Security Leftovers
-
OpenSSF (Linux Foundation) ☛ OpenSSF Expands Secure Development Course with Interactive Labs
The Open Source Security Foundation (OpenSSF) today announced an expansion of its free course “Developing Secure Software” (LFD121). The course now features interactive learning scenarios to better equip developers to build software that resists modern cyberattacks.
-
OpenSSF (Linux Foundation) ☛ OpenSSF Welcomes New Members and Introduces New Initiatives at SOSS Community Day Japan
-
Silicon Angle ☛ Cyber split: Check Point shares down, Commvault up on quarterly earnings [Ed: Terrible company]
Check Point Software Technologies Ltd. and Commvault Systems Inc. both logged significant price moves in trading today, but in opposite directions, after reporting earnings for the three months ended Sept. 30. Shares of Check Point, one of the world’s largest cybersecurity companies, dropped more than 13%.
-
Federal News Network ☛ DHS Cyber Security Safety Review Board to examine Salt Typhoon attack
DHS confirmed the board’s next review will examine intrusions connected to the hacking group “Salt Typhoon.”
-
Xe's Blog ☛ "No way to prevent this" say users of only language where this regularly happens
In the hours following the release of CVE-2024-9632 for the project X.org, site reliability workers and systems administrators scrambled to desperately rebuild and patch all their systems to fix a buffer overflow that allows an attacker with access to raw X client calls to arbitrarily read and write memory, allowing for privilege escalation attacks.
-
Windows TCO
-
Scoop News Group ☛ Cyber insecurity now impacts the health and wellness of Americans. We need a clearer treatment plan.
Rep. Mark Green, chair of the House Homeland Security Committee, argues for a multi-pronged, proactive approach to protect health care networks.
-