πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
27.4K subscribers
90K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ–‹οΈ Meta Rolls Out New Tools to Protect WhatsApp and Messenger Users from Scams πŸ–‹οΈ

Meta on Tuesday said it's launching new tools to protect Messenger and WhatsApp users from potential scams. To that end, the company said it's introducing new warnings on WhatsApp when users attempt to share their screen with an unknown contact during a video call so as to prevent them from giving away sensitive information like bank details or verification codes. On Messenger, users can opt to.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Singapore Officials Impersonated in Sophisticated Investment Scam πŸ“”

GroupIB has uncovered a scam operation impersonating Singapore officials using Google Ads and deepfakes.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ PolarEdge Targets Cisco, ASUS, QNAP, Synology Routers in Expanding Botnet Campaign πŸ–‹οΈ

Cybersecurity researchers have shed light on the inner workings of a botnet malware called PolarEdge. PolarEdge was first documented by Sekoia in February 2025, attributing it to a campaign targeting routers from Cisco, ASUS, QNAP, and Synology with the goal of corralling them into a network for an asyetundetermined purpose. The TLSbased ELF implant, at its core, is designed to monitor.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Cyber experts have been warning about AI-powered DDoS attacks – now they’re becoming a reality πŸ“’

DDoS attackers are flocking to AI tools and solutions to power increasingly devastating attacks.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Securing AI to Benefit from AI πŸ–‹οΈ

Artificial intelligence AI holds tremendous promise for improving cyber defense and making the lives of security practitioners easier. It can help teams cut through alert fatigue, spot patterns faster, and bring a level of scale that human analysts alone cant match. But realizing that potential depends on securing the systems that make it possible. Every organization experimenting with AI in.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Cyber experts have been warning about AI-powered DDoS attacks – now they’re becoming a reality πŸ“’

DDoS attackers are flocking to AI tools and solutions to power increasingly devastating attacks.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Ransomware Payouts Surge to $3.6m Amid Evolving Tactics πŸ“”

According to ExtraHops latest threat landscape report, average ransomware payments surged 44 to 3.6m in 2025 despite fewer incidents.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ PolarEdge Targets Cisco, ASUS, QNAP, Synology Routers in Expanding Botnet Campaign πŸ–‹οΈ

Cybersecurity researchers have shed light on the inner workings of a botnet malware called PolarEdge. PolarEdge was first documented by Sekoia in February 2025, attributing it to a campaign targeting routers from Cisco, ASUS, QNAP, and Synology with the goal of corralling them into a network for an asyetundetermined purpose. The TLSbased ELF implant, at its core, is designed to monitor.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Singapore Officials Impersonated in Sophisticated Investment Scam πŸ“”

GroupIB has uncovered a scam operation impersonating Singapore officials using Google Ads and deepfakes.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
❀1
πŸ¦… CISA Adds Oracle, Microsoft, Apple, Kentico Bugs to KEV Catalog πŸ¦…

CISA KEV Catalog " dataimagecaption"" datamediumfile"httpscyble.comwpcontentuploads202510CISAKEVCatalog300x150.webp" datalargefile"httpscyble.comwpcontentuploads202510CISAKEVCatalog.webp" title"CISA Adds Oracle, Microsoft, Apple, Kentico Bugs to KEV Catalog 1" Overview The Cybersecurity and Infrastructure Security Agency CISA has added five new vulnerabilities to its Known Exploited Vulnerabilities KEV catalog, impacting key enterprise and consumer products from Oracle, Microsoft, Apple, and Kentico.  These vulnerabilities ranging from authentication bypass to remote code execution are confirmed to be actively exploited andor present a heightened risk of exploitation.  CISA has directed all federal civilian executive branch FCEB agencies to apply vendor mitigations by November ...

πŸ“– Read more.

πŸ”— Via "CYBLE"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Singapore Officials Impersonated in Sophisticated Investment Scam πŸ“”

GroupIB has uncovered a scam operation impersonating Singapore officials using Google Ads and deepfakes.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Singapore Officials Impersonated in Sophisticated Investment Scam πŸ“”

GroupIB has uncovered a scam operation impersonating Singapore officials using Google Ads and deepfakes.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Singapore Officials Impersonated in Sophisticated Investment Scam πŸ“”

GroupIB has uncovered a scam operation impersonating Singapore officials using Google Ads and deepfakes.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Singapore Officials Impersonated in Sophisticated Investment Scam πŸ“”

GroupIB has uncovered a scam operation impersonating Singapore officials using Google Ads and deepfakes.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Ransomware Payouts Surge to $3.6m Amid Evolving Tactics πŸ“”

According to ExtraHops latest threat landscape report, average ransomware payments surged 44 to 3.6m in 2025 despite fewer incidents.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Singapore Officials Impersonated in Sophisticated Investment Scam πŸ“”

GroupIB has uncovered a scam operation impersonating Singapore officials using Google Ads and deepfakes.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Singapore Officials Impersonated in Sophisticated Investment Scam πŸ“”

GroupIB has uncovered a scam operation impersonating Singapore officials using Google Ads and deepfakes.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Ransomware Payouts Surge to $3.6m Amid Evolving Tactics πŸ“”

According to ExtraHops latest threat landscape report, average ransomware payments surged 44 to 3.6m in 2025 despite fewer incidents.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Chinese Threat Actors Exploit ToolShell SharePoint Flaw Weeks After Microsoft's July Patch πŸ–‹οΈ

Threat actors with ties to China exploited the ToolShell security vulnerability in Microsoft SharePoint to breach a telecommunications company in the Middle East after it was publicly disclosed and patched in July 2025. Also targeted were government departments in an African country, as well as government agencies in South America, a university in the U.S., as well as likely a state technology.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Bridging the Remediation Gap: Introducing Pentera Resolve πŸ–‹οΈ

From Detection to Resolution Why the Gap Persists A critical vulnerability is identified in an exposed cloud asset. Within hours, five different tools alert you about it your vulnerability scanner, XDR, CSPM, SIEM, and CMDB each surface the issue in their own way, with different severity levels, metadata, and context. Whats missing is a system of action. How do you transition from the.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Fake Nethereum NuGet Package Used Homoglyph Trick to Steal Crypto Wallet Keys πŸ–‹οΈ

Cybersecurity researchers have uncovered a new supply chain attack targeting the NuGet package manager with malicious typosquats of Nethereum, a popular Ethereum .NET integration platform, to steal victims' cryptocurrency wallet keys. The package, Netherum.All, has been found to harbor functionality to decode a commandandcontrol C2 endpoint and exfiltrate mnemonic phrases, private keys, and.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity