Security Leftovers
-
The most hated man on the internet. Lessons to learn
A while ago I was scouring Netflix and stumbled across the 2022 The most hated man on the internet docuseries.
-
CarderBee hacking group targets organizations in Asia
An unknown advanced persistent threat group has been observed attacking organizations in Asia, particularly Hong Kong, using commercial software to deploy “backdoor” malware.
-
New group found using Microsoft-signed certificates in attacks [Ed: Yet another massive blow to the ludicrous concept of "secure" boot (signed by Microsoft)]
A hitherto unknown group of attackers has used legitimate certificates signed by Microsoft to attack companies in Asia, the security firm Symantec claims.
-
Remotely Exploitable ClamAV DoS Bug Discovered & Fixed
It was discovered that ClamAV incorrectly handled parsing HFS+ files ( CVE-2023-20197 ). This bug is easy to exploit and poses a severe threat to the availability of impacted systems.
-
21 Severe Chromium Vulns Fixed - Update Now!
Twenty-one severe vulnerabilities have been found in Chromium, including multiple use after frees and heap buffer overflows, among other security issues. These bugs have received a National Vulnerability Database severity rating of ''High'' due to their ease of exploitation and their significant threat to impacted systems' confidentiality, integrity, and availability.
-
Australian Energy Software Firm Energy One Hit by Cyberattack
Energy One, an Australian company that provides software products and services to the energy sector, has been hit by a cyberattack.