> TODAY'S SUMMARY (22 articles)
Today's cybersecurity news highlights several key issues:
1. Two former US Air Force members have been sentenced for running a million-dollar Business Email Compromise (BEC) scheme while in service.
2. A critical zero-day vulnerability in Citrix NetScaler is being actively exploited, with custom web shells identified for gaining root access.
3. High-severity vulnerabilities have been patched in popular cryptographic libraries OpenSSL and WolfSSL, emphasizing the need for timely updates.
4. A new variant of the Spectre attack has emerged, capable of stealing Linux root password hashes in under five minutes.
5. The EU Cyber Resilience Act will impose mandatory cybersecurity requirements starting December 2024, impacting digital products significantly.
These incidents underscore the ongoing threats in both exploitations of software vulnerabilities and advanced persistent threats.
|
// AI-powered summary generated at 08:01
New legislation and court rulings have changed the privacy environment for US businesses
Attacks becoming larger, criminals smarter and intrusions longer
Today FireEye shared that they were victim of a cyberattack and internal red teaming tooling was accessed by adversaries. More details in this NYT article.
This reminded me that I wanted to do a post on actively protecting pen testers and pen testing assets for a while.
Against persistent adversarie...
Accidental and deliberate employee activity causing chaos
Black Hat Europe opens with Jeff Moss talking about government acceptance of hacker research and opinions
Each month we publish numerous new articles and known issues to the WatchGuard Knowledge Base. Here is the new content published in November:
Articles
Firebox Cloud supports accelerated networking in Azure
Known Issues
IKEv2 profile import fails on macOS Big Sur 11.0.1
DHCPv6 server restarts repe...
Only nine critical bugs to fix before the holiday season
Experts suggest they could be repurposed in government attacks
On 1 December 2020, the TDR EU AWS environment suffered from an intermittent outage which resulted in some Host Sensors being unable to contact ThreatSync. This seems to be linked to the deployment of new TDR infrastructure on the night of 30 November 2020. Despite Engineering's extensive efforts, t...
Judge rules Brit accused of hacking hundreds of webcams shouldn't face charges in the US
Montana healthcare provider tries to resolve lawsuit filed on behalf of victims of 2019 data breach
[Mise à jour du 26 février 2021] 🇬🇧 The following indicators are new network indicators associated with the Ryuk ransomware described in the CERTFR-2021-CTI-006 report. These technical elements are provided to help detecting malicious activities in logs or inside live network trafic. Every...
US brings charges against suspected operator of fraudulent website lovelyhappypuppy.com
Funding will see firm expand cloud security, compliance and sales capabilities
What a journey it has been. I wrote quite a bit about machine learning from a red teaming/security testing perspective this year. It was brought to my attention to provide a conveninent “index page” with all Husky AI and related blog posts. Here it is.
Machine Learning Basics and Building Husky AI G...
19% of items listed over Black Friday and Cyber Monday showed signs of being fraudulent or dangerous
CrowdStrike calls for continuous monitoring to keep threats at bay
In this post we will explore Generative Adversarial Networks (GANs) to create fake husky images. The goal is, of course, to have “Husky AI” misclassify them as real huskies.
If you want to learn more about Husky AI visit the Overview post.
Generative Adversarial Networks One of the attacks I wanted...
Martin will work with SBRC to strengthen its strategic cyber-relationships across the UK
Partnership will enable security teams to leverage Google Cloud technology for external key management