πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
26K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
🦿 Microsoft Authenticator Flaw on Android, iOS Could Leak Login Codes for Millions 🦿

A vulnerability in Microsoft Authenticator for Android and iOS could expose login codes to malicious apps on the same device. Microsoft has released a patch. The post Microsoft Authenticator Flaw on Android, iOS Could Leak Login Codes for Millions appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 Security Flaw in WordPress Plugin Puts 400,000 Websites at Risk 🦿

A security flaw in the Ally WordPress plugin used on more than 400,000 sites could allow attackers to extract sensitive data without logging in. The post Security Flaw in WordPress Plugin Puts 400,000 Websites at Risk appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 Iran-Linked Hacktivists Hit Stryker, Knocking Employees Offline Across Multiple Countries 🦿

A cyberattack disrupted global operations at medical device maker Stryker, knocking employees offline and raising concerns about destructive wiper attacks. The post IranLinked Hacktivists Hit Stryker, Knocking Employees Offline Across Multiple Countries appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 Meta Rolls Out New Scam Alerts Across Facebook, WhatsApp, and Messenger 🦿

Meta is rolling out new scam alerts across Facebook, WhatsApp, and Messenger as it ramps up AIdriven fraud detection and advertiser verification. The post Meta Rolls Out New Scam Alerts Across Facebook, WhatsApp, and Messenger appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 Patch Alert: Microsoft Fixes Nearly 80 Bugs, Including Critical Office Flaws 🦿

Microsofts March Patch Tuesday fixes 78 vulnerabilities, including Office preview pane flaws, an Excel Copilot data leak risk, and an AIdiscovered 9.8 severity bug. The post Patch Alert Microsoft Fixes Nearly 80 Bugs, Including Critical Office Flaws appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 β€˜Agents of Chaos’: New Study Shows AI Agents Can Leak Data, Be Easily Manipulated 🦿

As enterprise AI agent adoption accelerates, a new study exposes a governance gap that leaves most organizations unable to stop their own systems The post Agents of Chaos New Study Shows AI Agents Can Leak Data, Be Easily Manipulated appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 Hackers Pose as IT Staff in Microsoft Teams to Install Malware 🦿

Hackers are impersonating IT staff in Microsoft Teams to trick employees into installing malware, giving attackers stealthy access to corporate networks. The post Hackers Pose as IT Staff in Microsoft Teams to Install Malware appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 Google’s $32B Wiz Acquisition Set to Become Israel’s Largest Tech Deal Ever 🦿

Googles 32 billion Wiz acquisition is nearing completion, marking a record Israeli tech exit and a major bet on cloud security. The post Googles 32B Wiz Acquisition Set to Become Israels Largest Tech Deal Ever appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 Fake Gemini AI Chatbot Promotes β€˜Google Coin’ in New Crypto Scam 🦿

A fake Geministyle chatbot is pushing a bogus Google Coin presale, using Google branding and scripted AI replies to lure victims into crypto payments. The post Fake Gemini AI Chatbot Promotes Google Coin in New Crypto Scam appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 Fake Claude Code Spreads Malware to Windows, macOS Users 🦿

Attackers are using fake Claude Code install pages and malicious search ads to spread infostealer malware targeting Windows and macOS systems. The post Fake Claude Code Spreads Malware to Windows, macOS Users appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 Veeam’s β€˜Agent Commander’: Bringing Guardrails and Resilience to the Wild West of AI 🦿

Veeams Agent Commander turns backup into an AIera command center, giving enterprises the guardrails, visibility, and precision undo they need to safely scale autonomous agents. The post Veeams Agent Commander Bringing Guardrails and Resilience to the Wild West of AI appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
β™ŸοΈ Iran-Backed Hackers Claim Wiper Attack on Medtech Firm Stryker β™ŸοΈ

A hacktivist group with links to Iran's intelligence agencies is claiming responsibility for a datawiping attack against Stryker, a global medical technology company based in Michigan. News reports out of Ireland, Stryker's largest hub outside of the United States, said the company sent home more than 5,000 workers there today. Meanwhile, a voicemail message at Stryker's main U.S. headquarters says the company is currently experiencing a building emergency.

