Monday, July 10, 2023

What I am Reading 7/10/2023

Log4j bug exploited to push novel EarlyRat malware

https://www.scmagazine.com/news/threat-intelligence/log4j-exploited-earlyrat-malware

MOVEit app mass-exploited last month patches new critical vulnerability


https://arstechnica.com/security/2023/07/moveit-app-mass-exploited-last-month-patches-new-critical-vulnerability/

336,000 servers remain unpatched against critical Fortigate vulnerability


https://arstechnica.com/security/2023/07/336000-servers-remain-unpatched-against-critical-fortigate-vulnerability/

SSH Servers Hit in 'Proxyjacking' Cyberattacks


https://www.darkreading.com/risk/ssh-servers-hit-in-proxyjacking-cyberattacks

Vulnerability in Cisco Enterprise Switches Allows Attackers to Modify Encrypted Traffic

https://www.securityweek.com/vulnerability-in-cisco-enterprise-switches-allows-attackers-to-modify-encrypted-traffic/

Vulnerabilities in PiiGAB Product Could Expose Industrial Organizations to Attacks


https://www.securityweek.com/vulnerabilities-in-piigab-product-could-expose-industrial-organizations-to-attacks/

3 Critical RCE Bugs Threaten Industrial Solar Panels, Endangering Grid Systems

https://www.darkreading.com/ics-ot/3-critical-rce-bugs-threaten-industrial-solar-panels

Technician Indicted for Hacking California Water Treatment Facility

https://www.hackread.com/hacking-california-water-treatment-facility/

One third of security breaches go unnoticed by security professionals

https://www.helpnetsecurity.com/2023/07/03/hybrid-cloud-security-breaches/

Botnets Send Exploits Within Days to Weeks After Published PoC

https://www.darkreading.com/vulnerabilities-threats/botnets-send-exploits-only-day-to-weeks-after-published-poc

Businesses are ignoring third-party security risks

https://www.helpnetsecurity.com/2023/06/30/third-party-relationships-risks/

Employees worry less about cybersecurity best practices in the summer


https://www.helpnetsecurity.com/2023/06/30/summer-byod-policies/

5 Things CISOs Need to Know About Securing OT Environments

https://thehackernews.com/2023/06/5-things-cisos-need-to-know-about.html

Submarine Cables Face Escalating Cybersecurity Threats, Report

https://www.hackread.com/submarine-cables-cybersecurity-threats/

US’s largest grid operator must process and connect backlogged clean energy projects


https://arstechnica.com/science/2023/07/uss-largest-grid-operator-must-process-and-connect-backlogged-clean-energy-projects/

Judge rules White House pressured social networks to “suppress free speech”

https://arstechnica.com/tech-policy/2023/07/judge-rules-white-house-pressured-social-networks-to-suppress-free-speech/

China curbs exports of key computer chip materials

https://www.bbc.com/news/business-66093114?at_medium=RSS&at_campaign=KARANGA

The real reasons why sharks attack humans

https://www.bbc.com/future/article/20190808-why-do-sharks-attack-humans

San Francisco loses 2 big conferences

https://www.sfgate.com/bayarea/article/san-francisco-loses-meta-red-hat-conferences-18187573.php

Once hailed for decriminalizing drugs, Portugal is now having doubts

https://www.washingtonpost.com/world/2023/07/07/portugal-drugs-decriminalization-heroin-crack/

The Underground Economy of Company Reviews

https://www.careerfair.io/company-reviews

Why there are so many cybersecurity vendors, what it leads to and where do we go from here


https://ventureinsecurity.net/p/why-there-are-so-many-cybersecurity

Top Suspect in 2015 Ashley Madison Hack Committed Suicide in 2014

https://securityboulevard.com/2023/07/top-suspect-in-2015-ashley-madison-hack-committed-suicide-in-2014/








No comments: