πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
28.5K subscribers
91.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
🦿 US Courts To Begin Publishing Spyware Records From 2029 🦿

U.S. courts will begin separately tracking spywarebased interceptions, giving the public new data on government hacking while leaving key gaps. The post US Courts To Begin Publishing Spyware Records From 2029 appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Sovereignty is the channel’s next trust test πŸ“’

Data sovereignty has become a key channel priority.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Video Call Exploit Chains Two Flaws in Unisoc Modems πŸ•΅οΈβ€β™‚οΈ

Researchers found that by combining two vulnerabilities, they could take over an Android device by delivering a payload and getting the victim to answer their phone.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ 'Turf War' Between Claude Agents Leads to Self-Replicating Malware πŸ•΅οΈβ€β™‚οΈ

Three testing models with the same goal but different directives engaged in "increasingly aggressive" territorial attacks on one another, according to Anthropic.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Adam Shostack Talks Hugging Face & PHANTOM-B πŸ•΅οΈβ€β™‚οΈ

Worldclass threat modeler Adam Shostack shared he was "blown away" by OpenAI's revelations about the Hugging Face attack, and explains why his new threat model for LLMs is both "lightweight yet still usable.".

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ•΅οΈβ€β™‚οΈ Linux Botnet Evooo1Bot Expands Mirai Capabilities Well Beyond DDoS πŸ•΅οΈβ€β™‚οΈ

The botnet adds exploitation modules, credential theft, and reverse SOCKS relays to turn compromised devices into persistent attacker infrastructure.

πŸ“– Read more.

πŸ”— Via "Dark Reading"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 US Courts To Begin Publishing Spyware Records From 2029 🦿

U.S. courts will begin separately tracking spywarebased interceptions, giving the public new data on government hacking while leaving key gaps. The post US Courts To Begin Publishing Spyware Records From 2029 appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 France’s Top Court Blocks Under-15 Social Media Ban 🦿

Frances Constitutional Council blocked an under15 social media ban, raising questions over free expression, age verification and online privacy. The post Frances Top Court Blocks Under15 Social Media Ban appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 Apple Mac Malware Lets Attackers Control Browser Sessions After Infection 🦿

AmnesiaStealer malware targets macOS with data theft and remote browsersession control, potentially exposing accounts already open on compromised Macs. The post Apple Mac Malware Lets Attackers Control Browser Sessions After Infection appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
🦿 Nearly 700,000 French Taxpayer Records Reportedly Stolen in Government Cyberattack 🦿

Frances tax authority confirmed a cyberattack exposed taxpayer data as officials investigate the breachs scope and an unverified 678,000record claim. The post Nearly 700,000 French Taxpayer Records Reportedly Stolen in Government Cyberattack appeared first on TechRepublic.

πŸ“– Read more.

πŸ”— Via "Tech Republic"

----------
πŸ‘οΈ Seen on @cibsecurity
❀2
πŸ–‹οΈ Critical GitLab GraphQL Flaw Could Let Unauthenticated Attackers Delete Public Projects πŸ–‹οΈ

GitLab has released security updates to address a critical vulnerability impacting its Community Edition CE and Enterprise Edition EE software that, under certain conditions, could allow an unauthenticated attacker to remotely modify or delete public projects and user data. The flaw, tracked as CVE202619478, has been rated Critical by GitLab and assigned a CVSS score of 9.4. Released on.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Snowflake GitHub Actions Flaw Lets Crafted Issues Trigger Command Injection πŸ–‹οΈ

Cybersecurity researchers at Wiz have disclosed a new GitHub Actions workflow injection vulnerability in Snowflake's public snowflakedbsnowflakeconnectornet repository that it said could be exploited through a crafted GitHub issue to execute commands in a workflow containing internal Jira credentials. The issue was present in .githubworkflowsjiraissue.yml, which ran when a.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Forminator WordPress Flaw Can Enable Unauthenticated RCE via Malicious PHP Uploads πŸ–‹οΈ

A critical security flaw has been disclosed in Forminator Forms, a WordPress plugin with more than 600,000 active installations, that could be exploited to achieve arbitrary code execution on susceptible sites. The vulnerability, tracked as CVE202615748, is rated 9.8 out of 10.0 on the CVSS scoring system. It was discovered and reported by a security researcher who goes by the online alias ".

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Cavern C2 Uses DNS and Google Apps Script to Blend Into Legitimate Traffic πŸ–‹οΈ

Cybersecurity researchers have traced the continued evolution of the Cavern aka Cav3rn commandandcontrol C2 framework used by Iranian nationstate hackers in attacks targeting entities in Israel. Russian cybersecurity company Kaspersky said its ongoing monitoring of the threat activity cluster since December 2025 has led to the discovery of previously unreported components that expand the.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ ⚑ Weekly Recap: VMware Exploits, Windows 0-Day, MCP Attacks, Browser Hijacks and More πŸ–‹οΈ

The expensive attacks are not always the clever ones. This week had plenty of proof. Exposed services got hit, old bugs found fresh use, browser sessions became attack paths, and supplychain problems kept spreading farther than the original compromise. A lot of it came down to access that was already there and defenses that assumed nobody would look too closely. So, nothing magical. Just a.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ How MCP Servers Can Expose Enterprise Secrets πŸ–‹οΈ

MCP servers can expose enterprise secrets through plaintext configuration files, overpermissioned access and prompt injection, often before security teams even know the server is running. As more organizations adopt AI agents into their systems, that exposure can silently become a major gap in MCP server security. The Model Context Protocol MCP allows AI agents to reach the tools and data,.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Unisoc VoLTE Video Call Exploit Chain Can Give Attackers Full Android Kernel Access πŸ–‹οΈ

Security researchers at SSD Secure Disclosure have published a twostage exploit chain that achieves full Android kernel access on devices running Unisoc modem firmware through a VoLTE video call, with no fix from the chipset maker. The advisory, published August 17, 2026, is the second stage of a chain that began in March 2026, when SSD disclosed remote code execution in the.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies πŸ–‹οΈ

Cybersecurity researchers have flagged a previously undocumented Linux botnet family dubbed Evooo1Bot that derives its core functionality from the Mirai botnet source code and is equipped to turn internetfacing devices into SOCKS proxies. "While the malware reuses the DDoS engine from the publicly leaked Mirai source code, it extends the original framework with numerous capabilities, including.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived Ransomware πŸ–‹οΈ

Cybersecurity researchers have attributed the exploitation of a newly patched security flaw in Broadcom VMware vCenter to a suspected Chinanexus advanced persistent threat APT. The attacks involve the exploitation of CVE202659310 CVSS score 9.8, a severe directorytraversal vulnerability in the VMware vCenter server that could be weaponized by a malicious actor to execute arbitrary code.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” UNISOC Modem Flaw Enables Remote Code Execution via Video Calls πŸ“”

UNISOC modem flaw enabled kernellevel code execution through video calls.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” WordPress Plugin Flaw Exposes 40,000 Sites to Admin Takeover πŸ“”

Critical User Profile Builder flaw let unauthenticated attackers access administrator accounts.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity