Cyber Defense Advisors

Month: September 2023

  • by
  • September 4, 2023

Why Instagram Threads is a hotbed of risks for businesses

Instagram’s Threads platform launched to great fanfare in July with a massive surge of users signing up for the new text-sharing and public conversation service, including businesses using the service as an extension of existing social media and communications programs. Many have seen it as an alternative to Elon Musk’s X — formerly Twitter — […]

Cyber News, Cyber Threat Trends

Freecycle users told to change passwords after data breach

Freecycle, an online community that encourages sharing unwanted items with eachother than chucking them in the bin or taking them to landfill, has told users to change their passwords after it suffered a data breach.

Cyber News, Cyber Threat Trends
  • by
  • September 3, 2023

PoC Exploit Released for Critical VMware Aria’s SSH Auth Bypass Vulnerability

Proof-of-concept (PoC) exploit code has been made available for a recently disclosed and patched critical flaw impacting VMware Aria Operations for Networks (formerly vRealize Network Insight). The flaw, tracked as CVE-2023-34039, is rated 9.8 out of a maximum of 10 for severity and has been described as a case of authentication bypass due to a lack […]

Cyber News, Cyber Threat Trends

Friday Squid Blogging: We’re Genetically Engineering Squid Now

Is this a good idea? The transparent squid is a genetically altered version of the hummingbird bobtail squid, a species usually found in the tropical waters from Indonesia to China and Japan. It’s typically smaller than a thumb and shaped like a dumpling. And like other cephalopods, it has a relatively large and sophisticated brain. […]

Cyber News, Cyber Threat Trends
  • by
  • September 2, 2023

IAM for Multi-Cloud Security

Multicloud.11 IAM is challenging and one of your biggest cloud security risks Continue reading on Cloud Security »

Cyber News, Cyber Threat Trends
  • by
  • September 2, 2023

What Would Make Cloud Security Easier?

Multicloud.12 A proposed standard for cloud deployments and drift detection Continue reading on Cloud Security »

Cyber News, Cyber Threat Trends
  • by
  • September 2, 2023

Okta Warns of Social Engineering Attacks Targeting Super Administrator Privileges

Identity services provider Okta on Friday warned of social engineering attacks orchestrated by threat actors to obtain elevated administrator permissions. “In recent weeks, multiple US-based Okta customers have reported a consistent pattern of social engineering attacks against IT service desk personnel, in which the caller’s strategy was to convince service desk personnel to reset all

Cyber News, Cyber Threat Trends
  • by
  • September 1, 2023

Revisiting 16shop Phishing Kit, Trend-Interpol Partnership

In this entry, we summarize the security analyses and investigations done on phishing-as-a-service 16shop through the years. We also outline the partnership between Trend Micro and Interpol in taking down the main administrators and servers of this massive phishing campaign.

Cyber News, Cyber Threat Trends