πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ•΄ 'Understand What You Believe': Fmr. FBI Agent Unpacks Information Threats πŸ•΄

In the past few years, social media has transformed from a communications gold mine to a minefield of disinformation campaigns.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Emerging Long-Range WAN Networks Vulnerable to Hacking, Compromise πŸ•΄

The root keys used to protect communication on LoRaWAN infrastructure can be easily obtained, IOActive says.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ NFL, Multiple NFL Teams' Twitter Accounts Hacked and Hijacked πŸ•΄

Hackers claiming to be from the hacktivist group OurMine temporarily took over Twitter accounts of the NFL and several teams in the league.

πŸ“– Read

via "Dark Reading: ".
⚠ 15 NFL teams’ Twitter hijacked in lead-up to the Super Bowl ⚠

"We are here to show people that everything is hackable," says hacking group OurMine, back to spread its unwelcome spiel on hacked accounts.

πŸ“– Read

via "Naked Security".
❌ Wawa Breach May Have Affected More Than 30 Million Customers ❌

Hefty collection of U.S. and international payment cards from the incident revealed in December found up for sale on dark-web marketplace Joker’s Stash.

πŸ“– Read

via "Threatpost".
⚠ Fraud spike prompts Chrome developer lock-out ⚠

Google Chrome extension developers have been left high and dry for weeks as the company struggles to cope with a spike in fraud on the Chrome Web Store.

πŸ“– Read

via "Naked Security".
⚠ Let’s make ransomware MORE illegal, says Maryland ⚠

… with a clumsily worded proposed bill that wouldn't protect researchers.

πŸ“– Read

via "Naked Security".
πŸ•΄ Why Companies Should Care about Data Privacy Day πŸ•΄

Marking yesterday's 14th anniversary of Europe's first data protection day reminds us how far we still have to go.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Why Threat Hunting Is Not for Everyone πŸ•΄

Threat hunting is a sophisticated, advanced technique that should be reserved for specific instances and be conducted only by trained professionals.

πŸ“– Read

via "Dark Reading: ".
πŸ” Cyberattacks against endpoints rising, reaching $9 million per attack in 2019 πŸ”

Attacks against endpoints have become more costly, up more than $2 million since 2018.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Why Threat Hunting Is Not for Everyone πŸ•΄

Threat hunting is a sophisticated, advanced technique that should be reserved for specific instances and be conducted only by trained professionals.

πŸ“– Read

via "Dark Reading: ".
⚠ Anatomy of a β€œfree” gift – how online surveys can harm your digital health ⚠

Just how much will that Β£1000 "free" gift card cost? We took a look so you don't have to...

πŸ“– Read

via "Naked Security".
⚠ Intel promises fix after researchers reveal β€˜CacheOut’ CPU flaws ⚠

Forget the infamous Meltdown and Spectre chip flaws from 2018, the problem that’s tying down Intel’s patching team these days is a more recent class of side channel vulnerabilities known collectively as ZombieLoad.

πŸ“– Read

via "Naked Security".
πŸ•΄ Businesses Improve Their Data Security, But Privacy - Not So Much πŸ•΄

While the California Consumer Privacy Act will force companies to provide a modicum of meaningful privacy, World Privacy Day still mainly celebrates data security.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Securing Containers with Zero Trust πŸ•΄

A software identity-based approach should become a standard security measure for protecting workloads in all enterprise networks.

πŸ“– Read

via "Dark Reading: ".
❌ Video: Zoom Researcher Details Web Conference Security Risks, 2020 Threats ❌

Maya Horowitz with Check Point Research discussed recently-disclosed Zoom vulnerabilities that could have opened up web conferencing meetings to hackers.

πŸ“– Read

via "Threatpost".
❌ Critical Flaws in Magento e-Commerce Platform Allow Code-Execution ❌

Admins are encouraged to update their websites to stave off attacks from Magecart card-skimmers and others.

πŸ“– Read

via "Threatpost".
πŸ•΄ Pilfered Wawa Payment Card Data Now for Sale on Dark Web πŸ•΄

The Joker's Stash underground marketplace is offering stolen payment card data from Wawa's recently disclosed data breach.

πŸ“– Read

via "Dark Reading: ".
ATENTIONβ€Ό New - CVE-2012-5776

Dokeos 2.1.1 has multiple XSS issues involving "extra_" parameters in main/auth/profile.php.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2012-4383

contao prior to 2.11.4 has a sql injection vulnerability

πŸ“– Read

via "National Vulnerability Database".
⚠ Apple patches critical bugs on iPhone and Mac – update now! ⚠

Get them now before the crooks figure out what to do with the holes.

πŸ“– Read

via "Naked Security".