So yesterday was Patch Tuesday – and we all know what that means. Get the updates and patching done now! Here here are my favourite round-up articles: Microsoft Patch Tuesday – January 2022 – SANS Internet Storm Centre Microsoft starts 2022 with 96 CVEs for Patch Tuesday • The Register …
This is an easy hit for the bad actors – fake QR codes
Always be careful when scanning QR codes – double check they are legitimate especially if you are using them to pay for services. This story is from Austin in the USA but it could be anywhere. Fake QR Codes on Parking Meters – Schneier on Security The QR code about …
Continue reading “This is an easy hit for the bad actors – fake QR codes”
National Cyber Security Centre Threat Report
The NCSC took a couple of weeks for the holidays, Whilst they have been away, Smart Thinking kept you up with the cybersecurity news you needed to know about. Weekly Threat Report 7th January 2022 – NCSC.GOV.UK
Phishing Campaign aimed at Google Workspace users
It is common for cyber-criminals to exploit legitimate software and business practices to carry out their attacks. Bad actors are now abusing the comments feature of Google Docs, to send users malicious links via email. Hackers exploit Google Docs in new phishing campaign – TechRepublic Initiating a cyber attack via …
Continue reading “Phishing Campaign aimed at Google Workspace users”
The US FTC and Log4j – get it fixed or else
The US Federal Trade Commission is taking a strong position when it comes to companies fixing any Log4j vulnerabilities. FTC threatens legal action over unpatched Log4j systems • The Register FTC warns legal action against companies who fail to mitigate Log4Shell – The Record by Recorded Future