Security Leftovers
-
Microsoft: Iranian APTs Exploiting Recent PaperCut Vulnerability [Ed: Microsoft itself is the issue; it has back doors and these political stunts deflect or misdirect blame]
Microsoft warns that two Iranian state-sponsored groups have adopted exploits targeting a recently patched PaperCut vulnerability.
-
TechnologyOne says systems breached through Office 365 system
The company said in a note to the ASX that the breach had not affected its customer-facing SaaS platform as it was not connected to the Microsoft 365 system.
In the statement, TechnologyOne said it had "acted with urgency to investigate the issue, including initiation of its cyber response strategy, appointing third party experts, and isolating affected systems".
-
ICS Patch Tuesday: Siemens, Schneider Electric Address Few Dozen Vulnerabilities
Siemens and Schneider Electric’s Patch Tuesday advisories for May 2023 address a few dozen vulnerabilities found in their products.
-
Adobe Patches 14 Vulnerabilities in Substance 3D Painter
Adobe has patched more than a dozen vulnerabilities, including critical code execution flaws, in its Substance 3D Painter product.
-
Rapid7 shares drop despite earnings and revenue beat in previous quarter
Shares in Rapid7 Inc. fell slightly in late trading today despite the cybersecurity solutions provider reporting an earnings and revenue beat in its most recent quarter. -
Richard Hughes: MSI and Insecure KMs
As some as you may know, MSI suffered a data breach which leaked a huge amount of source code, documentation and low-level firmware PRIVATE KEYS. This is super bad as it now allows anyone to sign a random firmware image and install it as an official MSI firmware. It’s even more super bad than that, as the certificates leaked seem to be the
KeyManifest
keys, which actually control the layer below SecureBoot, this little-documented and even less well understood thing called BootGuard. I’ll not overplay the impact here, but there is basically no firmware security on most modern MSI hardware now. We already detect the leaked test keys from Lenovo and notify the user via the HSI test failure and I think we should do the same thing for MSI devices too. I’ve not downloaded the leak for obvious reasons, and I don’t think the KM hashes would be easy to find either. -
Building Automation System Exploit Brings KNX Security Back in Spotlight
A public exploit targeting building automation systems brings KNX security back into the spotlight, with Schneider Electric releasing a security bulletin.
-
Best Practices for PHP Security
Now more than ever, people, developers, and businesses alike consider PHP a dying language and that it might have no place in the IT/Dev World. However, PHP is one of the most popular programming languages still in use today. It is used by millions of websites, roughly around 80% of all websites, including some of the biggest names on the internet. PHP still dominates server-side web development whilst still being flexible and adaptable to a developers needs.