πŸ“– Read more.

πŸ”— Via "Krebs on Security"

----------
πŸ‘οΈ Seen on @cibsecurity
❀1
β™ŸοΈ Microsoft Patch Tuesday, March 2026 Edition β™ŸοΈ

Microsoft Corp. today pushed security updates to fix at least 77 vulnerabilities in its Windows operating systems and other software. There are no pressing "zeroday" flaws this month compared to February's five zeroday treat, but as usual some patches may deserve more rapid attention from organizations using Windows. Here are a few highlights from this month's Patch Tuesday.

πŸ“– Read more.

πŸ”— Via "Krebs on Security"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ OpenClaw AI Agent Flaws Could Enable Prompt Injection and Data Exfiltration πŸ–‹οΈ

China's National Computer Network Emergency Response Technical Team CNCERT has issued a warning about the security stemming from the use of OpenClaw formerly Clawdbot and Moltbot, an opensource and selfhosted autonomous artificial intelligence AI agent. In a post shared on WeChat, CNCERT noted that the platform's "inherently weak default security configurations," coupled with its.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ GlassWorm Supply-Chain Attack Abuses 72 Open VSX Extensions to Target Developers πŸ–‹οΈ

Cybersecurity researchers have flagged a new iteration of the GlassWorm campaign that they say represents a "significant escalation" in how it propagates through the Open VSX registry. "Instead of requiring every malicious listing to embed the loader directly, the threat actor is now abusing extensionPack and extensionDependencies to turn initially standalonelooking extensions into transitive.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Chinese Hackers Target Southeast Asian Militaries with AppleChris and MemFun Malware πŸ–‹οΈ

A suspected Chinabased cyber espionage operation has targeted Southeast Asian military organizations as part of a statesponsored campaign that dates back to at least 2020. Palo Alto Networks Unit 42 is tracking the threat activity under the moniker CLSTA1087, where CL refers to cluster, and STA stands for statebacked motivation. "The activity demonstrated strategic operational patience and.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Meta to Shut Down Instagram End-to-End Encrypted Chat Support Starting May 2026 πŸ–‹οΈ

Meta has announced plans to discontinue support for endtoend encryption E2EE for chats on Instagram after May 8, 2026. "If you have chats that are impacted by this change, you will see instructions on how you can download any media or messages you may want to keep," the social media giant said in a help document. "If you're on an older version of Instagram, you may also need to update the.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ INTERPOL Dismantles 45,000 Malicious IPs, Arrests 94 in Global Cybercrime πŸ–‹οΈ

INTERPOL on Friday announced the takedown of 45,000 malicious IP addresses and servers used in connection with phishing, malware, and ransomware campaigns, as part of the agency's ongoing efforts to dismantle criminal networks, disrupt emerging threats, and safeguard victims from scams. The effort is part of an international law enforcement operation that involved 72 countries and territories.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Storm-2561 Spreads Trojan VPN Clients via SEO Poisoning to Steal Credentials πŸ–‹οΈ

Microsoft has disclosed details of a credential theft campaign that employs fake virtual private network VPN clients distributed through search engine optimization SEO poisoning techniques. "The campaign redirects users searching for legitimate enterprise software to malicious ZIP files on attackercontrolled websites to deploy digitally signed trojans that masquerade as trusted VPN clients.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Investigating a New Click-Fix Variant πŸ–‹οΈ

Disclaimer This report has been prepared by the Threat Research Center to enhance cybersecurity awareness and support the strengthening of defense capabilities. It is based on independent research and observations of the current threat landscape available at the time of publication. The content is intended for informational and preparedness purposes only. Read more blogs around threat.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Google Fixes Two Chrome Zero-Days Exploited in the Wild Affecting Skia and V8 πŸ–‹οΈ

Google on Thursday released security updates for its Chrome web browser to address two highseverity vulnerabilities that it said have been exploited in the wild. The list of vulnerabilities is as follows CVE20263909 CVSS score 8.8 An outofbounds write vulnerability in the Skia 2D graphics library that allows a remote attacker to perform outofbounds memory access via a crafted HTML.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
❀1