In the security news: When in doubt, blame DNS, you're almost always correct, How to Make Windows 11 great, or at least suck less, CSRF is the least of your problems, Shady exploits, Linux security table stakes (not steaks), The pill camera, Give AI access to your UART, Security products that actually try to be secure?, Firmware vulnerabilities, lo...
First up is a technical segment on UEFI shells: determining if they contain dangerous functionality that allows attackers to bypass Secure Boot. Then in the security news: Your vulnerability scanner is your weakest link, Scams that almost got me, The state of EDR is not good, You don't need to do that on a phone or Raspberry PI, Hash cracking and e...
The Aisuru distributed denial-of-service botnet's record-breaking attack last week that peaked at 29.6 Tbps has been primarily driven by breached Internet of Things devices on U.S. internet service providers, KrebsOnSecurity reports.
This week we kick things off with a special interview: Kieran Human from ThreatLocker talks about EDR bypasses and other special projects. In the security news: Hacking TVs, Flushable wipes are not the only problem, People just want to spy on their pets, except the devices can be hacked, Linux EDR is for the birds, What does my hat say, we love exp...
Threat of Year 2036/2038 vulnerabilities detailed Threat actors could harness the "Year 2036 Problem" and "Year 2038 Problem" rollover vulnerabilities impacting systems using older Network Time Protocol versions and those that leverage a 32-bit integer for time storage, respectively, to prompt significant disruptions over a decade before they are actually triggered, according to SecurityWeek.
Hackread reports that the most significant Layer 7 distributed denial-of-service attack aimed at a government entity, which involved a botnet composed of 5.76 million breached internet-connected devices and systems around the world, was averted by Qrator Labs earlier this month.
This week: Americans Can't Hack It, Copy and paste to get malware, Pixel 5 web servers - because you can, How they got in and why security is hard, Vulnerability management is failing - is it dead yet?, Exploiting hacker tools, Bluetooth spending spree!, How to defend your car, IoT security solutions and other such lies, Exploiting IBM i (formerly ...
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.