🛡 Cybersecurity & Privacy 🛡 - News – Telegram
🛡 Cybersecurity & Privacy 🛡 - News
24.4K subscribers
88K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
📢 Two of the world's largest cyber crime forums knocked offline 📢

Two cyber crime forums, Cracked and Nulled, have been taken down as part of a police operation involving international partners.

📖 Read more.

🔗 Via "ITPro"

----------
👁️ Seen on @cibsecurity
📢 Data sovereignty a growing priority for UK enterprises 📢

Many firms view data sovereignty as simply a compliance issue.

📖 Read more.

🔗 Via "ITPro"

----------
👁️ Seen on @cibsecurity
🧠 AI decision-making: Where do businesses draw the line? 🧠

A computer can never be held accountable, therefore a computer must never make a management decision. IBM Training Manual, 1979 Artificial intelligence AI adoption is on the rise. According to the IBM Global AI Adoption Index 2023, 42 of enterprises have actively deployed AI, and 40 are experimenting with the technology. Of those using The post AI decisionmaking Where do businesses draw the line? appeared first on Security Intelligence.

📖 Read more.

🔗 Via "Security Intelligence"

----------
👁️ Seen on @cibsecurity
🖋️ CISA and FDA Warn of Critical Backdoor in Contec CMS8000 Patient Monitors 🖋️

The U.S. Cybersecurity and Infrastructure Security Agency CISA and the Food and Drug Administration FDA have issued alerts about the presence of hidden functionality in Contec CMS8000 patient monitors and Epsimed MN120 patient monitors. The vulnerability, tracked as CVE20250626, carries a CVSS v4 score of 7.7 on a scale of 10.0. The flaw, alongside two other issues, was reported to CISA.

📖 Read more.

🔗 Via "The Hacker News"

----------
👁️ Seen on @cibsecurity
🖋️ Top 5 AI-Powered Social Engineering Attacks 🖋️

Social engineering has long been an effective tactic because of how it focuses on human vulnerabilities. Theres no bruteforce spray and pray password guessing. No scouring systems for unpatched software. Instead, it simply relies on manipulating emotions such as trust, fear, and respect for authority, usually with the goal of gaining access to sensitive information or protected systems.

📖 Read more.

🔗 Via "The Hacker News"

----------
👁️ Seen on @cibsecurity
🖋️ Italy Bans Chinese DeepSeek AI Over Data Privacy and Ethical Concerns 🖋️

Italy's data protection watchdog has blocked Chinese artificial intelligence AI firm DeepSeek's service within the country, citing a lack of information on its use of users' personal data. The development comes days after the authority, the Garante, sent a series of questions to DeepSeek, asking about its data handling practices and where it obtained its training data. In particular, it wanted.

📖 Read more.

🔗 Via "The Hacker News"

----------
👁️ Seen on @cibsecurity
🖋️ Google Bans 158,000 Malicious Android App Developer Accounts in 2024 🖋️

Google said it blocked over 2.36 million policyviolating Android apps from being published to the Google Play app marketplace in 2024 and banned more than 158,000 bad developer accounts that attempted to publish such harmful apps. The tech giant also noted it prevented 1.3 million apps from getting excessive or unnecessary access to sensitive user data during the time period by working with.

📖 Read more.

🔗 Via "The Hacker News"

----------
👁️ Seen on @cibsecurity
📔 Threat Actors Target Public-Facing Apps for Initial Access 📔

Cisco Talos found that exploitation of publicfacing applications made up 40 of incidents it observed in Q4 2024, marking a notable shift in initial access techniques.

📖 Read more.

🔗 Via "Infosecurity Magazine"

----------
👁️ Seen on @cibsecurity
📔 Tata Technologies Hit by Ransomware Attack 📔

The Indian tech giant temporarily suspended some of its IT services, which have now been restored.

📖 Read more.

🔗 Via "Infosecurity Magazine"

----------
👁️ Seen on @cibsecurity
🕵️‍♂️ Can AI & the Cyber Trust Mark Rebuild Endpoint Confidence? 🕵️‍♂️

The Cyber Trust Mark has the potential to change how we define and measure security at the endpoint level. But potential isn't enough.

📖 Read more.

🔗 Via "Dark Reading"

----------
👁️ Seen on @cibsecurity
🕵️‍♂️ State Data Privacy Regulators Are Coming. What Story Will You Tell Them? 🕵️‍♂️

Regulators are ready to enforce new state data privacy laws. Here's how experts say organizations can stay compliant and avoid penalties.

📖 Read more.

