Cyber Defense Advisors

Cyber News

  • by
  • November 9, 2022

GitHub releases new SDLC security features including private vulnerability reporting

GitHub has announced new security features across its platform to help protect the software development lifecycle (SDLC). These include private vulnerability reporting, CodeQL vulnerability scanning support for the Ruby programming language, and two new security overview options. The world’s leading development platform said these updates make securing the SDLC end-to-end easier and more seamless for […]

Cyber News, Cyber Threat Trends
  • by
  • November 9, 2022

Researchers show techniques for malware persistence on F5 and Citrix load balancers

Over the past several years, hackers have targeted public-facing network devices such as routers, VPN concentrators, and load balancers to gain a foothold into corporate networks. While finding remote code execution vulnerabilities in such devices is not uncommon, incidents where attackers were able to deploy malware on them that can survive restarts or firmware upgrades […]

Cyber News, Cyber Threat Trends
  • by
  • November 9, 2022

Exchange 0-days fixed (at last) – plus 4 brand new Patch Tuesday 0-days!

In all the excitement, we kind of lost count ourselves. Were there six 0-days, or only four?

Cyber News, Cyber Threat Trends

Top 6 Multi-Cloud Security Solution Providers

If you’re in the process of constructing a multi-cloud security plan, these providers can help you avoid the most common pitfalls of multi-cloud security. The post Top 6 Multi-Cloud Security Solution Providers appeared first on TechRepublic.

Cyber News, Cyber Threat Trends

Malicious Package on PyPI Hides Behind Image Files, Spreads Via GitHub

The findings indicate that PyPI malicious packages and their obfuscation techniques are evolving

Cyber News, Cyber Threat Trends

High-Risk Vulnerability Found in ABB’s Flow Computers

Attackers could exploit it by sending a specially crafted message to an affected system node

Cyber News, Cyber Threat Trends

Having refused to pay ransom, health insurer Medibank sees customer data posted online by hackers

A ransomware gang has begun to publish data on the dark web stolen from Australia’s largest health insurer Medibank. Curiously, the hackers have released details of insured customers, sorted into two files bearing the label “naughty-list” and “good-list.” Read more in my article on the Hot for Security blog.

Cyber News, Cyber Threat Trends

Medibank Confirms Data Stolen in Breach is Now Available Online

The leaked data includes personal data like names, addresses and phone numbers, among others

Cyber News, Cyber Threat Trends

Cisco Secure Endpoint – looking very positive in recent reports!

Lots of exciting things happening at Cisco, and for our customers, all to help them better prepare for what’s next. Case in point, we just returned from a very successful Cisco Partner Summit where the spotlight shined on cyber security. When our executives were on stage talking about solutions, the attendees heard a very catchy […]

Cyber News, Cyber Threat Trends