> TODAY'S SUMMARY (1 articles)
Today's cybersecurity news highlights several key trends and threats. Ransomware attacks continue to rise, with a notable increase in targeted phishing campaigns exploiting current events. Zero-day vulnerabilities are being actively exploited across multiple platforms, emphasizing the need for timely patching. Additionally, increased attention is given to supply chain attacks, as threat actors seek to compromise third-party vendors. Organizations are urged to enhance their security posture through regular training and incident response planning. Lastly, the importance of multi-factor authentication (MFA) remains paramount in mitigating unauthorized access attempts.
|
// AI-powered summary generated at 04:00
Complaints received over “one of the worst” online vaccination portals in the United States
Hoosier State notifying 750K residents that COVID-19 contact tracing survey data has been breached
This post is part of the machine learning attack series.
It’s been a while that I did a Husky AI and offensive machine learning related post. This weekend I had some time to try out Counterfit. My goal was to understand what Counterfit is, how it works, and use it to turn Shadowbunny into a husky.
L...
Government wants third parties to “design out” vulnerabilities
Ransomware actors may have compromised employee information
Each month we publish numerous new articles and known issues to the WatchGuard Knowledge Base. Here is the new content published in July:
Articles
Users cannot log in to Outlook with AuthPoint MFA
Configure HTTPS Content Inspection for Exchange Server with Outlook Web Access
AuthPoint does not sync...
FBI-administered list contained nearly two million records
Advocacy group against discriminatory surveillance accuses Congress of funding “racist policing tech”
I like using procdump on Windows.
It’s quite handy for software development when systems have memory leaks or performance issues, procdump allows to set thresholds to trigger creation of a core dump.
BUT, it’s also super useful to search processes for secrets and other information.
For instance, thi...
Communications company looking into claims that personal data of 100 million users has been compromised
Chocolate maker’s Heart the Hate campaign implores individuals to take action against online abuse
Summary The NPU device’s kernel driver implements a set of ioctl handlers one of which uses unsanitized user data as an index into a function pointer array. The user provided values can exceed the boundaries of the legitimate array and might cause user controlled values to be called as function poin...
Over two-thirds of all scam texts were purportedly from delivery firms, according to new data
Skills gaps, inventory issues and funding shortfalls add to security headaches
Summary The NPU device’s kernel driver implements a custom mmap handler that exposes trusted kernel data to user space. These exposed structures contain sensitive data, including kernel pointers, which can be controlled by a user process. The content of these structures is inherently trusted by the...
Microsoft reveals another dynamic email threat campaign
IS-supporting media outlets offering encryption advice to supporters
Summary Due to a bug in the way mappings are closed it is possible to free a kmallocated memory chunk arbitrary times. This vulnerability can be used to craft a use after free scenario against any kernel structure that is allocated from the kmalloc-64 cache. There is rich public literature on how su...
Computer vision technology firm Voyage81 acquired by American beauty company for $40M
White House memo gives federal agencies 60 days to identify critical software and one year to secure it