Chinese regulator pauses partnership with Alibaba – BBC News Alibaba Cloud in trouble with Beijing for Log4J annoucement • The Register I found this video on YouTube that has a good in-depth description of the Log4j problem. It will keep you up speed with all the acronyms, shells, code etc.
Phishing campaigns – Indeed
One of the things we advise people to do on our Phishing and Social Engineering training, is to be very aware of the look and feel of any login pages and web sites they are directed to, as bad actors may not get it completely right – so if they …
Bluetooth security flawed but fixed
The Ellume – COVID-19 Home Test (ellumehealth.com) was tested and found to not be very secure. Worse compromised data was passed onto an agency vetting people entering into the USA depending on their COVID-19 status. Of course a Bluetooth-using home COVID test was cracked to fake results • The Register
Belgian defence ministry systems exploited via Log4j flaw
Belgian defence ministry admits attackers accessed its computer network by exploiting Log4j vulnerability • The Register As if you needed reminding that if the Log4j vulnerability impacts you, you need to take action.
More on the sharing of compromised passwords with “‘;–have i been pwned?”
I wrote about this yesterday: UK National Crime Agency shares compromised passwords – Smart Thinking Solutions Here are two more stories about The National Crime Agency’s (NCA) donation of passwords in the wild. UK donates 225 million stolen passwords to hack-checking site – BBC News UK National Crime Agency finds …
Continue reading “More on the sharing of compromised passwords with “‘;–have i been pwned?””