Sunday, February 27, 2022

this Week's Reading 2/27/2022

 No Ukraine Stuff - outside the scope

These new hacking groups are striking industrial, operational tech targets: Two of the new groups are sophisticated enough to directly reach ICS/OT networks.

https://www.zdnet.com/article/these-new-hacking-groups-are-striking-industrial-operational-tech-targets/#ftag=RSSbaffb68

This machine-learning model can pinpoint failing or hacked power grid components

https://www.theregister.com/2022/02/26/machine_learning_power/

New Flaws Discovered in Cisco's Network Operating System for Switches

https://thehackernews.com/2022/02/new-flaws-discovered-in-ciscos-network.html

The idea that university degrees don’t matter is a Silicon Valley fantasy

https://techcrunch.com/2022/02/25/the-idea-that-university-degrees-dont-matter-is-a-silicon-valley-fantasy/

A New Cybersecurity “Social Contract”

https://www.schneier.com/blog/archives/2022/02/a-new-cybersecurity-social-contract.html

Iranian Government-Sponsored Actors Conduct Cyber Operations Against Global Government and Commercial Networks

https://www.cisa.gov/uscert/ncas/alerts/aa22-055a

In studying tech supply chain, feds cite open source products, device firmware

https://www.cyberscoop.com/supply-chain-risk-homeland-security-commerce-report/

Drop the SBOM

https://www.csoonline.com/article/3649794/drop-the-sbom.html#tk.rss_all

GE SCADA Product Vulnerabilities Show Importance of Secure Configurations

https://www.securityweek.com/ge-scada-product-vulnerabilities-show-importance-secure-configurations

No comments: