πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ” Join Digital Guardian at RSA Conference 2020! πŸ”

RSA 2020 is around the corner! Learn what Digital Guardian has planned at booth S935 and elsewhere for the week.

πŸ“– Read

via "Subscriber Blog RSS Feed ".
ATENTIONβ€Ό New - CVE-2012-3351

Multiple cross-site scripting (XSS) vulnerabilities in LongTail Video JW Player through 5.10.2295 allow remote attackers to inject arbitrary web script or HTML via the (1) link, (2) logo.link, or (3) aboutlink parameter, or a nested URI scheme name for (4) javascript, (5) asfunction, or (6) vbscript.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2012-2599

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2012-3835. Reason: This issue was MERGED into CVE-2012-3835 in accordance with CVE content decisions, because it is the same type of vulnerability and affects the same versions. Notes: All CVE users should reference CVE-2012-3835 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2011-4915

fs/proc/base.c in the Linux kernel through 3.1 allows local users to obtain sensitive keystroke information via access to /proc/interrupts.

πŸ“– Read

via "National Vulnerability Database".
ATENTIONβ€Ό New - CVE-2011-0699

Integer signedness error in the btrfs_ioctl_space_info function in the Linux kernel 2.6.37 allows local users to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via a crafted slot value.

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ Ransomware Damage Hit $11.5B in 2019 πŸ•΄

A new report shows the scale of ransomware's harm and the growth of that damage year-over-year -- an average of $141,000 per incident.

πŸ“– Read

via "Dark Reading: ".
πŸ•΄ Microsoft Announces General Availability of Threat Protection, Insider Risk Management πŸ•΄

Microsoft made several security announcements ahead of RSA Conference, including its decision to bring Microsoft Defender to iOS and Android.

πŸ“– Read

via "Dark Reading: ".
⚠ ISS World β€œmalware attack” leaves employees offline ⚠

A global facilities company with half-a-million staff has shuttered most of its IT systems after a malware attack.

πŸ“– Read

via "Naked Security".
πŸ›  nfstream 3.2.0 πŸ› 

nfstream is a Python package providing fast, flexible, and expressive data structures designed to make working with online or offline network data both easy and intuitive. It aims to be the fundamental high-level building block for doing practical, real world network data analysis in Python. Additionally, it has the broader goal of becoming a common network data processing framework for researchers providing data reproducibility across experiments.

πŸ“– Go!

via "Security Tool Files β‰ˆ Packet Storm".
❌ Google Bans 600 Android Apps for Obnoxious Ads ❌

The Google Play apps violated the tech behemoth's disruptive advertising policies.

πŸ“– Read

via "Threatpost".
ATENTIONβ€Ό New - CVE-2012-5236

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ Popular Mobile Document-Management Apps Put Data at Risk πŸ•΄

Most iOS and Android apps that Cometdocs has published on Google and Apple app stores transmit entire documents - unencrypted.

πŸ“– Read

via "Dark Reading: ".
πŸ€ͺπŸ’Έ SPECIAL OFFER! πŸ’ΈπŸ€ͺ

 CYBERSECURITY 2020 by WILEY 😈

β˜‘οΈ Secure yourself a new bundle of cybersecurity ebooks! Get ebooks like Cryptography Engineering: Design Principles and Practical Applications, Reversing: Secrets of Reverse Engineering, Social Engineering: The Science of Human Hacking, and more.

β–ͺ️ $959 Worth of awesome ebooks & videos β–ͺ️
▫️ Pay $1 or more ▫️
β–ͺ️ DRM-Free β–ͺ️
▫️ Multi-format ▫️
πŸ” AT&T bails on RSA: How the coronavirus is disrupting tech conferences worldwide πŸ”

RSA, MWC and Facebook are the latest tech trade shows impacted by the Novel Coronavirus (COVID-19). Here's what you need to know.

πŸ“– Read

via "Security on TechRepublic".
⚠ Washington state Senate passes bill to rein in facial recognition ⚠

The bill now goes to the House, which has a stiffer competing bill pending that would call for a 3.5 year moratorium.

πŸ“– Read

via "Naked Security".
⚠ Adobe fixes critical flaws in Media Encoder and After Effects ⚠

After fixing a pile of critical security flaws as part of last week’s Patch Tuesday, Adobe has raised two more needing urgent attention.

πŸ“– Read

via "Naked Security".
❌ Haken Malware Family Infests Google Play Store ❌

Eight apps - mostly camera utilities and children's games - were discovered spreading a new malware strain that steals data and signs victims up for expensive premium services.

πŸ“– Read

via "Threatpost".
⚠ Data of 10.6m MGM hotel guests posted for sale on Dark Web forum ⚠

The data dump apparently included PII for Justin Bieber and Jack Dorsey.

πŸ“– Read

via "Naked Security".
πŸ•΄ Security Now Merges With Dark Reading πŸ•΄

Readers of Security Now will join the Dark Reading community, gaining access to a wide range of cybersecurity content.

πŸ“– Read

via "Dark Reading: ".
⚠ US and UK call out Russian hackers for Georgia attacks ⚠

The US and UK governments have both accused Russia of launching a cyber attack against the Georgian government last year.

πŸ“– Read

via "Naked Security".
⚠ Larry Tesler, of copy-and-paste fame, dies at 74 ⚠

Larry Tesler, the computing pioneer who insisted that user interfaces should be both comfortable *and* consistent, has died aged 74.

πŸ“– Read

via "Naked Security".