Security Leftovers
-
Gigabyte Rolls Out BIOS Updates to Remove Backdoor From Motherboards
Gigabyte has announced BIOS updates that remove a recently identified backdoor feature in hundreds of its motherboards.
-
Reproducible Builds: Reproducible Builds in May 2023
Welcome to the May 2023 report from the Reproducible Builds project
In our reports, we outline the most important things that we have been up to over the past month. As always, if you are interested in contributing to the project, please visit our Contribute page on our website.
Holger Levsen gave a talk at the 2023 edition of the Debian Reunion Hamburg, a semi-informal meetup of Debian-related people in northern Germany. The slides are available online.
-
Zyxel Urges Customers to Patch Firewalls Against Exploited Vulnerabilities
Zyxel urges customers to update ATP, USG Flex, VPN, and ZyWALL/USG firewalls to prevent exploitation of recent vulnerabilities.
-
Top NAS Devices Are Being Targeted by This Dangerous Malware
IoT cybersecurity company Sternum has identified a security vulnerability affecting Zyxel Networks' Linux-operated NAS drives, including NAS326, NAS540, and NAS542 models, running on firmware version 5.21.
-
Ransomware Group Used MOVEit Exploit to Steal Data From Dozens of Organizations
The recent MOVEit zero-day attack has been linked to a known ransomware group, which reportedly stole data from dozens of organizations.
-
SBOMs – Software Supply Chain Security’s Future or Fantasy? [Ed: Anti-FOSS lobbying by graft giants (back doors) led to this phony solution]
If after eighteen months, meaningful use of SBOMs is unachievable, we need to ask what needs to be done to fulfill Biden’s executive order.
-
What if the Current AI Hype Is a Dead End?
If we should face a Dead-End AI future, the cybersecurity industry will continue to rely heavily on traditional approaches, especially human-driven ones. It won’t quite be business as usual though.
-
Dozens of Malicious Extensions Found in Chrome Web Store
Security researchers have identified over 30 malicious extensions with millions of installs in the Chrome web store.