CISA has issued advisories on the following: Google Releases Security Updates for Chrome | CISA Drupal Releases Security Update | CISA Oracle Releases July 2022 Critical Patch Update | CISA Apple Releases Security Updates for Multiple Products | CISA – SANS had a good round-up of these updates here. Cisco …
US Cybersecurity and Infrastructure Security Agency issues an advisory on fleet GPS tracking units
These Chinese GPS tracking units, typically used in fleet systems, have been found to have six critical flaws, that allow threat actors access, according to research group BitSight. CISA released Security Advisory on MiCODUS MV720 Global Positioning System (GPS) Tracker | CISA
More problems with July’s Patch Tuesday
Software is complex, we understand that. Which is why we accept patches and updates to fix functionality and security issues. However when Microsoft gets it wrong – you have to winder why they did not test more – it is their code. Microsoft’s latest security patch troubles Windows 11 users …
Hacking everywhere – even if you use MacOS
I talk about the vulnerabilities in Microsoft products a lot – whatever anyone thinks, in business, we live in a Microsoft world. However I have posts about Linux, MacOS and smartphone OS’s – here is one that can impact Mac users. Uncovering a macOS App Sandbox escape vulnerability: A deep …
Continue reading “Hacking everywhere – even if you use MacOS”
As predicted Log4j is going to be a problem for a long time
The Cyber Safety Review Board is operated by The Department of Homeland Security and in it’s inaugural report the Log4j vulnerability, spread and exploitation is discussed: CSRB Report on Log4j – Public Report – July 11 2022_508 Compliant (cisa.gov) It makes interesting reading. I wonder just how many developers do …
Continue reading “As predicted Log4j is going to be a problem for a long time”