Microsoft Patch Tuesday, March 2023 Edition

Credit to Author: BrianKrebs| Date: Wed, 15 Mar 2023 15:19:32 +0000

Microsoft on Tuesday released updates to quash at least 74 security bugs in its Windows operating systems and software. Two of those flaws are already being actively attacked, including an especially severe weakness in Microsoft Outlook that can be exploited without any user interaction.

Read more

‘Wormable’ Flaw Leads January 2022 Patch Tuesday

Credit to Author: BrianKrebs| Date: Tue, 11 Jan 2022 22:18:55 +0000

Microsoft today released updates to plug nearly 120 security holes in Windows and supported software. Six of the vulnerabilities were publicly detailed already, potentially giving attackers a head start in figuring out how to exploit them in unpatched systems. More concerning, Microsoft warns that one of the flaws fixed this month is “wormable,” meaning no human interaction would be required for an attack to spread from one vulnerable Windows box to another.

Read more

Back to Basics: Why We Need to Encourage More Secure IoT Development

Credit to Author: Mike Gibson| Date: Wed, 22 Aug 2018 12:05:33 +0000

The Internet of Things (IoT) is radically reshaping the way we live and work. Before our very eyes, organizations are becoming more agile, efficient and cost effective to run, all while consumers marvel at the wonders of the smart home, fitness trackers and connected cars. There’s just one major problem: Much of this new infrastructure…

The post Back to Basics: Why We Need to Encourage More Secure IoT Development appeared first on .

Read more

Zero-Day Coverage Update – Week of July 23, 2018

Credit to Author: Elisa Lippincott (Global Threat Communications)| Date: Fri, 27 Jul 2018 12:00:54 +0000

We’re at the end of July and the Zero Day Initiative (ZDI) has published 873 advisories so far. That’s 273 advisories this month alone – and that’s just the tip of the iceberg! Earlier this week, ZDI announced the Targeted Incentive Program, which brings over $1,500,000 USD in special bounty awards for specific targets. With…

The post Zero-Day Coverage Update – Week of July 23, 2018 appeared first on .

Read more

Zero-Day Coverage Update – Week of July 16, 2018

Credit to Author: Elisa Lippincott (Global Threat Communications)| Date: Fri, 20 Jul 2018 15:24:42 +0000

One night this week, I came across one of my favorite movies Willy Wonka and the Chocolate Factory. The world had gone crazy after the reclusive Willy Wonka announces that he has hidden five golden tickets in chocolate Wonka Bars that promised a factory tour and a lifetime supply of chocolate. There’s a scene at…

The post Zero-Day Coverage Update – Week of July 16, 2018 appeared first on .

Read more

Zero-Day Coverage Update – Week of July 9, 2018

Credit to Author: Elisa Lippincott (Global Threat Communications)| Date: Fri, 13 Jul 2018 14:10:20 +0000

Earlier this week, I wrote a blog covering a couple of the statistics from the Zero Day Initiative’s (ZDI) first half of 2018. One of the stats that I didn’t cover is the increasing focus on enterprise applications. The team is seeing consistent growth in submissions of Microsoft and Apple vulnerabilities, but now they’re also…

The post Zero-Day Coverage Update – Week of July 9, 2018 appeared first on .

Read more

Zero Day Initiative: A 1H2018 Recap

Credit to Author: Elisa Lippincott (Global Threat Communications)| Date: Mon, 09 Jul 2018 13:54:03 +0000

When the Zero Day Initiative (ZDI) was formed in 2005, the cyber threat landscape was a bit different from what we see today. Threats were a little less sophisticated, but there was one thing that we saw then that we still see now: the shortage of cybersecurity professionals and researchers. The team decided that with…

The post Zero Day Initiative: A 1H2018 Recap appeared first on .

Read more

Zero-Day Coverage Update – Week of July 2, 2018

Credit to Author: Elisa Lippincott (Global Threat Communications)| Date: Fri, 06 Jul 2018 13:51:43 +0000

The General Data Protection Regulation (GDPR) has been up and running for a couple of months now and your organization is compliant. It’s time to take a little break – well, not so fast! Late last week, the State of California passed a new data privacy law called the California Consumer Privacy Act of 2018….

The post Zero-Day Coverage Update – Week of July 2, 2018 appeared first on .

Read more