Security Leftovers
-
Moscow Court Sentences Cybersecurity Company Chief To 14 Years
The Moscow City Court has sentenced Ilya Sachkov, the head of a leading Russian cybersecurity company, to 14 years in prison on a high treason charge.
-
Suspicious IP Addresses Avoided by Malware Samples, (Wed, Jul 26th)
-
Backdoor in TETRA Police Radios
Seems that there is a deliberate backdoor in the twenty-year-old TErrestrial Trunked RAdio (TETRA) standard used by police forces around the world.
The European Telecommunications Standards Institute (ETSI), an organization that standardizes technologies across the industry, first created TETRA in 1995. Since then, TETRA has been used in products, including radios, sold by Motorola, Airbus, and more. Crucially, TETRA is not open-source. Instead, it relies on what the researchers describe in their presentation slides as “secret, proprietary cryptography,” meaning it is typically difficult for outside experts to verify how secure the standard really is...
-
Russian Political Analyst Charged With Online Calls For Terrorism
Russia's Federal Security Service has charged political analyst Boris Kagarlitsky with online calls for terrorism, his daughter Ksenia said.
-
Apple issues third mobile OS update after zero-click spyware campaign
The patch is the latest to address issues associated with what cybersecurity firm Kaspersky called Operation Triangulation.
-
New AMD ‘Zenbleed’ exploit can steal passwords and encryption keys from CPUs
A new security vulnerability has been discovered affecting Advanced Micro Devices Inc. Zen 2 processors that can be exploited to steal passwords and other sensitive data such as encryption keys. Google security researcher Travis Ormandy revealed the bug on his blog Monday, naming it “Zenbleed,” which has been filed as CVE-2023-20593.
-
AMD CPU Vulnerability ‘Zenbleed’ Can Expose Sensitive Information
AMD has released microcode patches to address Zenbleed, a vulnerability in its Zen 2 CPUs that can allow an attacker to access sensitive information.
-
AMD issues mitigation advice for flaw in Zen 2 processors
Processor manufacturer AMD has issued an advisory about a cross-process information leak in some of its hardware, that it rates to be of medium severity, following the release of details of the flaw by Google Information Security researcher Tavis Ormandy.
> -
Maritime Cyberattack Database Launched by Dutch University
The NHL Stenden University of Applied Sciences in the Netherlands has launched MCAD, the Maritime Cyber Attack Database.
-
TETRA Radio Standard Vulnerabilities Can Expose Military Comms, Industrial Systems
TETRA:BURST - vulnerabilities in widely used radio standard could threaten military and law enforcement communications, as well as ICS.