🔗 Via "Dark Reading"

----------
👁️ Seen on @cibsecurity
🤔1
🕵️‍♂️ Tenable to Acquire Vulcan Cyber to Boost Exposure Management Focus 🕵️‍♂️

The deal, expected to close this quarter, will give Tenable One Exposure Management muchneeded integration with over 100 thirdparty security tools and platforms.

📖 Read more.

🔗 Via "Dark Reading"

----------
👁️ Seen on @cibsecurity
🕵️‍♂️ Code-Scanning Tool's License at Heart of Security Breakup 🕵️‍♂️

Nine application security toolmakers band together to fork the popular Semgrep codescanning project, touching off a controversy over access to features and fairness.

📖 Read more.

🔗 Via "Dark Reading"

----------
👁️ Seen on @cibsecurity
♟️ FBI, Dutch Police Disrupt ‘Manipulaters’ Phishing Gang ♟️

The FBI and authorities in The Netherlands this week seized a number of servers and domains for a hugely popular spam and malware dissemination service operating out of Pakistan. The proprietors of the service, who use the collective nickname "The Manipulaters," have been the subject of three stories published here since 2015. The FBI said the main clientele are organized crime groups that try to trick victim companies into making payments to a third party.

📖 Read more.

🔗 Via "Krebs on Security"

----------
👁️ Seen on @cibsecurity
🕵️‍♂️ DoJ Shutters Cybercrime Forums Behind Attacks on 17M Americans 🕵️‍♂️

The "Cracked" and "Nulled" Dark Web sites are now offline, along with the Pakistani "Saim Raza" network of underground forums aka HeartSender.

📖 Read more.

🔗 Via "Dark Reading"

----------
👁️ Seen on @cibsecurity
🕵️‍♂️ Community Health Center Data Breach Affects 1M Patients 🕵️‍♂️

The CHC remains operational, but a host of personal data is now in the hands of a "skilled cybercriminal," it said.

📖 Read more.

🔗 Via "Dark Reading"

----------
👁️ Seen on @cibsecurity
🕵️‍♂️ DeepSeek Jailbreak Reveals Its Entire System Prompt 🕵️‍♂️

Now we know exactly how DeepSeek was designed to work, and we may even have a clue toward its highly publicized scandal with OpenAI.

📖 Read more.

🔗 Via "Dark Reading"

----------
👁️ Seen on @cibsecurity
👍1
🖋️ Malvertising Scam Uses Fake Google Ads to Hijack Microsoft Advertising Accounts 🖋️

Cybersecurity researchers have discovered a malvertising campaign that's targeting Microsoft advertisers with bogus Google ads that aim to take them to phishing pages that are capable of harvesting their credentials. "These malicious ads, appearing on Google Search, are designed to steal the login information of users trying to access Microsoft's advertising platform," Jrme Segura, senior.

📖 Read more.

🔗 Via "The Hacker News"

----------
👁️ Seen on @cibsecurity
🖋️ Meta Confirms Zero-Click WhatsApp Spyware Attack Targeting 90 Journalists, Activists 🖋️

Metaowned WhatsApp on Friday said it disrupted a campaign that involved the use of spyware to target journalists and civil society members. The campaign, which targeted around 90 members, involved the use of spyware from an Israeli company known as Paragon Solutions. The attackers were neutralized in December 2024. In a statement to The Guardian, the encrypted messaging app said it has reached.

📖 Read more.

🔗 Via "The Hacker News"

----------
👁️ Seen on @cibsecurity
🤔1
🖋️ U.S. and Dutch Authorities Dismantle 39 Domains Linked to BEC Fraud Network 🖋️

U.S. and Dutch law enforcement agencies have announced that they have dismantled 39 domains and their associated servers as part of efforts to disrupt a network of online marketplaces originating from Pakistan. The action, which took place on January 29, 2025, has been codenamed Operation Heart Blocker. The vast array of sites in question peddled phishing toolkits and fraudenabling tools and.

📖 Read more.

🔗 Via "The Hacker News"

----------
👁️ Seen on @cibsecurity
🖋️ BeyondTrust Zero-Day Breach Exposed 17 SaaS Customers via Compromised API Key 🖋️

BeyondTrust has revealed it completed an investigation into a recent cybersecurity incident that targeted some of the company's Remote Support SaaS instances by making use of a compromised API key. The company said the breach involved 17 Remote Support SaaS customers and that the API key was used to enable unauthorized access by resetting local application passwords. The breach was first flagged.

📖 Read more.

🔗 Via "The Hacker News"

----------
👁️ Seen on @cibsecurity
👍1