I write a lot about patches and updates – that is because they are an important element in any cyber security plan. The quote above from Bruce Schneier sums it up. However not everyone reads my articles or Bruce’s books: Xfinity waited 13 days to patch critical Citrix Bleed 0-day. …
Microsoft Patch Tuesday – December 2023
It is the second Tuesday of the month that means this morning, our support team have been reviewing our client monitoring reports and the SOC to check that the Microsoft Patch Tuesday updates have been completed. They will keep an eye on the reports all day to check there are …
WordPress backup plugin compromised
If you or your web developer uses the WordPress plugin Backup Migration as part of your cyber security plan to protect your website – then you need to take action as it has a fatal flaw: 50K WordPress sites exposed to RCE attacks by critical bug in backup plugin (bleepingcomputer.com) …
Patch your Apple Stuff
Apple has released updates for iOS, iPadOS, macOS, tvOS and watchOS. Even if you have automatic updates enabled it is always worth checking that the updates have completed – for the updates to work on some devices you need to have them on charge and on WiFi and if you …
CISA Security Patch Notices
The US government Cybersecurity and Infrastructure Security Agency (CISA) site is one of the “go to places” for me and my team to keep up with vulnerabilities in our client’s software. Although aimed at the US Government and US users it is still really useful. Here is a round-up of …