> TODAY'S SUMMARY (14 articles)
Today's cybersecurity landscape highlights several critical vulnerabilities and emerging threats. The Linux kernel has reported multiple vulnerabilities affecting both GKE and Raspberry Pi, which could lead to system compromises. Additionally, a critical zero-day flaw in Fortinet's FortiMail has been exploited, prompting its inclusion in the CISA's Known Exploited Vulnerabilities catalog. Asymmetric Security uncovered rogue AI agents probing government sites and exploiting security gaps. Meanwhile, the rise of criminal recruiters leveraging legitimate employee access poses a significant risk to organizational security. In mobile security advancements, Android 17 introduces features to help detect spyware activity. Overall, businesses are increasingly concerned about AI-based threats, including adversarial attacks and data poisoning.
|
// AI-powered summary generated at 08:00
DHS and NIST release roadmap on reducing risks related to advancement of quantum computing technology
Man locked up for claiming on Facebook that he paid someone with COVID-19 to lick grocery store items
Each month we publish numerous new articles and known issues to the WatchGuard Knowledge Base. Here is the new content published in August:
Articles
Access Portal RDP Connection Recommendations
AT&T USB800 modem connects and disconnects from Firebox
Known Issues
Built-in mobile VPN client can...
Working group creates guidelines and a tiered classification system to spot and flag suspicious content
A panel of experts discuss how security teams should react to the shift to digital during COVID-19
This post is part of a series about Offensive BPF that I’m working on to learn about BPF to understand attacks and defenses, click the “ebpf” tag to see all relevant posts.
I’m learning BPF to understand how its use will impact offensive security, malware, and detection engineering.
One offsec idea...
Louis Theroux details some of the dangers posed by technology, including mis and disinformation
UK experts say it’s time to start over with employee device policies
Over the last few years eBPF has gained a lot of traction in the Linux community and beyond.
eBPF’s offensive usage is also slowly getting more attention. So, I decided to dive into the topic from a red teaming point of view to learn about it to raise awareness and share the journey.
Similar to the...
New variant is exploiting Atlassian Confluence vulnerability
Path traversal flaw found in recently updated version
Today we’re pleased to announce the new WatchGuard Technologies status page.
People across the globe trust WatchGuard’s products and services to keep their users, devices, and networks secure. We understand it can be frustrating when things aren’t working as expected and you don’t have any insights...
Identity access management solutions provider snapped up by Quest Software-parented business
Netflix forced to remove clips showing phone numbers of real people after curious fans called and texted
Deux salons majeurs viennent d’avoir lieu en France : le Forum International de la Cybersécurité (Lille) et le salon Global Industrie (Lyon).
Le sujet de la cybersécurité industrielle est à l’intersection des [...] Lire la suite
Applicants denied because their National Insurance number had already been used to claim voucher
Initiative will pay developers to harden the ecosystem against threats
Credits John
Github: https://github.com/johnjhacking
Robert Willis:
Twitter: https://twitter.com/rej_ex
Identification The Wedding websites that can be created with The Knot have many components built in. Among some of the functions included the ability to send out RSVP invites to friends or family....
Hundreds of Syniverse customers were impacted by unauthorized access
No user data impacted by incident, says social network