And Another (Third) Log4J Issue
Apache has once again updated Log4j, this time to version 2.17. The newest version of the logging library fixes a high-severity denial-of-service issue. The vulnerability affects all versions of Log4j…
Apache has once again updated Log4j, this time to version 2.17. The newest version of the logging library fixes a high-severity denial-of-service issue. The vulnerability affects all versions of Log4j…
Telehealth app Doxy.me says it fixed a vulnerability in its site that mistakenly leaked confidential patient information to Facebook and Google. Detail https://www.cyberscoop.com/doxy-me-data-leak-facebook-google/
A new White House policy requires some federal agencies to assess the impact of cyberattacks and report them within 24 hours. Ref https://edition.cnn.com/2021/12/10/politics/white-house-red-line-policy-cyberattacks/index.html
Adversaries stole about $140 million worth of virtual currency from users of popular blockchain gaming company VulcanForge, the latest campaign targeting cryptocurrency investors. More https://www.vice.com/en/article/4awxep/hackers-steal-dollar140-million-from-users-of-crypto-gaming-company
Deceptive Bytes and vShieldz join forces to bring Deceptive Bytes solution, the industry’s first deception-based EP platform, for protecting the organization, to the Viet Nam market. vShieldz will now provide…
New tools : - Dufflebag - Search exposed EBS volumes for secrets - Maryam - Open-source Intelligence (OSINT) Framework - Name-That-Hash - Do not know what type of hash it…
Mortar Loader is able to bypass modern anti-virus products and advanced XDR solutions and it has been tested and confirmed bypass for the following: — Kaspersky — ESET — Malewarebytes…
Solar appScreener tested a mobile app and detected vulnerabilities that were absent from the source code provided by developers. To avoid sanctions, the developers submitted an abridged and obfuscated code…
Thousands of sites down ! Why the hell did they move cloud if this is to reproduce the same mistakes as on premise ! Cloud allows to have many availability…
Proposed legislation in the UK would establish mandatory security standards for Internet of Things (IoT) devices. The Product Security and Telecommunications Infrastructure Bill would apply to IoT manufacturers, importers, and…