πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
26.5K subscribers
89.7K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ–‹οΈ Google Sets Sept. 30 Deadline for Android Developer Verification in Four Countries πŸ–‹οΈ

Google has set September 30, 2026, as the day it begins enforcing Android developer verification in the first four countries, and the major devicemaker app stores are in from the start. On that date, certified Android phones in Brazil, Indonesia, Singapore, and Thailand will block normal installs of apps whose developers have not registered an identity with Google, whether the app.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Stop Your Legacy Infrastructure from Hijacking Your AI Agents πŸ–‹οΈ

Earlier this month, I spoke at the Gartner Security Risk Management Summit about a blind spot most security programs are still not accounting for how attackers are circumventing AI security programs by using legacy infrastructure to hijack AI agents. AI adoption is moving faster than security programs can account for. Roughly 71 of organizations are piloting AI agents across their.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ ⚑ Weekly Recap: Browser Bugs, EDR Killers, TV Botnet, OpenBSD Flaw, Android Trojan, and More πŸ–‹οΈ

Its Monday again. This weeks threat list looks painfully familiar abused integrations, fake tools, poisoned websites, ransomware crews trying to shut down security tools, and mobile malware asking for way too much control. The annoying part is how little of this feels new. Weak credentials, sketchy downloads, browser extensions with too much access, and WordPress sites are used to push more.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Canada’s Spy Agency Used First-of-Its-Kind Warrant to Clean Botnet-Infected Devices πŸ–‹οΈ

Canada's spy service got a judge's permission to reach into infected servers, home routers, and IoT gear sitting on Canadian soil and neutralize two foreignrun botnets. The Federal Court released a public version of the ruling on June 15. It is the first time the Canadian Security Intelligence Service has used its threat reduction warrant powers this way. The warrant let CSIS alter,.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ AryStinger Malware Infects 4,300 Legacy Routers to Build Reconnaissance Proxy Network πŸ–‹οΈ

A new malware family is turning forgotten home routers into a distributed reconnaissance and proxy network, not the DDoS botnet these devices usually end up in. QiAnXin's XLab calls it AryStinger and counts at least 4,300 infected routers, a total it says is still rising. The distinction matters. AryStinger exists for the stage of an attack that comes before the breakin. Infected.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ INTERPOL Warns Phishing, Ransomware, and AI Scams Are Rising Across Asia-Pacific πŸ–‹οΈ

A new report from INTERPOL has revealed a "dramatic increase" in cybercrime in Asia and the South Pacific, fueled by rapid digitalization, internet penetration, new technologies, organized criminal networks, and a disparity in cybersecurity maturity. According to INTERPOL's 20252026 Asia and South Pacific Cyberthreat Assessment Report, phishing has emerged as the most widespread and.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
🚨 The AI shift in cyber risk: why leaders must act now 🚨



πŸ“– Read more.

πŸ”— Via "UK NCSC"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” GentleKiller Framework Disables Victims' Security Software πŸ“”

ESET details GentleKiller, the EDRkiller framework the Gentlemen ransomware gang gives affiliates.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Unpatchable BootROM Flaw Impacts Apple A12, A13 Chips πŸ“”

Apple BootROM exploit exposes unpatchable USB flaw on A12 and A13 devices.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Microsoft Attributes Mastra AI Supply Chain Attack to North Korea πŸ“”

North Korean threat actor Sapphire Sleet has been linked to a supply chain attack targeting Mastra, according to Microsoft security researchers.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Klue Breach Enables Hackers to Compromise Cybersecurity Firms via OAuth Tokens πŸ“”

At least four cybersecurity firms confirmed they have been affected by a breach of business intelligence platform Klue via Salesforce integration.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” UK Information Commissioner Resigns After Workplace Investigation πŸ“”

The UKs data protection regulator the information commissioner has resigned after his position became untenable.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” NCSC Urges Fortinet Customers to Tackle FortiBleed Fallout πŸ“”

The NCSC has released guidance for Fortinet customers impacted by the FortiBleed threat campaign.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” GentleKiller Framework Disables Victims' Security Software πŸ“”

ESET details GentleKiller, the EDRkiller framework the Gentlemen ransomware gang gives affiliates.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
🌊 10 Best Security Testing Services: Types, Infrastructure Coverage, Compliance, and Vendor Evaluation 🌊

Discover why a clean pentest report often hides a detection failure, and which security testing services prove your defenses fire. The post 10 Best Security Testing Services Types, Infrastructure Coverage, Compliance, and Vendor Evaluation appeared first on UnderDefense.

πŸ“– Read more.

πŸ”— Via "UnderDefense"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Unpatchable BootROM Flaw Impacts Apple A12, A13 Chips πŸ“”

Apple BootROM exploit exposes unpatchable USB flaw on A12 and A13 devices.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
🌊 Network Penetration Testing: Scope, Planning, Exploitation, Reporting, and Retesting Workflows 🌊

Network penetration testing as a live MDR scorecard. CTOs, learn scope, exploitation, reporting and retesting workflows that close real gaps. The post Network Penetration Testing Scope, Planning, Exploitation, Reporting, and Retesting Workflows appeared first on UnderDefense.

πŸ“– Read more.

πŸ”— Via "UnderDefense"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Microsoft Attributes Mastra AI Supply Chain Attack to North Korea πŸ“”

North Korean threat actor Sapphire Sleet has been linked to a supply chain attack targeting Mastra, according to Microsoft security researchers.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
🌊 12 Best Penetration Testing Companies of 2026: Compared by Services, Pricing, and Reports 🌊

Explore our practitionerbuilt guide to penetration testing companies, with transparent pricing, PTaaS comparisons, and auditready report standards. The post 12 Best Penetration Testing Companies of 2026 Compared by Services, Pricing, and Reports appeared first on UnderDefense.

πŸ“– Read more.

πŸ”— Via "UnderDefense"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Klue Breach Enables Hackers to Compromise Cybersecurity Firms via OAuth Tokens πŸ“”

At least four cybersecurity firms confirmed they have been affected by a breach of business intelligence platform Klue via Salesforce integration.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” UK Information Commissioner Resigns After Workplace Investigation πŸ“”

The UKs data protection regulator the information commissioner has resigned after his position became untenable.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity