Latest issue of my curated #cybersecurity and #infosec list of resources for week #49/2023 is out! It includes the following and much more:
➝
#23andMe updates user agreement to prevent #databreach lawsuits
➝
Hackers Exploited #ColdFusion Vulnerability to Breach Federal Agency Servers
➝
#Navy contractor Austal USA confirms #cyberattack after #dataleak
➝
#Nissan is investigating cyberattack and potential data breach
➝
Sellafield nuclear site hacked by groups linked to #Russia and #China
➝
#Roblox, #Twitch allegedly targeted by #ransomware cartel
➝ N. Korean #Kimsuky Targeting South Korean Research Institutes with #Backdoor Attacks
➝
ITG05 operations leverage #Israel-#Hamas conflict lures to deliver Headlace #malware
➝ Russian military hackers target #NATO fast reaction corps
➝
Cyberattack on Irish Utility Cuts Off Water Supply for Two Days
➝
Russia hacking: '#FSB in years-long cyber attacks on UK', says government
➝
Russia's AI-Powered Disinformation Operation Targeting #Ukraine, U.S., and #Germany
➝
#Microsoft Warns of Kremlin-Backed #APT28 Exploiting Critical #Outlook Vulnerability
➝
Inside Job: How a Hacker Helped Cocaine Traffickers Infiltrate Europe’s Biggest Ports
➝
Governments spying on #Apple, #Google users through push notifications - US senator
➝
Due to AI, “We are about to enter the era of mass spying,” says Bruce Schneier
➝
Ukraine appoints new cyber chief following ouster of top officials
➝
Norwegian Labor and Welfare Administration fined for data protection failures
➝
French government recommends against using foreign chat apps
➝
"Sierra:21" vulnerabilities impact #criticalinfrastructure routers
➝
New Stealthy 'Krasue' #Linux Trojan Targeting #Telecom Firms in Thailand
➝
SpyLoan #Android malware on Google Play downloaded 12 million times
➝ #LogoFAIL: UEFI Vulnerabilities Expose Devices to Stealth Malware Attacks
➝
Just about every #Windows and #Linux device vulnerable to new LogoFAIL firmware attack
➝
#Meta Launches Default End-to-End Encryption for Chats and Calls on Messenger
➝ Addressing post-quantum #cryptography with #CodeQL
➝
#Gmail’s AI-powered #spam detection is its biggest security upgrade in years
➝
Your mobile password manager might be exposing your credentials
➝ #Qualcomm Releases Details on Chip Vulnerabilities Exploited in Targeted Attacks
This week's recommended reading is: "The Web Application Hacker's Handbook: Finding and Exploiting Security Flaws" by Dafydd Stuttard
Subscribe to the #infosecMASHUP newsletter to have it piping hot in your inbox every week-end
https://infosec-mashup.santolaria.net/p/infosec-mashup-week-492023
@nixCraft I still write #coldfusion you insensitive clod :-)
What is the Cyber Trust Mark? & Major ColdFusion & Microsoft Exchange Hacks Underway!
