SANS Internet Storm Diary is reporting a dramatic increase in the scanning for a vulnerability in the CMS Movable Type – software similar in function to WordPress for the development of web sites and web content. Scans for Movable Type Vulnerability (CVE-2021-20837) – SANS Internet Storm Centre National Vulnerability Database …
The log4j threat has not gone away
Here is an attack in the world targeting machines with malicious rootkits. Even though their code is poor, it is still an issue. Linux botnet exploits Log4j flaw to hijack Arm, x86 systems • The Register Log4j at Smart Thinking Solutions
This is what happens when you do not run patches and updates
The Information Commissioner’s Office has issued a £98,000 penalty to Tuckers Solicitors based in London. The solicitors firm suffered a ransomware attack where confidential information including, PII and case material was lost. UK lawyer fined for not patching fast enough before attack • The Register
QNAP device vulnerability – UPDATED
This post was first published on 26 January 2022 There have been further warnings to update QNAP devices that are vulnerable to a Linux bug: QNAP warns severe Linux bug affects most of its NAS devices (bleepingcomputer.com) Today is a day of minority device vulnerabilities – here is another for …
Apple software updates released
Apple has released security and patch updates for their operating systems across most of it’s devices. These updates also include new features across the devices, Macs, iPhones and iPads. The advice, as always, is get the updates ASAP – patched devices are always more secure. iOS 15.4 and macOS 12.3 …