πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
26.3K subscribers
89.5K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ–‹οΈ DoJ Disrupts Southeast Asia Crypto Fraud Networks, Freezes $3.8 Million in Assets πŸ–‹οΈ

The U.S. Department of Justice DoJ on Wednesday announced the results of a sweeping action undertaken by government authorities and private sector companies to combat cyberenabled and cryptocurrency fraud targeting Americans. The "Disruption Week" operation began May 18, 2026, leading to the takedown of millions of social media, email, and internet access accounts used by transnational.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Chinese-Speaking Actor TA4922 Widens Its Global Reach πŸ“”

Newly named Chinesespeaking actor TA4922 expands from East Asia into Europe and Africa.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Infosecurity Europe: AI Adoption Creates New Opportunities for Attackers to Distribute Malware, Microsoft Warns πŸ“”

Microsoft Detection and Response Team DART details how it has uncovered malicious AI applications as cyber criminals manipulate organizations adopting AI tools.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Infosecurity Europe: Mythos Outperforms GPT5.5 on Google Chrome Vulnerability Exploits, Says New Benchmark πŸ“”

A Bugcrowd researcher has unveiled ExploitBench, an independent benchmark of AI models for vulnerability exploitation.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Infosecurity Europe: How Proton Fights Against Cybercriminals Using Its Services πŸ“”

Proton uses machine learning models to detect abuse of its services especially email addresses used by cybercriminals.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Infosecurity Europe: How Businesses Can Prepare for a Cybersecurity Crisis with Effective Plans πŸ“”

Cybersecurity and business leaders with experience of dealing with major incidents from within the NCSC and at JLR detail what you need to prioritize if your organization is hit by a cyberattack.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Infosecurity Europe: Ukraine’s Experience Highlights the Need for Preparation and Resilience in Cybersecurity πŸ“”

Former Ukrainian foreign minister, Dmytro Kuleba, urges Infosecurity Europe attendees to fight the good fight.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Infosecurity Europe: Raise Security Concerns with Procurement Now, Because Quantum Can’t Wait πŸ“”

Forescout VP of security intelligence, Rik Ferguson, warns that Qday is fast approaching.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
🌊 Tanium Pricing Guide 2026: Real Costs, Modules, and What Enterprises Actually Pay 🌊

Discover Tanium's true 2026 TCO across 5K to 100K endpoints. Module costs, FedRAMP rates, and renewal levers built for IT Directors. The post Tanium Pricing Guide 2026 Real Costs, Modules, and What Enterprises Actually Pay appeared first on UnderDefense.

πŸ“– Read more.

πŸ”— Via "UnderDefense"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Everest Forms Pro Vulnerability Allows Remote Code Execution on WordPress Sites πŸ“”

Critical Everest Forms Pro RCE flaw exploited to create rogue WordPress admin accounts.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Cisco Patches CVE-2026-20230 in Unified CM as Exploit Code Goes Public πŸ–‹οΈ

Cisco has patched a bug in Unified Communications Manager that lets an unauthenticated attacker on the network write files to the box and, from there, climb to root. It is tracked as CVE202620230, and proofofconcept exploit code is already public. Cisco's PSIRT says it has not seen the flaw used in attacks yet. The PoC shortens that runway. The flaw is a serverside request forgery.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 Microsoft 365 Android Apps Had a Token Flaw IT Teams Should Check Now 🦿

A debug flag left active in six Microsoft 365 Android apps allowed another installed app on the same device to request account tokens without user interaction. The post Microsoft 365 Android Apps Had a Token Flaw IT Teams Should Check Now appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 US Firms Try DeepSeek as Silicon Valley AI Costs Rise 🦿

US firms are testing Chinas DeepSeek as Silicon Valley AI costs rise, raising questions about savings, data residency, and risk. The post US Firms Try DeepSeek as Silicon Valley AI Costs Rise appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 Malicious WhatsApp, Slack Alerts Could Have Exposed Millions of Android Users 🦿

SafeBreach found a nowfixed Gemini Android flaw that let malicious WhatsApp and Slack alerts manipulate AI responses and tools. The post Malicious WhatsApp, Slack Alerts Could Have Exposed Millions of Android Users appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 Gartner SRM 2026 Signals a Cybersecurity Shift From Prevention to Resilience 🦿

Gartner SRM 2026 put resilience, identity, and AI agent governance at the center of cybersecurity strategy as prevention loses ground. The post Gartner SRM 2026 Signals a Cybersecurity Shift From Prevention to Resilience appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
❀1
🦿 Apple Begins Rosetta’s Final Phase as Intel Mac Era Winds Down 🦿

Apple says macOS 26 Tahoe is the last major release for Intel Macs, with Rosetta support continuing through macOS 27 before narrowing. The post Apple Begins Rosettas Final Phase as Intel Mac Era Winds Down appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
❀1
🦿 New GitHub Zero-Day Exposed Developer Tokens to Attackers 🦿

A github.dev flaw could let attackers steal GitHub OAuth tokens through a oneclick attack, exposing private repositories and codebases. The post New GitHub ZeroDay Exposed Developer Tokens to Attackers appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ NCSC urges organizations to shore up supply chain security practices πŸ“’

With attackers increasingly compromising open source packages to spread malware, organizations need to be on their guard.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Dashlane lifts the lid on attack that saw hackers download encrypted user vaults πŸ“’

The company said it has now informed all affected customers, and taken action to shut down the operation.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Hackers Exploit Critical Everest Forms Pro WordPress Plugin Flaw to Take Over Sites πŸ–‹οΈ

Threat actors are actively exploiting a critical security flaw in Everest Forms Pro, a WordPress plugin with about 4,000 active installations, to execute arbitrary code, leading to a complete site compromise. The vulnerability in question is CVE20263300 CVSS score 9.8, a remote code execution bug impacting all versions of the plugin up to, and including, 1.9.12. A patch for the flaw was.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ FIFA World Cup 2026 Scams Are Already Live: Fake Sites, Banking Malware, and Stolen Logins πŸ–‹οΈ

Security researchers and the FBI are warning that a wave of FIFAthemed fraud is already hitting World Cup 2026 fans, days before the June 11 kickoff. Recent reports describe thousands of lookalike FIFA domains, banking malware hidden inside pirate streaming apps, and at least one operation that copies FIFA's login page well enough to take over real accounts. It is an obvious target. More than.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity