Zero-day security vulnerabilities exploited in 2021 – UPDATED 25 4 2022

Magnifying glass looking for a zero-day attack

This post was first made on 22 April 2022 I regularly write about the issues around the zero-day vulnerability and our Social Engineering and Email Cyber Security Training course aims to equip individuals and organisations to meet the challenge that the zero-day poses. Google’s Project Zero has reported on it’s …

Java vulnerabilities to look out for – Spring4Shell – UPDATE 23 April 2022

This story was first published on 31 March 2022 and Updated on 5 April 2022 Update 26 April 2022 There has been a steady increase in the number of active attacks against this and related vulnerabilities: Hackers hammer SpringShell vulnerability in attempt to install cryptominers | Ars Technica This is …

Do you have a Lenovo laptop? If so then this post is for you.

Some persistent and critical vulnerabilities have been discovered in Lenovo laptops – so check if yours is on the list. When “secure” isn’t secure at all: High‑impact UEFI vulnerabilities discovered in Lenovo consumer laptops | WeLiveSecurity Lenovo Notebook BIOS Vulnerabilities – Lenovo Support US If you need help fixing this …

Oracle Patches

software patches are essential cybersecurity

If you have anything from software provider Oracle – then it is time to get patching. Oracle Critical Patch Update Advisory – April 2022 Time to get patching: Oracle’s quarterly Critical Patch Update arrives with 520 fixes | ZDNet Oracle Releases April 2022 Critical Patch Update | CISA Oracle Java …