In a tight economy, security budgets have been under scrutiny. Vendor consolidation strategies are real, but what are the pros and cons of this strategy? Shawn Surber from Tanium joins us to discuss how vendor consolidation is playing out and what to look for. It's not just an expense exercise, it's also a strategic alignment exercise. This segment...
BleepingComputer reports that internet-facing Linux and Internet of Things devices have been targeted by brute-force attacks involving the distribution of a trojanized OpenSSH package to facilitate compromise and SSH credential exfiltration.
Schneider Electric's ION and PowerLogic power meters are being affected by a high-severity vulnerability, tracked as CVE-2022-46680, which could be leveraged to obtain credential access and facilitate configuration setting and firmware modifications, according to The Record, a news site by cybersecurity firm Recorded Future.
Poorly secured Linux SSH servers have been subjected to brute-force attacks by an unknown threat actor deploying the Tsunami and ShellBot distributed denial-of-service bots, as well as privilege escalation tools, log cleaners, and an XMRig coin miner, reports BleepingComputer.
Condi DDoS botnet distributed through TP-Link WiFi router flaw BleepingComputer reports that vulnerable TP-Link Archer AX21 (AX1800) WiFi routers impacted by the high-severity vulnerability, tracked as CVE-2023-1389, have been targeted to facilitate the distribution of the novel DDoS-as-a-Service botnet Condi, which emerged last month.
Security updates have been issued by Zyxel to resolve a critical pre-authentication command injection flaw impacting certain network-attached storage devices, according to The Hacker News.
In the Security News: There is no national cyber director, time to move away from MoveIT, update Microsoft IIS at least every 6 years, your security system is not secure, for that matter neither is your smart pet feeder, identity management is hard, at least for some, spies using spy gadgets to spy on spies, go ahead and just replace your hardware,...
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.