πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.9K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ›  SQLMAP - Automatic SQL Injection Tool 1.4.2 πŸ› 

sqlmap is an open source command-line automatic SQL injection tool. Its goal is to detect and take advantage of SQL injection vulnerabilities in web applications. Once it detects one or more SQL injections on the target host, the user can choose among a variety of options to perform an extensive back-end database management system fingerprint, retrieve DBMS session user and database, enumerate users, password hashes, privileges, databases, dump entire or user's specified DBMS tables/columns, run his own SQL statement, read or write either text or binary files on the file system, execute arbitrary commands on the operating system, establish an out-of-band stateful connection between the attacker box and the database server via Metasploit payload stager, database stored procedure buffer overflow exploitation or SMB relay attack and more.

πŸ“– Go!

via "Security Tool Files β‰ˆ Packet Storm".
πŸ” Phishing tournament finds employees falling prey to malicious emails πŸ”

The Gone Phishing Tournament tested how susceptible people are to opening fraudulent emails and entering their login information.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ How Enterprises Are Developing and Maintaining Secure Applications πŸ•΄

The concept of application security is well known, but application security testing and remediation processes remain unbalanced. Most organizations are confident in their approach to AppSec, although others seem to have no approach at all. Read this report to find out more.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Coronavirus Phishing Attack Infects US, UK Inboxes πŸ•΄

Cybercriminals capitalize on fears of a global health emergency with phishing emails claiming to offer advice for protecting against coronavirus.

πŸ“– Read

via "Dark Reading: ".
❌ Tesla Autopilot Duped By β€˜Phantom’ Images ❌

Researchers were able to fool popular autopilot systems into perceiving projected images as real - causing the cars to brake or veer into oncoming traffic lanes.

πŸ“– Read

via "Threatpost".
πŸ” 3D map shows how the coronavirus spread worldwide πŸ”

A UN aviation agency uses GIS software to track transmission lines while 20 US airports set up screening centers.

πŸ“– Read

via "Security on TechRepublic".
πŸ” Facebook's $550M Biometric Settlement Is a Data Privacy Law Landmark πŸ”

The settlement, one of the highest in US history, is a testament to robust privacy legislation.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
❌ AZORult Campaign Adopts Novel Triple-Encryption Technique ❌

Popular trojan is sneaking its way onto PCs via malspam campaign that uses three levels of encryption to sneak past cyber defenses.

πŸ“– Read

via "Threatpost".
πŸ•΄ Attackers Actively Targeting Flaw in Door-Access Controllers πŸ•΄

There's been a sharp increase in scans for vulnerable Nortek Linear Emerge E3 systems, SonicWall says.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Researchers Find 24 'Dangerous' Android Apps with 382M Installs πŸ•΄

Shenzhen Hawk Internet Co. is identified as the parent company behind five app developers seeking excessive permissions in Android apps.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ C-Level & Studying for the CISSP πŸ•΄

One CTO tells us about his belated pursuit of a foundational infosecurity certification -- why he wanted it and what it took.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ EKANS Ransomware Raises Industrial-Control Worries πŸ•΄

Although the ransomware is unsophisticated, the malware does show that some crypto-attackers are targeting certain industrial control products.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Bad Certificate Knocks Teams Off Line πŸ•΄

Microsoft allowed a certificate to expire, knocking the Office 365 version of Teams offline for almost an entire day.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Bad Certificate Knocks Teams Offline πŸ•΄

Microsoft allowed a certificate to expire, knocking the Office 365 version of Teams offline for almost an entire day.

πŸ“– Read

via "Dark Reading: ".
⚠ Google’s Super Bowl ad will make you cry. Or wince. ⚠

Google's Super Bowl ad featured an elderly man's voice as he asked Google Assistant to help him remember details about his late wife.

πŸ“– Read

via "Naked Security".
⚠ Twitter gave access to student’s account to his college ⚠

Twitter admitted it broke the rules when it handed over control of the student's account to college administrators.

πŸ“– Read

via "Naked Security".
⚠ NIST tests methods of recovering data from smashed smartphones ⚠

Criminals have found to their cost that reducing a device to a pile of rubble means nothing if the internal chips are still in working order.

πŸ“– Read

via "Naked Security".
πŸ” 4 key trends to hit the cybersecurity industry in 2020 πŸ”

Get ready for consolidation risk, microbreaches, and other cybersecurity hazards, warn experts from Mimecast, the Cyber Resilience Think Tank.

πŸ“– Read

via "Security on TechRepublic".
❌ Twitter API Abused to Uncover User Identities ❌

State-sponsored actors may have been behind the social media abuse, said Twitter.

πŸ“– Read

via "Threatpost".
πŸ•΄ What WON'T Happen in Cybersecurity in 2020 πŸ•΄

Predictions are a dime a dozen. Here are six trends that you won't be hearing about anytime soon.

πŸ“– Read

via "Dark Reading: ".