Security Leftovers
-
Rajeesh K Nambiar: Dual boot, secure boot & bitlocker [Ed: Microsoft back doors galore]
I have installed GNU/Linux on many a computers in ~20 years (some automated, most individually). In the University, I used to be woken past midnight by someone knocking at the door — who reinstalled Windows — and now they can’t boot because
grub
was overwritten. I’d rub the eyes, pickup the bunch latest Fedora CDs and go rescue thebeastmachine. Linux installation, customization and grub-recovery was my specialization (no, the course didn’t have credit for that). -
A Deep Dive Into the Growing GootLoader Threat
Cybereason GootLoader as a ‘severe’ threat, as the malware uses a combination of evasion and living off the land techniques, making its presence difficult to dectec.
-
CISA Releases Open Source Recovery Tool for ESXiArgs Ransomware
It may be possible to recover some virtual machines impacted by the ESXiArgs ransomware and CISA has released a tool for the task.
-
DOM XSS vulnerability in Gartner Peer Insights widget patched
Web attack vector closed after failed fix
-
Security firm finds exposed customer data in backups
Bill Toulas reported the findings for Bleeping Computer:
According to a study by website security company Sansec, roughly 12% of online stores forget their backups in public folders due to human error or negligence.
-
Toyota hacked again but this time it was a security researcher with no ill intent
Toyota Motor Co. has been hacked again, but fortunately for the Japanese car giant, this time the hacker was a security researcher with no ill intent. Security researcher Eaton Zveare said Monday that he gained access to Toyota’s Global Supplier Preparation Information Management System in October. -
Britain’s beleaguered Royal Mail held to ransom by hackers
The ransomware group LockBit has claimed responsibility for the January Royal Mail cyberattack and today is making threats to Britain’s centuries-old service. After the attack happened on Jan. 12, the Royal Mail said it had to close down international shipping because of “severe service disruption.” -
Patient Information Compromised in Data Breach at San Diego Healthcare Provider
San Diego healthcare services provider Sharp says patient information was compromised in January data breach.