Saturday, May 30, 2020

5/30/2020 - The World is Burning and I am Ignoring It

Lots of activity in the world in the form of protests and riots and some in the security space, mainly (at least in the feeds I follow) around the mail servers hacks that the Sandworm APT is accused of:

The American surveillance super-agency said [PDF] on Thursday the Kremlin's military intelligence hackers are actively targeting some systems vulnerable to CVE-2019-10149, a security hole in the widely used Exim mail transfer agent (MTA) that was fixed last June.

...
Because Exim is widely used on millions of Linux and Unix servers for mail, bugs in the MTA are by nature public-facing and pose an attractive target for hackers of all nations.

The NSA did not say who exactly was being targeted, though we can imagine the Russian military takes an interest in probing foreign government agencies and vital industries. GRU hackers have also previously targeted energy utilities, by some reports.

That story has been appearing for a few days now, but it was the only thing besides rioting and protests that caught my eye, and I don't really want to discuss those at this point in time.  So, today I am going to read a little in Network Forensics, nap, read a little of Burn In (The follow on to Ghost Fleet), nap some more, grill a steak and try my best to ignore the world as it burns around me.

No comments: