πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
26.3K subscribers
89.4K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ–‹οΈ Dutch Authorities Dismantle Botnet Linked to 17 Million Infected Devices πŸ–‹οΈ

Dutch authorities have announced the takedown of a botnet that enslaved millions of infected devices, including computers, tablets, smartphones, and IoT devices, to carry out malicious attacks. The bot network, per the Dutch Politie and the National Cyber Security Center NCSC, consisted of at least 17 million infected devices. More than 200 servers located in the Netherlands acted as the.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
❀1
πŸ–‹οΈ The Security Growth Platform: Why MSPs Are Moving Beyond vCISO Tools πŸ–‹οΈ

Three years ago, the practical question for an MSP building a cybersecurity practice was which "vCISO platform" to buy. The term was good shorthand for the work at the time assessments, advisory, reporting, maybe a compliance module bolted on the side. The work has since outgrown the descriptor. A Security Growth Platform is the more precise name for what MSPs and MSSPs need from the software.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ OpenAI Codex Authentication Tokens Stolen in codexui-android npm Supply Chain Attack πŸ–‹οΈ

Cybersecurity researchers have disclosed details of a new malicious supply chain campaign that's targeting developers using OpenAI Codex through a legitimatelooking remote web UI. The tool, named codexuiandroid, is advertised on GitHub and npm as a remote web UI for OpenAI Codex, attracting over 29,000 weekly downloads. The package is still available for download from the repository. What.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Critical WP Maps Pro Flaw Actively Exploited to Create Admin Accounts πŸ–‹οΈ

Threat actors are attempting to actively exploit a critical security flaw impacting WP Maps Pro, a WordPress plugin that has had over 15,000 sales on the Envato Market, to create malicious administrator accounts on susceptible sites. WP Maps Pro allows site owners to embed customizable Google Maps and OpenStreetMap with markers, listings, and advanced location features on WordPress sites. It is.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Infosecurity Europe: AI SOCs Will Still Need SOC Analysts, Security Vendors Say πŸ“”

Top cybersecurity vendors said AI won't replace entrylevel only routine tickettaking and triage.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” FSB Group Gamaredon Hides Worm in Windows Data Streams πŸ“”

FSBlinked Gamaredon concealed a fileless worm in NTFS data streams to spy on Ukraine targets.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Attackers Abuse Shared Content for ChatGPT Phishing Campaign πŸ“”

Push Security says threat actors are delivering malware hosted on chatgpt.coms domain.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Palo Alto Warns High-Severity Bug Is Being Actively Exploited πŸ“”

A vulnerability in Palo Alto Networks PANOS software is being exploited in attacks.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Infosecurity Europe: OWASP Forms New Agentic Research Council πŸ“”

OWASPs new Agentic Research Council will aim to connect academic work to operational realities on agentic AI security.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
🌊 Abnormal Security Pricing Guide 2026: Actual Costs, Modules, and What Enterprises Really Pay 🌊

Explore verified Abnormal Security pricing bands, 8lever negotiation playbook, and competitor comparisons across Defender, Mimecast, and Sublime. The post Abnormal Security Pricing Guide 2026 Actual Costs, Modules, and What Enterprises Really Pay appeared first on UnderDefense.

πŸ“– Read more.

πŸ”— Via "UnderDefense"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Infosecurity Europe: Tabletop Exercise to Test How CISOs Respond to Major Supermarket Cyber-Attack πŸ“”

Semperis is set to bring Enter the War Room A Tabletop Experience to Infosecurity Europe to help cybersecurity leaders prepare to face real incidents.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Critical Flowise Flaw Gives Attackers Full Server Control πŸ“”

Obsidian publishes PoC for a 1click Flowise RCE that can fully compromise selfhosted servers.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ ⚑ Weekly Recap: New Linux Flaw, PAN-OS Exploit, AI-Powered Attacks, OAuth Phishing and More πŸ–‹οΈ

Monday hit like a cron job with anger issues. A busted auth path here, a reposide faceplant there, some "patchedish" thing already getting chewed on in the wild, and then the usual bonus round poisoned dev tools, sketchy forum chatter, phishing kits pretending to be productivity, and AI lowering the bar for people who already thought 'curl sh' had a personality. The vibe is simple old.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ China-Aligned Groups Ramp Up Attacks: Dragon Weave Hits Czech Republic & Taiwan πŸ–‹οΈ

A new cyber espionage campaign codenamed Operation Dragon Weave has been observed targeting officials and citizens in the Czech Republic and Taiwan to deliver an AdaptixC2 agent. According to Seqrite Labs, targets of the campaign include government, research, academic, technology, and financial services sectors. The activity entails distributing spearphishing emails containing ZIP attachments.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity