Cyber Defense Advisors

Month: October 2023

Cisco Can’t Stop Using Hard-Coded Passwords

There’s a new Cisco vulnerability in its Emergency Responder product: This vulnerability is due to the presence of static user credentials for the root account that are typically reserved for use during development. An attacker could exploit this vulnerability by using the account to log in to an affected system. A successful exploit could allow […]

Cyber News, Cyber Threat Trends

Cisco Can’t Stop Using Hard-Coded Passwords

There’s a new Cisco vulnerability in its Emergency Responder product: This vulnerability is due to the presence of static user credentials for the root account that are typically reserved for use during development. An attacker could exploit this vulnerability by using the account to log in to an affected system. A successful exploit could allow […]

Cyber News, Cyber Threat Trends

How to Mount Remote Directories with SSH (+Video Tutorial)

Learn how to easily mount remote directories with the help of a more secure SSH tool. Follow along with Jack Wallen in our step-by-step tutorial.

Cyber News, Cyber Threat Trends

How to Mount Remote Directories with SSH (+Video Tutorial)

Learn how to easily mount remote directories with the help of a more secure SSH tool. Follow along with Jack Wallen in our step-by-step tutorial.

Cyber News, Cyber Threat Trends
  • by
  • October 11, 2023

New One-Click Exploit Is a Supply Chain Risk for Linux OSes

An overlooked library contains a vulnerability that could enable full remote takeover simply by clicking a link.

Cyber News, Cyber Threat Trends
  • by
  • October 11, 2023

Badbox Operation Targets Android Devices in Fraud Schemes

Researchers believe that more than 70,000 Android devices may have been affected with preloaded Peachpit malware that was installed on the electronics before being sold at market.

Cyber News, Cyber Threat Trends
  • by
  • October 11, 2023

Built-in weakness in HTTP/2 protocol exploited for massive DDoS attacks

Over the past two months attackers have been abusing a feature of the HTTP/2 web communication protocol that makes web application servers, load balancers, and web proxies vulnerable to distributed denial-of-service (DDoS) attacks of unprecedented scale. Google, AWS, Cloudflare, and other major cloud infrastructure providers, as well as web server vendors have been working on […]

Cyber News, Cyber Threat Trends
  • by
  • October 11, 2023

Microsoft Patch Tuesday Haunted by Zero-Days, Wormable Bug

October’s CVE update is here. Here’s which security vulnerabilities to patch now to exorcise your Microsoft systems demons.

Cyber News, Cyber Threat Trends
  • by
  • October 11, 2023

Patch Tuesday, October 2023 Edition

Microsoft today issued security updates for more than 100 newly-discovered vulnerabilities in its Windows operating system and related software, including four flaws that are already being exploited. In addition, Apple recently released emergency updates to quash a pair of zero-day bugs in iOS. Apple last week shipped emergency updates in iOS 17.0.3 and iPadOS 17.0.3 […]

Cyber News, Cyber Threat Trends