Cyber Defense Advisors

Month: October 2022

Meta Sues Chinese Devs Over WhatsApp Malware Plot

Fake apps led to account takeovers and spam campaigns

Cyber News

BlackByte Ransomware Abuses Vulnerable Windows Driver to Disable Security Solutions

In yet another case of bring your own vulnerable driver (BYOVD) attack, the operators of the BlackByte ransomware are leveraging a flaw in a legitimate Windows driver to bypass security solutions. “The evasion technique supports disabling a whopping list of over 1,000 drivers on which security products rely to provide protection,” Sophos threat researcher Andreas […]

Cyber News

Sharing Knowledge at 44CON

The infosec conference named after the UK’s calling code returned this year with a focus on building a healthy community.

Cyber News

FBI and CISA Publish Advisory on Malicious Cyber Activity Against Election Infrastructure

Threat actors trying to compromise elections are unlikely to result in large-scale disruptions

Cyber News

macOS Archive Utility Bug Lets Malicious Apps Bypass Security Checks

Exploit allows unsigned and unnotarized macOS applications to bypass Gatekeeper and other security, without notifying the user.

Cyber News

Former Uber CSO found guilty of obstruction in attempted data breach cover-up

Joe Sullivan schemed to hide a 2016 breach of 57 million users’ information shortly after he was hired. The post Former Uber CSO found guilty of obstruction in attempted data breach cover-up appeared first on TechRepublic.

Cyber News

Guilty verdict in the Uber breach case makes personal liability real for CISOs

Yesterday, a federal jury handed down a guilty verdict to Joe Sullivan, the former CSO on charges of “obstruction of the proceedings of the Federal Trade Commission and misprision of felony in connection with the attempted cover-up of a 2016 hack at Uber” according to a notice published by the Department of Justice (DOJ). US […]

Cyber News

Russian Hackers Shut Down US State Government Websites

Russian-speaking cyberattackers boast they are behind disruption of Colorado, Kentucky, and Mississippi government websites.

Cyber News

TransUnion taps behavioral analytics to aid fraud detection, curb false positives

Consumers who have used a credit card for a legitimate purchase only to have the sale rejected may be encountering a problem that costs enterprises billions of dollars a year: cybersecurity technology that is designed for fraud detection often ends up generating false positives, incorrectly sending out an alert that a transaction is suspicious. To […]

Cyber News