Not sure what an iLo is? Then this story is probably not for you – but if you have an HP server that someone looks after for you, then pass this on to them. Over 20 thousand servers have their iLO interfaces exposed to the internet, many with outdated and …
Linux servers – so you think this is not your problem?
Much of the internet infrastructure is composed of Linux machines – and it looks like malware cyber attacks of these and other Linux devices is up throughout 2021, with no indication that they will decrease in 2022. Linux-Targeted Malware Increases by 35% in 2021 | CrowdStrike Linux malware sees 35% …
Continue reading “Linux servers – so you think this is not your problem?”
A little light holiday reading!
I am on leave/writing retreat at the moment and one of the things I like to do when away is read. Bruce Schneier’s blog put me on to this very interesting work. Bounty Everything by Ryan Ellis & Yuan Stevens – (datasociety.net) “Hackers and the Making of the Global Bug …
When you have found a “good” thing, why stop?
The log4j vulnerability and it’s associated attack vectors was always going to be major cybersecurity crisis – and of course once the bad actors knew about it they would expand their exploitation. This article on the SANS internet shows how initial attempts to mitigate the log4j issue are now being …
Continue reading “When you have found a “good” thing, why stop?”
The US FTC and Log4j – get it fixed or else
The US Federal Trade Commission is taking a strong position when it comes to companies fixing any Log4j vulnerabilities. FTC threatens legal action over unpatched Log4j systems • The Register FTC warns legal action against companies who fail to mitigate Log4Shell – The Record by Recorded Future