Cyber Defense Advisors

Month: January 2023

Friday Squid Blogging: Squid Fetish

Seems that about 1.5% of people have a squid fetish. As usual, you can also use this squid post to talk about the security stories in the news that I haven’t covered. Read my blog posting guidelines here.

Cyber News, Cyber Threat Trends

How to configure an SMTP server in a self-hosted instance Passbolt

With the self-hosted Passbolt password manager, you must configure an SMTP server to use the collaboration features. Learn how to do it. The post How to configure an SMTP server in a self-hosted instance Passbolt appeared first on TechRepublic.

Cyber News, Cyber Threat Trends

Meta violates GDPR with non-compliant targeted ad practices, earns over $400 million in fines

Meta has violated GDPR with illegal personal data collection practices for targeted ads. Learn about this latest violation and Meta’s rocky GDPR history. The post Meta violates GDPR with non-compliant targeted ad practices, earns over $400 million in fines appeared first on TechRepublic.

Cyber News, Cyber Threat Trends
  • by
  • January 5, 2023

Attackers use stolen banking data as phishing lure to deploy BitRAT

In a case that highlights how attackers can leverage information from data breaches to enhance their attacks, a group of attackers is using customer information stolen from a Colombian bank in phishing attacks with malicious documents, researchers report. The group, which might have been responsible for the data breach in the first place, is distributing […]

Cyber News, Cyber Threat Trends

Data of over 200 million Deezer users stolen, leaks on hacking forum

Music-streaming service Deezer has owned up to a data breach, after hackers managed to steal the data of over 200 million of its users.

Cyber News, Cyber Threat Trends
  • by
  • January 4, 2023

PyTorch suffers supply chain attack via dependency confusion

Users who deployed the nightly builds of PyTorch between Christmas and New Year’s Eve likely received a rogue package as part of the installation that siphoned off sensitive data from their systems. The incident was the result of an attack called dependency confusion that continues to impact package managers and development environments if hardening steps […]

Cyber News, Cyber Threat Trends

Explaining API

An API, or Application Programming Interface, is a set of rules and protocols that specifies how software programs should interact with each other. The post Explaining API appeared first on .

Cyber News, Cyber Threat Trends
  • by
  • January 3, 2023

Ransomware ecosystem becoming more diverse for 2023

The ransomware ecosystem has changed significantly in 2022, with attackers shifting from large groups that dominated the landscape toward smaller ransomware-as-a-service (RaaS) operations in search of more flexibility and drawing less attention from law enforcement. This democratization of ransomware is bad news for organizations because it also brought in a diversification of tactics, techniques, and […]

Cyber News, Cyber Threat Trends
  • by
  • January 3, 2023

Authentication Flow for Batch Jobs

Considering the threat model and attack surface This is a continuation of my series on Automating Cybersecurity Metrics. Very happy to get back to my security metrics automation series in 2023 and a bunch of other things I want to finish. Had a great Azure Security class at the end of the year, but so tired […]

Cyber News, Cyber Threat Trends