πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.9K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
❌ Community Housing Nonprofit Hit with $1.2M Loss in BEC Scam ❌

Red Kite said that domain-spoofing and convincing scam emails claiming to be from suppliers were the cause.

πŸ“– Read

via "Threatpost".
πŸ•΄ SharePoint Bug Proves Popular Weapon for Nation-State Attacks πŸ•΄

Thousands of servers could be exposed to SharePoint vulnerability CVE-2019-0604, recently used in cyberattacks against Middle East government targets.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ 8 of the 10 Most Exploited Bugs Last Year Involved Microsoft Products πŸ•΄

Six of them were the same as from the previous year, according to new Recorded Future analysis.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Companies Pursue Zero Trust, but Implementers Are Hesitant πŸ•΄

Almost three-quarters of enterprises plan to have a zero-trust access model by the end of the year, but nearly half of cybersecurity professionals lack the knowledge to implement the right technologies, experts say.

πŸ“– Read

via "Dark Reading: ".
πŸ” Why certain companies are more heavily targeted by DDoS attacks πŸ”

Most of the targets in 2019 were in the gaming and gambling industries, says security company Imperva.

πŸ“– Read

via "Security on TechRepublic".
πŸ” How to protect your organization from infrastructure as code security risks πŸ”

Infrastructure as code offers advantages in automating your data center management but also carries certain risks, says Unit 42, the global threat intelligence team at Palo Alto Networks.

πŸ“– Read

via "Security on TechRepublic".
❌ Gamaredon APT Improves Toolset to Target Ukraine Government, Military ❌

The Gamaredon advanced persistent threat (APT) group has been supercharging its operations lately, improving its toolset and ramping up attacks on Ukrainian national security targets. Vitali Kremez, head of SentinelLabs, said in research released on Wednesday that he has been tracking an uptick in Gamaredon cyberattacks on Ukrainian military and security institutions that started in […]

πŸ“– Read

via "Threatpost".
⚠ Twitter admits to raid on users’ phone numbers ⚠

It relates to Twitter’s contact upload feature, which allows users to find others via contact info such as email or phone number.

πŸ“– Read

via "Naked Security".
⚠ Critical Android flaws patched in February bulletin ⚠

Google has patched Android bugs that include a couple of critical flaws that could let hackers run their own code on the mobile operating system.

πŸ“– Read

via "Naked Security".
⚠ Facebook will let parents see kids’ chat history, peer into inbox ⚠

It's revamping Messenger Kids with new parental controls and updated information on its children’s data policy.

πŸ“– Read

via "Naked Security".
⚠ Someone else may have your videos, Google tells users ⚠

As the well-worn internet saying goes - there is no cloud, it’s just someone else’s computer.

πŸ“– Read

via "Naked Security".
πŸ” How to defend your organization against the latest malware, botnets and security exploits πŸ”

Though the fourth quarter of 2019 saw a decrease in malicious activity, threats such as the Emotet malware continued to thrive, says Nuspire.

πŸ“– Read

via "Security on TechRepublic".
πŸ•΄ Hiring Untapped Security Talent Can Transform the Industry πŸ•΄

Cybersecurity needs unconventional hires to help lead the next phase of development and innovation, coupled with salaries that aren't insulting

πŸ“– Read

via "Dark Reading: ".
πŸ” Report: Smart bulbs have a major security problem πŸ”

Many Philips Hue smart light bulbs have a firmware flaw that leads hackers into an entire network, Check Point Research found.

πŸ“– Read

via "Security on TechRepublic".
❌ Critical Cisco β€˜CDPwn’ Flaws Break Network Segmentation ❌

Cisco has released patches to address the five vulnerabilities, which could lead to remote code-execution and denial of service.

πŸ“– Read

via "Threatpost".
❌ Critical Cisco β€˜CDPwn’ Protocol Flaws Explained: Podcast ❌

The researcher behind the five critical Cisco flaws, collectively called CDPwn, talks about why Layer 2 protocols are under-researched when it comes to security vulnerabilities.

πŸ“– Read

via "Threatpost".
❌ WhatsApp Bug Allows Malicious Code-Injection, One-Click RCE ❌

A high-severity vulnerability could allow cybercriminals to push malware or remotely execute code, using seemingly innocuous messages.

πŸ“– Read

via "Threatpost".
ATENTIONβ€Ό New - CVE-2013-0507

IBM InfoSphere Information Server 8.1, 8.5, 8.7, 9.1 has a Session Fixation Vulnerability

πŸ“– Read

via "National Vulnerability Database".
⚠ PayPal SMS scams – don’t fall for them! ⚠

Text messages may be old hat - but SMS is still a handy tool for crooks out to find more about you.

πŸ“– Read

via "Naked Security".
⚠ Coronavirus β€œsafety measures” email is a phishing scam ⚠

Sadly, cybercrooks love a crisis, because it gives them a believable reason to contact you with a phishing scam. Take care out there!

πŸ“– Read

via "Naked Security".
❌ New Lemon Duck Malware Campaign Targets IoT, Large Manufacturers ❌

Malware campaign targets global manufacturers that are still dependent on Windows 7 subsystems to run fleets of IoT endpoints.

πŸ“– Read

via "Threatpost".