πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.4K subscribers
88.9K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ“” New Npm 'Ghost Campaign' Uses Fake Install Logs to Hide Malware πŸ“”

Ghost npm campaign fakes install logs to steal sudo passwords and drop RATs that loot crypto and data.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Former Ukrainian Foreign Minister Dmytro Kuleba to Address the New Cyber Frontline at Infosecurity Europe πŸ“”

Geopolitics and cyber warfare take center stage at Infosecurity Europe as Dmytro Kuleba discusses Ukraines hybrid war experience.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Enterprise Cybersecurity Software Fails 20% of the Time, Warns Absolute Security πŸ“”

Poor patch management, increasingly complex IT environments and continued use of obsolete software puts organizations at risk from cyber threats, says the Absolute Security 2026 Resilience Risk Index.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Russian Initial Access Broker Handed 81-Month Sentence πŸ“”

Russian cybercriminal Aleksei Volkov has received close to seven years behind bars for role in Yanluowang ransomware.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Handala Group Tied to Iranian Hack‑and‑Leak Operations, FBI Reveals πŸ“”

The FBI has warned that Iranian hacking group Handala has been targeting opponents of the regime since 2023.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Tax Search Ads Deliver ScreenConnect Malware Using Huawei Driver to Disable EDR πŸ–‹οΈ

A largescale malvertising campaign active since January 2026 has been observed targeting U.S.based individuals searching for taxrelated documents to serve rogue installers for ConnectWise ScreenConnect that drop a tool named HwAudKiller to blind security programs using the bring your own vulnerable driver BYOVD technique. "The campaign abuses Google Ads to serve rogue ScreenConnect .

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ TeamPCP Backdoors LiteLLM Versions 1.82.7–1.82.8 Likely via Trivy CI/CD Compromise πŸ–‹οΈ

TeamPCP, the threat actor behind the recent compromises of Trivy and KICS, has now compromised a popular Python package named litellm, pushing two malicious versions containing a credential harvester, a Kubernetes lateral movement toolkit, and a persistent backdoor. Multiple security vendors, including Endor Labs and JFrog, revealed that litellm versions 1.82.7 and 1.82.8 were published on.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
❀1
🦿 US Bans New Foreign-Made Routers, Citing β€˜Unacceptable’ Security Risks 🦿

The FCC bans new foreignmade routers over national security risks, a move that could reshape the US tech supply chain and impact pricing and availability. The post US Bans New ForeignMade Routers, Citing Unacceptable Security Risks appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” RSA Conference: UK NCSC Head Urges Industry to Develop Vibe Coding Safeguards πŸ“”

The head of the UKs NCSC is calling the cybersecurity industry to seize the disruptive vibe coding opportunity to make software more secure.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
🚨 NCSC CEO: Seize 'disruptive' vibe coding opportunity to make software more secure 🚨

Dr Richard Horne delivered a keynote about cyber risks and opportunities at the RSA Conference in San Francisco.

πŸ“– Read more.

πŸ”— Via "UK NCSC"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸš€ Cloud workload security: Mind the gaps πŸš€

As IT infrastructure expands, visibility and control often lag behind until an incident forces a reckoning.

πŸ“– Read more.

πŸ”— Via "ESET - WeLiveSecurity"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ FCC Bans New Foreign-Made Routers Over Supply Chain and Cyber Risk Concerns πŸ–‹οΈ

The U.S. Federal Communications Commission FCC said on Monday that it was banning the import of new, foreignmade consumer routers, citing "unacceptable" risks to cyber and national security. The action was designed to safeguard Americans and the underlying communications networks the country relies on, FCC Chairman Brendan Carr said in a post on X. The development means that new models of.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
❀1
πŸ–‹οΈ FCC Bans New Foreign-Made Routers Over Supply Chain and Cyber Risk Concerns πŸ–‹οΈ

The U.S. Federal Communications Commission FCC said on Monday that it was banning the import of new, foreignmade consumer routers, citing "unacceptable" risks to cyber and national security. The action was designed to safeguard Americans and the underlying communications networks the country relies on, FCC Chairman Brendan Carr said in a post on X. The development means that new models of.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Operation Henhouse Nets Over 500 Arrests in UK Fraud Crackdown πŸ“”

UK police trumpet success of Operation Henhouse as they seize and freeze over 27m in suspected fraud proceeds.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Operation Henhouse Nets Over 500 Arrests in UK Fraud Crackdown πŸ“”

UK police trumpet success of Operation Henhouse as they seize and freeze over 27m in suspected fraud proceeds.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ NCSC warns vibe coding poses a major risk to businesses πŸ“’

Vulnerability management approaches are not maturing fast enough to keep up with the downsides of AIgenerated code.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Google just launched a new Gemini-powered dark web monitoring service πŸ“’

A new AIpowered dark web monitoring service looks to give enterprises more "reasoned answers" and deeper insights.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ The key risks security teams face in 2026 πŸ“’

From AIrelated flaws to supply chain risks, cyber professionals now contend with overlapping challenges.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 RSAC 2026 Proved the Industry Agrees on the Problem β€” Now Comes the Hard Part 🦿

Agentic AI dominated RSAC 2026, but security leaders warn governance is lagging. Heres why discovery isnt enough and where control must evolve. The post RSAC 2026 Proved the Industry Agrees on the Problem Now Comes the Hard Part appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 Inside RSA 2026: Security Leaders Grapple With AI’s Growing Role and Risks 🦿

RSA Conference 2026 spotlights AI in cybersecurity, from SOC automation to governance challenges, as experts weigh trust, control, and risk. The post Inside RSA 2026 Security Leaders Grapple With AIs Growing Role and Risks appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 Nearly 7M Email Addresses Exposed in Crunchyroll Third-Party Breach 🦿

Hackers claim they stole 6.8 million Crunchyroll email addresses through a thirdparty vendor breach, exposing support ticket data and other user details. The post Nearly 7M Email Addresses Exposed in Crunchyroll ThirdParty Breach appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity