I use OneNote a lot – so I had to follow up on my previous post about OneNote attachments being used as an attack vector. OneNote has become the threat actors new choice of attachment probably because Microsoft closed the door on macro attacks. In the wild, Microsoft OneNote’ .one’ …
CISA had a busy day yesterday
I regularly check the The US government Cybersecurity and Infrastructure Security Agency (CISA) site s it is a good source for patch and vulnerability alerts. Yesterday they posted security advisories for a range of products including Cisco, Drupal, and VMware: Cisco Releases Security Advisories for Multiple Products | CISA Drupal …
Practice Drinking Coffee* better known as Planning and Preparation
Sorry, this is not a coffee* appreciation article it is an article about planning and preparation for an incident. Planning and Preparation = Good Governance Businesses and organisations need a cyber security policy and a plan covering what they do to mitigate the risk of an incident and what they …
Continue reading “Practice Drinking Coffee* better known as Planning and Preparation”
National Cyber Security Centre Threat Report 27 January 2023
Threat Report 27th January 2023 – NCSC.GOV.UK
CISA adds a software development tool vulnerability to the Known Exploited Vulnerabilities Catalog and security advisories
The US government Cybersecurity and Infrastructure Security Agency (CISA) has added a vulnerability for Telerik, a software development tool, to it’s Known Exploited Vulnerabilities Catalog: CISA Has Added One Known Exploited Vulnerability to Catalog | CISA This week CISA also released a security advisory for a range of Apple products, …
