The Scottish Environment Protection Agency (SEPA) has had to write off about £2m of fees because of the hack they suffered in 2020 in which they lost a substantial amount of data. But the true cost of the cyber security incident remains unknown. Full cost of 2020 cyber attack on …
Log4j exploits and behind the scenes with the Apache patching team
Here is an interesting article from the team at Apache dealing with patching the Log4j problem: The Apache Log4j team talks about the Log4Shell patching process – The Record by Recorded Future But the exploits in the wild are still happening: Threat actor target Ubiquiti network appliances using Log4Shell exploits …
Continue reading “Log4j exploits and behind the scenes with the Apache patching team”
Cyber attack impacts German fuel supplies
Oiltanking Deutschland GmbH & Co. KG, a major player in the infrastructure of oil supplies in German discovered the cyber security breach on Saturday. Cyber-attack strikes German fuel supplies – BBC News Cyberattack hits German service station provider • The Register
“Patch Now” advised – more on the Linux vulnerabilities
TechRepublic has another article on Linux vulnerabilities that need to be addressed: Patch now: A newly discovered critical Linux vulnerability probably affects your systems | TechRepublic Linux servers – so you think this is not your problem? – Smart Thinking Solutions Twelve-Year-Old Linux Vulnerability Discovered and Patched – Schneier on …
Continue reading ““Patch Now” advised – more on the Linux vulnerabilities”
Training is everything when it comes to phishing emails
Here is another example of a phishing attack, from SANS Internet Diary – although I am not sure the average user will know what to do with an ISO file? The attack is interesting as it uses Base 64 to obscure it from detection. Malicious ISO Embedded in an HTML …
Continue reading “Training is everything when it comes to phishing emails”