Security Leftovers
-
CISA, NSA, and ODNI Release Part One of Guidance on Securing the Software Supply Chain | CISA
CISA, the National Security Agency (NSA), and the Office of the Director of National Intelligence (ODNI), have published part one of a three-part joint publication series, Securing Software Supply Chain Series - Recommended Practices for Developers. This guidance—created by the Enduring Security Framework (ESF), a public-private cross-sector working group led by the NSA and CISA—focuses on software developers and provides suggested practices to ensure a more secure software supply chain.
-
Mozilla Releases Security Update for Thunderbird | CISA
Mozilla has released security update to address a vulnerability in Thunderbird. An attacker could exploit this vulnerability to take control of an affected system.
-
Another Ransomware For Linux Likely In DevelopmentSecurity Affairs [Ed: Ransomware needs to actually get to the system. How would that get into the system in the first place? Windows has back doors, Linux is harder to penetrate.]
The Uptycs Threat Research team recently observed an Executable and Linkable Format (ELF) ransomware which encrypts the files inside Linux systems based on the given folder path.
-
FBI's team to investigate massive cyberattack in Montenegro | AP News
A rapid deployment team of FBI cyber experts is heading to Montenegro to investigate a massive, coordinated attack on the tiny Balkan nation’s government and its services, the country’s Ministry of Internal Affairs announced Wednesday.
The announcement came as the government’s main websites — including the ministries of defense, finance and interior — remained unreachable. Officials said they were offline “for security reasons.”
The ministry called the FBI assistance “another confirmation of the excellent cooperation between the United States of America and Montenegro and a proof that we can count on their support in any situation.”
-
Montenegro is the Victim of a Cyberattack - Schneier on Security
Russia is being blamed, but I haven’t seen any evidence other than “they’re the obvious perpetrator.”