Security News Update for the Week Ending November 13, 2022
This week’s news includes:
This week’s news includes:
This week’s topics include:
This week’s news includes: Google to stop supporting Chrome on Win 7 and Win 8 in February TSA releases new version of railroad cybersecurity requirements Apple issues emergency iOS patch for arbitrary code execution Microsoft DOESN’T issue patch (yet) for two big bugs also being exploited See Tickets says credit card theft ran for 2.5…
Topics this week include: Intel’s Alder Lake BIOS/UEFI code has been stolen and leaked CISA releases SCuBA documentation Microsoft implements Windows 11 feature to slow down hackers Social media impacts both your privacy and your safety US Army Major and his wife charged with trying to sell info to Russia Hackers target eager homebuyers with…
Dark patterns are techniques that web site operators, typically, use to make it more difficult to choose one option than another. For example, try to close your Amazon account or your Facebook account. It used to be that you had to call Amazon and they would try and talk you out of it. Now you…
Feds Are Going After Unapproved Messaging Platforms – So Far $1.8 Bil in Fines Hackers Claim to Have Breached Russian Satellite Network Gonets CISA, DoJ and NSA Issue Advisory on Tools Used to Hack DoD Contractor Indonesia Data Protection Law Includes Jail Time, Asset Seizure and Compensation for Breaches FCC Threatens to Block Carriers Not…
Cyber insider threat is a significant issue. It comes in multiple flavors – accidental and malicious and can be caused by IT or by general users. While relatively rare compared to ransomware, it is more common than you might think. Learn about the problem here. Audio Video
This week’s news includes: Sophos auto-patches firewall bug being exploited in the wild Apple removes pig butchering apps from the App Store Brands review privacy policies after California fines Sephora $1.2 million 15 banks agree to over $1 Bil in fines over recordkeeping failures Morgan Stanley to pay $35 million for astonishing customer data disposal…
This week’s news includes: CISA says Dataprobe’s PDUs used in critical infrastructure vulnerable Unpatched 15 year old Python bug allows code injection in 350,000 projects HP failed to patch firmware for a year Industrial control systems have joined the general computer world in their own patch Tuesday mess NSA and CISA release Control system defense:…
MFA Fatigue is a relatively new attack method and is a way to try and get around MFA security. Learn what it is and how to protect yourself and your company against it, here. Audio Video