🛡 Cybersecurity & Privacy 🛡 - News
25.8K subscribers
89.2K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
🕴 Elaborate Honeypot 'Factory' Network Hit with Ransomware, RAT, and Cryptojacking 🕴

A fictitious industrial company with phony employees personas, website, and PLCs sitting on a simulated factory network fooled malicious hackers - and raised alarms for at least one white-hat researcher who stumbled upon it.

📖 Read

via "Dark Reading: ".
🔐 If you don't like your browser, why won't you change to a different one? 🔐

Commentary: Users tend to stick with their preferred browser even when it works poorly for them.

📖 Read

via "Security on TechRepublic".
🔐 How to use a physical security key to sign into supported websites 🔐

A security key is a good option to use for two-factor authentication when logging into certain websites.

📖 Read

via "Security on TechRepublic".
🔐 Windows 7 remains an albatross at many large organizations 🔐

Among 60,000 large companies analyzed by security ratings company BitSight, almost 90% still have Windows 7 PCs in their environment.

📖 Read

via "Security on TechRepublic".
🕴 Data Awareness Is Key to Data Security 🕴

Traditional data-leak prevention is not enough for businesses facing today's dynamic threat landscape.

📖 Read

via "Dark Reading: ".
Microsoft Zero-Day Actively Exploited, Patch Forthcoming

CVE-2020-0674 is a critical flaw for most Internet Explorer versions, allowing remote code execution and complete takeover.

📖 Read

via "Threatpost".
FTCODE Ransomware Now Steals Chrome, Firefox Credentials

New versions of the ransomware now sniff out saved credentials for Internet Explorer, Mozilla Firefox, Mozilla Thunderbird, Google Chrome and Microsoft Outlook.

📖 Read

via "Threatpost".
🕴 The Y2K Boomerang: InfoSec Lessons Learned from a New Date-Fix Problem 🕴

We all make assumptions. They rarely turn out well. A new/old date problem offers a lesson in why that's so.

📖 Read

via "Dark Reading: ".
🔐 iOS-based devices: Zero-touch management essentials 🔐

Managing multiple devices can be a full-time job. With a few tools in your arsenal, you can optimize mobile devices for zero-touch management.

📖 Read

via "Security on TechRepublic".
Citrix Accelerates Patch Rollout For Critical RCE Flaw

Citrix has issued the first of several updates fixing a critical vulnerability in various versions of its Citrix Application Delivery Controller (ADC) and Citrix Gateway products.

📖 Read

via "Threatpost".
🕴 Nearly 75% of SD-WAN Owners Lack Confidence Post-Digital Transformation 🕴

More businesses think SD-WAN will reduce WAN costs, but only 37% think SD-WANs will help defend against malware and other threats.

📖 Read

via "Dark Reading: ".
🕴 Ransomware Upgrades with Credential-Stealing Tricks 🕴

The latest version of the FTCode ransomware can steal credentials from five popular browsers and email clients.

📖 Read

via "Dark Reading: ".
ATENTION New - CVE-2012-5190

Prizm Content Connect 5.1 has an Arbitrary File Upload Vulnerability

📖 Read

via "National Vulnerability Database".
ATENTION New - CVE-2011-5282

mIRC prior to 7.22 has a message leak because chopping of outbound messages is mishandled.

📖 Read

via "National Vulnerability Database".
ATENTION New - CVE-2011-4336 (tikiwiki_cms/groupware)

Tiki Wiki CMS Groupware 7.0 has XSS via the GET "ajax" parameter to snarf_ajax.php.

📖 Read

via "National Vulnerability Database".
ATENTION New - CVE-2011-4322

websitebaker prior to and including 2.8.1 has an authentication error in backup module.

📖 Read

via "National Vulnerability Database".
ATENTION New - CVE-2011-4095

Jara 1.6 has an XSS vulnerability

📖 Read

via "National Vulnerability Database".
ATENTION New - CVE-2011-4094

Jara 1.6 has a SQL injection vulnerability.

📖 Read

via "National Vulnerability Database".
ATENTION New - CVE-2011-2669

Mozilla Firefox prior to 3.6 has a DoS vulnerability due to an issue in the validation of certificates.

📖 Read

via "National Vulnerability Database".
ATENTION New - CVE-2011-2668

Mozilla Firefox through 1.5.0.3 has a vulnerability in processing the content-length header

📖 Read

via "National Vulnerability Database".