Remove weekly-update-80
article thumbnail

Weekly Update 80

Troy Hunt

It's a MASSIVE weekly update! The big news for me this week is the 1Password partnership and I've really tried to share more about how I came to the decision to work with them in this video. Gold Security is sponsoring troyhunt.com this week (big thanks to those guys for their ongoing support!).

article thumbnail

Weekly Update 177

Troy Hunt

I'm talking about that trip in this week's update along with the Chrome 80 changes to SameSite cookies not that its hit, the Adult FriendFinder breach and then recapping on a heap of the week's news in tweets. are on the way and hopefully they'll be all good for next week when I'm in Sydney.

259
259
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Microsoft Rolls Out Patches for 80 New Security Flaws — Two Under Active Attack

The Hacker News

Microsoft's Patch Tuesday update for March 2023 is rolling out with remediations for a set of 80 security flaws, two of which have come under active exploitation in the wild. Eight of the 80 bugs are rated Critical, 71 are rated Important, and one is rated Moderate in severity.

99
article thumbnail

Spring4Shell patching is going slow but risk not comparable to Log4Shell

CSO Magazine

While exploitation attempts have already been observed in the wild, the rate at which developers are updating their Spring instances appears to be slow going. While exploitation attempts have already been observed in the wild, the rate at which developers are updating their Spring instances appears to be slow going.

Risk 116
article thumbnail

TheMoon bot infected 40,000 devices in January and February

Security Affairs

The Black Lotus Labs team at Lumen Technologies uncovered an updated version of “ TheMoon ” bot targeting end-of-life (EoL) small home/small office (SOHO) routers and IoT devices. ” Then the binary sets up these iptable rules that drop incoming TCP traffic on ports 8080 and 80 while accepting traffic from specific addresses.

IoT 123
article thumbnail

BlackCat Ransomware Raises Ante After FBI Disruption

Krebs on Security

Like many other ransomware operations, BlackCat operates under the “ransomware-as-a-service” model, where teams of developers maintain and update the ransomware code, as well as all of its supporting infrastructure. A slightly modified version of the FBI seizure notice on the BlackCat darknet site (Santa caps added).

article thumbnail

US Orders Rare Emergency System Shut-Downs After Severe CyberSecurity Breach Hits Government And Businesses

Joseph Steinberg

Russian government hackers are believed to have poisoned with malware updates of the SolarWinds Orion products used in many government agencies and in over 80% of the Fortune 500, introducing vulnerabilities that the hackers then exploited to conduct espionage and to pilfer extremely sensitive materials.