Latest CyberSec News by @thecyberpicker

Latest CyberSec News by @thecyberpicker

29738 bookmarks
Custom sorting
FTC finalizes order requiring GoDaddy to secure hosting services
FTC finalizes order requiring GoDaddy to secure hosting services
The Federal Trade Commission (FTC) has finalized an order requiring web hosting giant GoDaddy to secure its services to settle charges of data security failures that led to several data breaches since 2018.
·bleepingcomputer.com·
FTC finalizes order requiring GoDaddy to secure hosting services
Who's Patching Your Network?
Who's Patching Your Network?
This week in cybersecurity from the editors at Cybercrime Magazine
·cybersecurityventures.com·
Who's Patching Your Network?
Hidden AWS Risks: Securing Overlooked Resources | CSA
Hidden AWS Risks: Securing Overlooked Resources | CSA
Neglected AWS resources like S3 buckets and IAM roles can become hacker entry points. Learn how to spot and secure hidden cloud vulnerabilities.
·cloudsecurityalliance.org·
Hidden AWS Risks: Securing Overlooked Resources | CSA
Stalkerware apps go dark after data breach
Stalkerware apps go dark after data breach
A stalkerware company that recently leaked millions of users' personal information online has taken all of its assets offline without any explanation.
·malwarebytes.com·
Stalkerware apps go dark after data breach
The Voter Experience - Schneier on Security
The Voter Experience - Schneier on Security
Technology and innovation have transformed every part of society, including our electoral experiences. Campaigns are spending and doing more than at any other time in history. Ever-growing war chests fuel billions of voter contacts every cycle. Campaigns now have better ways of scaling outreach methods and offer volunteers and donors more efficient ways to contribute time and money. Campaign staff have adapted to vast changes in media and social media landscapes, and use data analytics to forecast voter turnout and behavior. Yet despite these unprecedented investments in mobilizing voters, overall trust in electoral health, democratic institutions, voter satisfaction, and electoral engagement has significantly declined. What might we be missing?...
·schneier.com·
The Voter Experience - Schneier on Security
Signal now blocks Microsoft Recall screenshots on Windows 11
Signal now blocks Microsoft Recall screenshots on Windows 11
​Signal has updated its Windows app to protect users' privacy by blocking Microsoft's AI-powered Recall feature from taking screenshots of their conversations.
·bleepingcomputer.com·
Signal now blocks Microsoft Recall screenshots on Windows 11
SHARED INTEL Q&A: Visibility, not volume — reframing detection for the AI-enabled SOC
SHARED INTEL Q&A: Visibility, not volume — reframing detection for the AI-enabled SOC
For years, network security has revolved around the perimeter: firewalls, antivirus, endpoint controls. But as attackers grow more sophisticated — and as operations scatter to the cloud, mobile, and IoT — it’s increasingly what happens inside the network that counts. Related: The NDR evolution story Enter Network Detection and Response (NDR) — a space once
·lastwatchdog.com·
SHARED INTEL Q&A: Visibility, not volume — reframing detection for the AI-enabled SOC
Unpatched critical bugs in Versa Concerto lead to auth bypass, RCE
Unpatched critical bugs in Versa Concerto lead to auth bypass, RCE
Critical vulnerabilities in Versa Concerto that are still unpatched could allow remote attackers to bypass authentication and execute arbitrary code on affected systems.
·bleepingcomputer.com·
Unpatched critical bugs in Versa Concerto lead to auth bypass, RCE
Anthropic web config hints at Claude Sonnet 4 and Opus 4
Anthropic web config hints at Claude Sonnet 4 and Opus 4
Anthropic is secretly working on two new models called Claude Sonnet 4 and Opus 4, which are believed to be the company's most advanced AI models.
·bleepingcomputer.com·
Anthropic web config hints at Claude Sonnet 4 and Opus 4
OpenAI hints at a big upgrade for ChatGPT Operator Agent
OpenAI hints at a big upgrade for ChatGPT Operator Agent
ChatGPT's Operator, which is still in research preview, will soon become a "very useful tool," according to Jerry Tworek, VP of Research at OpenAI.
·bleepingcomputer.com·
OpenAI hints at a big upgrade for ChatGPT Operator Agent
Critical Samlify SSO flaw lets attackers log in as admin
Critical Samlify SSO flaw lets attackers log in as admin
A critical Samlify authentication bypass vulnerability has been discovered that allows attackers to impersonate admin users by injecting unsigned malicious assertions into legitimately signed SAML responses.
·bleepingcomputer.com·
Critical Samlify SSO flaw lets attackers log in as admin
Russian hackers breach orgs to track aid routes to Ukraine
Russian hackers breach orgs to track aid routes to Ukraine
A Russian state-sponsored cyberespionage campaign attributed to APT28 (Fancy Bear/Forest Blizzard) hackers has been targeting and compromising international organizations since 2022 to disrupt aid efforts to Ukraine.
·bleepingcomputer.com·
Russian hackers breach orgs to track aid routes to Ukraine