πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ•΄ China-Based Cyber Espionage Group Reportedly Behind Breach at Mitsubishi Electric πŸ•΄

Personal data on over 8,100 individuals and confidential business information likely exposed in June 2019 incident.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ FireEye Buys Cloudvisory πŸ•΄

The purchase is intended to bring new cloud capabilities to the FireEye Helix security platform.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ New Ransomware Tactic Shows How Windows EFS Can Aid Attackers πŸ•΄

Researchers have discovered how ransomware can take advantage of the Windows Encrypting File System, prompting security vendors to release patches.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Microsoft, DHS Warn of Zero-Day Attack Targeting IE Users πŸ•΄

Software firm is "aware of limited targeted attacks" exploiting a scripting issue vulnerability in Internet Explorer 9, 10, and 11 that previously has not been disclosed.

πŸ“– Read

via "Dark Reading: ".
❌ 16Shop Phishing Gang Goes After PayPal Users ❌

A sophisticated malware-as-a-service phishing kit includes full customer service and anti-detection technologies.

πŸ“– Read

via "Threatpost".
πŸ” Bug bounties won't make you rich (but you should participate anyway) πŸ”

Commentary: There's a lot of hype about bug bounties, but here's some truth.

πŸ“– Read

via "Security on TechRepublic".
⚠ Nobody boogies quite like you ⚠

Our unique dancing style can be used by a machine-learning model to ID us, regardless of musical genre. Unless it's Metal. We all headbang.

πŸ“– Read

via "Naked Security".
⚠ Regus spills data of 900 staff on Trello board set to β€˜public’ ⚠

Another company has ended up accidentally spilling sensitive data from business collaboration tool Trello.

πŸ“– Read

via "Naked Security".
⚠ NIST’s new privacy rules – what you need to know ⚠

How do you ensure you're compliant with privacy regulations? NIST has released a Privacy Framework to help you get your house in order.

πŸ“– Read

via "Naked Security".
⚠ Ubisoft sues DDoS-for-hire operators for ruining game play ⚠

The network of sites and services run by the alleged operators target the Rainbow Six Siege game, selling attacks to cheating players.

πŸ“– Read

via "Naked Security".
❌ PoC Exploits Do More Good Than Harm: Threatpost Poll ❌

More than half of security experts think that the good outweighs the bad when it comes to proof-of-concept exploits, according to a recent Threatpost poll.

πŸ“– Read

via "Threatpost".
❌ New Muhstik Botnet Attacks Target Tomato Routers ❌

Palo Alto Networks’ Unit 42 researchers observed a variant of the wormlike botnet that adds scanner technology to brute-force Web authentication.

πŸ“– Read

via "Threatpost".
πŸ•΄ Cybersecurity Lessons Learned from 'The Rise of Skywalker' πŸ•΄

They're especially relevant regarding several issues we face now, including biometrics, secure data management, and human error with passwords.

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2011-4943

ImpressPages CMS v1.0.12 has Unspecified Remote Code Execution (fixed in v1.0.13)

πŸ“– Read

via "National Vulnerability Database".
πŸ” Email malware targets U.S. senator and military πŸ”

The cybercriminals behind the powerful banking malware have turned their attention to government targets like Sen. Cory Booker.

πŸ“– Read

via "Security on TechRepublic".
❌ Microsoft Leaves 250M Customer Service Records Open to the Web ❌

The trove of information is potentially a scammer's bonanza.

πŸ“– Read

via "Threatpost".
❌ sLoad Malware Revamped as Powerful β€˜StarsLord’ Loader ❌

The newest version of the sLoad malware dropper comes equipped with infection tracking capabilities and an anti-analysis trick.

πŸ“– Read

via "Threatpost".
πŸ›  Logwatch 7.5.3 πŸ› 

Logwatch analyzes and reports on unix system logs. It is a customizable and pluggable log monitoring system which will go through the logs for a given period of time and make a customizable report. It should work right out of the package on most systems.

πŸ“– Go!

via "Security Tool Files β‰ˆ Packet Storm".
πŸ•΄ Startup Privafy Raises $22M with New Approach to Network Security πŸ•΄

The company today disclosed an approach to data security designed to protect against modern threats at a lower cost than complex network tools.

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2011-3610

A Cross-site Scripting (XSS) vulnerability exists in the Serendipity freetag plugin before 3.30 in the tagcloud parameter to plugins/serendipity_event_freetag/tagcloud.swf.

πŸ“– Read

via "National Vulnerability Database".