Latest issue of my curated #cybersecurity and #infosec list of resources for week #29/2023 is out! It includes the following and much more:
➝
#Russia Seeks 18 Years in Jail for Founder of #Cybersecurity Firm
➝
Pro-Russian hacktivists increase focus on Western targets. The latest is #OnlyFans
➝
#DDoS Botnets Hijacking #Zyxel Devices to Launch Devastating Attacks
➝ New #P2PInfect Worm Targeting Redis Servers on #Linux and #Windows Systems
➝
#Google restricting internet access to some employees to reduce #cyberattack risk
➝
#Apple slams UK surveillance-bill proposals
➝
Cybersecurity firm #Sophos impersonated by new #SophosEncrypt ransomware
➝
#Ukraine takes down massive bot farm, seizes 150,000 SIM cards
➝
#CISA and #NSA Issue New Guidance to Strengthen #5G Network Slicing Against Threats
➝
Chinese #APT41 Hackers Target Mobile Devices with New WyrmSpy and DragonEgg #Spyware
➝
Famed Hacker Kevin Mitnick Dead at 59
➝
U.S. Government Blacklists #Cytrox and #Intellexa Spyware Vendors for Cyber Espionage
➝
#Citrix alerts users to critical vulnerability in Citrix ADC and Gateway
➝
#VirusTotal Data Leak Exposes Some Registered Customers' Details
➝
FIN8 Group Using Modified Sardonic #Backdoor for #BlackCat Ransomware Attacks
➝
#GitHub Security alert: social engineering campaign targets technology industry employees
➝
Analysis of #Storm0558 techniques for unauthorized email access
➝
#Microsoft Bug Allowed Hackers to Breach Over Two Dozen Organizations via Forged Azure AD Tokens
➝
White House, #FCC advance efforts to add security labels to connected devices
➝
Police arrests Ukrainian #scareware developer after 10-year hunt
➝
#Norway Threatens $100,000 Daily Fine on #Meta Over Data
➝
Two New Adobe #ColdFusion Vulnerabilities Exploited in Attacks
➝
#JumpCloud Says Sophisticated Nation-State Hackers Targeted Specific Customers
➝
#MOVEit Hack: Number of Impacted Organizations Exceeds 340
This week's recommended reading is: "Leadership Is Changing the Game - The Transition from Technical Expert to Leader" by Brian Donovan
Subscribe to the #infosecMASHUP newsletter to have it piping hot in your inbox every week-end
https://infosec-mashup.santolaria.net/p/infosec-mashup-week-292023
#ColdFusion
"A US agency is funding low-energy nuclear reactions to the tune of $10 million."
https://www.popsci.com/science/cold-fusion-low-energy-nuclear-reaction/
This is my #introduction post. I definitely did not make any posts before this.
- He/him
- I enjoy #cooking a lot.
- I'm a #SoftwareEngineer doing #webdev and #mobiledev (#JavaScript, #JQuery, #ColdFusion, #MySQL, #MSSQL, #Flutter, #Dart).
- I like #manga, #anime, and #manhwa, #DnD, #MagicTheGathering, #EDH, #Wildermyth, #LeagueOfLegends (but ARAM shenanigans only!)
- Eclectic music tastes.
- Recognizes the benefits of going outside but struggles to do so.
- I write lists often.
@vpavlyshyn In what order did you learn your languages?
(as best as I can remember)
#Algol60 (1976 - high school)
#BASIC (1978)
#Pascal (1979 - university)
#Assembly (1980)
#PL/P (1981 - a subset of PL/1 developed by Prime Computer)
#COBOL (1981 - sandwich year job)
#APL (1982)
#Algol68 (1982)
#Lisp (1983)
#SML (1983 - postgrad work)
#Prolog (1984)
#Miranda (1985)
#C (1985)
#FORTRAN (1986)
#Smalltalk (1987)
#C++ (1992-1997 - ANSI X3J16 member)
#Java (1997)
#Perl (2001)
#ColdFusion (2002 - at Macromedia after they bought Allaire)
#Groovy (2007)
#Scala (2009)
#Clojure (2010)
#Python (2013)
#Ruby (2013)
#Elm (2013)
#GoLang (2014)
#Rust (2015)
#Kotlin (2017)
And various attempts at learning #Haskell since the mid-'90s!
#Clojure is my daily work language these days.
For folks interested in #cfml #lucee #adobe #coldfusion ...
#CFCamp 2023 Call for Papers should be out there in the next couple of days.
#introduction I'm the author of 100 books on #Science and #ScienceFiction. I love anything #StarWars or #NASA or #SpaceX related. Currently the originator of the idea that we could SOON have Two Suns in the sky by simply using a #ColdFusion jump start on #Jupiter. What I call 'The Greatest Achievement in Human history. Check out - The Book To End All Books on #Amazon Books ASAP - solution to our #EnergyCrisis - OVERNIGHT~! https://www.amazon.com/dp/B0BL2JMSSJ/ Would appreciate some kind #BookReviews
I'm going to follow @joshdholtz's example and post an #introduction.
I'm Joe Steinbring. I am a developer from Milwaukee, Wisconsin. I have dogs and a cat, like to travel, and tend to collect hobbies.
I work at https://baderrutter.com/, blog at https://blog.jws.app/ and https://dev.to/steinbring, and ocassionally post code snippets to https://codepen.io/steinbring.
I used to write a lot of #coldfusion / #cfml, currently write a lot of #vue / #vuejs, and am trying to pick up #dotnet / #blazor.