[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (108 articles)

|

// AI-powered summary generated at 16:00

> Scam Cryptocurrency Biz Dissolved After Stealing ÂŁ1.5m
XtraderFX used fake celeb endorsements to lure novice investors
> Facebook Privacy Snafu Exposes User Data to Thousands of Apps
Glitch meant 5000 developers continued to receive user information
> Blast from the past: Cross Site Scripting on the AWS Console
Amazon Bug Bounty! Great news: Amazon is now offering bounties via a security vulnerabiltiy research program Bad news: AWS is out of scope! When I read this I remembered that a few years ago I found persistent Cross-Site-Scripting on the AWS Console. This post is a write up on how I found the XSS ba...
> SonicWall Appoints Tristan Bateup as Country Manager for Ireland
Security firm seeks to expand presence and capabilities in the country
> NTT Data Center Subsidiary Settles with FTC in Privacy Spat
RagingWire promoted itself as compliant with the Privacy Shield framework even when it wasn't, the FTC said. Now it has promised not to do that again
> Feedspot ranked 'Embrace the Red' one of the top 15 pentest blogs
I’m excited that Feedspot ranked this blog (Embrace the Red) the number #10 pentest blog out there. Subscribe and check-in regularly for new content related to offensive security engineering, penetration testing and red teaming. You can also follow me on Twitter @wunderwuzzi23. Cheers.
> California's CCPA Gets Enforcement Teeth Today
California is enforcing its consumer privacy protection law after a six-month grace period
> Bitcoin Scammers Use Celebrity Names to Lure Victims
Online criminals are hijacking celebrity names and media brands in a complex multi-stage fraud—but where are they getting their victim data?
> Using built-in OS indexing features for credential hunting
A few months ago we discussed the importance of performing active credential hunting for your organization. This is to ensure clear text credentials in widely accessible locations and source code are identified before an adversary gets a hold of them. In this post we will explore using built-in oper...
> Remote Workers Becoming More Security Conscious Although Bad Habits Persist
Remote workers are becoming more aware of good cybersecurity practices
> Entries Now Open for the 2020 Tech Trailblazers Awards
The awards recognize outstanding early-stage tech companies worldwide
> Le groupe cybercriminel TA505 (22 juin 2020)
Les marqueurs techniques suivants sont associés au groupe cybercriminel TA505 (voir la publication CERTFR-2020-CTI-006). Ils peuvent être utilisés à des fins de recherche de compromission dans des journaux historiques ou de détection. Mise à jour du 10 février 2021 : un nouveau rapport détaillant...
> Malware Uses Postal App Lure to Send SMS Messages and Steal Data
Malware uses postal app lure to steal user details and send SMS messages
> Nominations Open for the Outstanding Security Performance Awards 2021
Awards recognize and reward companies and individuals across the security sector
> Shadowbunny article published in the PenTest Magazine
The Shadowbunny TTP in the PenTest Magazine The latest edition of the PenTest Magazine features an article of mine about using virtual machines (VMs) during lateral movement to establish persistence and evade detections. A few years back when I came up with the idea of using VMs for lateral movement...
> FCC: Huawei and ZTE Are National Security Threat
Designation means telcos can’t use USF to buy Chinese tech
> CIOs Raise the Alarm Over TLS Cert Security Risks
Venafi claims that many underestimate how many are running in their organization
> Advocating for change
As a company, we believe Black lives matter. In the face of continued police brutality, racial disparities in law enforcement, and limited accountability, we demand an end to systemic racism, endorse restrictions on police use of force, and seek greater accountability for police actions. We believe...
> Lawmakers Call on Government to Regulate Social Media
Lords warn of a “pandemic of misinformation”
> Faulty Drivers Fuel ATM Hacking Problem, Say Researchers
Third-party drivers are rendering ATMs and point of sale systems vulnerable to attack, according to new research