin and the rise of Sinobi were among the revelations in Cybles latest global threat landscape report, which also documents a surge in supply chain and critical infrastructure attacks, among other findings.  Ransomware attacks rose to 467 in August, the fourth straight monthly increase, even as attack totals remain well below Februarys record chart below. Several attacks had significant sup...

πŸ“– Read more.

πŸ”— Via "CYBLE"

----------
πŸ‘οΈ Seen on @cibsecurity
❀1
πŸ–‹οΈ CountLoader Broadens Russian Ransomware Operations With Multi-Version Malware Loader πŸ–‹οΈ

Cybersecurity researchers have discovered a new malware loader codenamed CountLoader that has been put to use by Russian ransomware gangs to deliver postexploitation tools like Cobalt Strike and AdaptixC2, and a remote access trojan known as PureHVNC RAT. "CountLoader is being used either as part of an Initial Access Broker's IAB toolset or by a ransomware affiliate with ties to the LockBit,.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ SonicWall Urges Password Resets After Cloud Backup Breach Affecting Under 5% of Customers πŸ–‹οΈ

SonicWall is urging customers to reset credentials after their firewall configuration backup files were exposed in a security breach impacting MySonicWall accounts. The company said it recently detected suspicious activity targeting the cloud backup service for firewalls, and that unknown threat actors accessed backup firewall preference files stored in the cloud for less than 5 of its.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
❀1
πŸ“” New York Blood Center Alerts 194,000 People to Data Breach πŸ“”

A breach at the New York Blood Center resulted in theft of data for 194,000 people, including SSNs, IDs, bank and health information.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ The top ransomware trends for businesses in 2025 πŸ“’

A splintering of top groups and changing attitudes toward payments are changing attacker tactics at speed.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Pair of Suspected Scattered Spider Hackers Charged by UK, US Authorities πŸ“”

One of the teenage suspects is accused of involvement in at least 120 attacks, resulting in 115m in ransom payments.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity