Cyber Defense Advisors

Year: 2023

  • by
  • April 20, 2023

NSO Group Used 3 Zero-Click iPhone Exploits Against Human Rights Defenders

Israeli spyware maker NSO Group deployed at least three novel “zero-click” exploits against iPhones in 2022 to infiltrate defenses erected by Apple and deploy Pegasus, according to the latest findings from Citizen Lab. “NSO Group customers widely deployed at least three iOS 15 and iOS 16 zero-click exploit chains against civil society targets around the […]

Cyber News, Cyber Threat Trends

EFF on the UN Cybercrime Treaty

EFF has a good explainer on the problems with the new UN Cybercrime Treaty, currently being negotiated in Vienna. The draft treaty has the potential to rewrite criminal laws around the world, possibly adding over 30 criminal offenses and new expansive police powers for both domestic and international criminal investigations. […] While we don’t think […]

Cyber News, Cyber Threat Trends

Conversational Attacks Fastest Growing Mobile Threat

Pig butchering and similar scams could soon be AI-driven

Cyber News, Cyber Threat Trends

Spyware Company QuaDream Set to Close

Under-fire Israeli firm was accused of developing zero-day exploits

Cyber News, Cyber Threat Trends

Friday Squid Blogging: Colossal Squid

Interesting article on the colossal squid, which is larger than the giant squid. The article answers a vexing question: So why do we always hear about the giant squid and not the colossal squid? Well, part of it has to do with the fact that the giant squid was discovered and studied long before the […]

Cyber News, Cyber Threat Trends
  • by
  • April 16, 2023

AWS S3 Bucket Configuration

ACM.191 What are all those properties and how should we configure them? Continue reading on Cloud Security »

Cyber News, Cyber Threat Trends
  • by
  • April 16, 2023

Google Releases Urgent Chrome Update to Fix Actively Exploited Zero-Day Vulnerability

Google on Friday released out-of-band updates to resolve an actively exploited zero-day flaw in its Chrome web browser, making it the first such bug to be addressed since the start of the year. Tracked as CVE-2023-2033, the high-severity vulnerability has been described as a type confusion issue in the V8 JavaScript engine. Clement Lecigne of Google’s Threat Analysis […]

Cyber News, Cyber Threat Trends
  • by
  • April 16, 2023

Bug in AWS CloudShell

Duplicates lines, making it difficult to edit files Continue reading on Bugs That Bite »

Cyber News, Cyber Threat Trends
  • by
  • April 16, 2023

Generic Template for an S3 Bucket

ACM.192 Creating a reusable CloudFormation template for S3 buckets Continue reading on Cloud Security »

Cyber News, Cyber Threat Trends