News
Hi folks,
I hope this issue finds you in good health and spirits! My latest Covid journey has run its course, so I'm happily back to work, feels good :-) Enjoy the read and have a good weekend!
Cheers,
Biden bans Kaspersky antivirus software in US over security concerns
The Biden administration has announced an upcoming ban of Kaspersky antivirus software and the pushing of software updates to US companies and consumers, giving customers until September 29, 2024, to find alternative security software.
Phoenix UEFI vulnerability impacts hundreds of Intel PC models
A newly discovered vulnerability in Phoenix SecureCore UEFI firmware impacts devices running numerous Intel CPUs, with Lenovo already releasing new firmware updates to resolve the flaw. The vulnerability is dubbed 'UEFICANHAZBUFFEROVERFLOW' by the way, because of course it is.
DHS releases critical infrastructure priorities for next two years
The agency says AI and China are some of the biggest cyber threats to the nation's most sensitive networks.
What you get when running an SSH honeypot for 30 Days
Nice post that gives some idea of what kind of scanners are out there. Good Hackernews discussion too.
Quick links
- Microsoft: New Outlook security changes coming to personal accounts: link.
- Proton is taking its privacy-first apps to a nonprofit foundation model: link.
- G7 countries vow to establish collective cybersecurity framework for operational tech: link.
- US and Indonesia hold port-focused cybersecurity exercise: link.
- US federal contractors pay multimillion-dollar settlements over cybersecurity lapses: link.
Breaches and leaks
- CDK Global cyberattack impacts thousands of US car dealerships: link.
- CDK Global hacked again while recovering from first cyberattack: link.
- Scathing report on Medibank cyberattack highlights unenforced MFA: link.
- Panera Bread likely paid a ransom in March ransomware attack: link.
- "Researchers" exploit Kraken exchange bug, steal $3 million in crypto: link.
- Advance Auto Parts confirms data breach exposed employee information: link.
- Crown Equipment confirms a cyberattack disrupted manufacturing: link.
- More than 12,000 Santander employees in US affected by Snowflake breach: link.
- More than 400,000 have data leaked in cyberattack on Texas education organization: link.
- Blackbaud must pay $6.75 million, improve security after lying about scope of 2020 hack: link.
1Password: the password manager with (to me) the best UX
I'm not going to write a long marketing-heavy paragraph on this one. I just love using 1Password. The UX, the support, the integrations, it all works wonderfully. Highly recommended. (Sponsored)