The vulnerabilities are for Zyxel firewalls and VMWare Spring Cloud. CISA Adds Two Known Exploited Vulnerabilities to Catalog | CISA The Apache issue is with Tomcat: Apache Releases Security Advisory for Tomcat | CISA Researchers, NSA cybersecurity director warn of hackers targeting Zyxel vulnerability – The Record by Recorded Future
Research that shows it is possible to hack an iPhone when it is turned off and drive off in your Tesla – UPDATED 18 May 2022 with real world examples of Bluetooth vulnerabilities
This is theoretical research that shows it may be possible to run malware on an iPhone that is still active even when the phone is powered off, by abusing a lack of authentication in the Bluetooth system and the fact that the Bluetooth is used in the Apple “find my…” …
Time to patch everything Apple – UPDATED 18 May 2022
The list of patches is at SANS, check your cyber security organisation information to see how this impacts you and fix it. The iPod Touch is still being supported in updates – but you would expect that from Apple. Apple Patches Everything – SANS Internet Storm Centre iOS 15.5 and …
Continue reading “Time to patch everything Apple – UPDATED 18 May 2022”
The insider risk
We have a training session that just covers the issue of what happens when a trusted member of your team goes rogue, either by accident or, worse, deliberately. This is the insider threat – an organisation cannot operate without trust and if that trust is abused what can you do. …
Your expectations of privacy
You you start to order that holiday, and part way through completing the online form, your partner finds a better deal on their phone – so you stop and close that web page and go to the next one. I am sure that every reasonable thinking person (that will be …
