Cyber Defense Advisors

Cyber News

  • by
  • November 2, 2022

How to securely manage LAPS on a Windows network

Passwords have always been a pain point in securing computing infrastructure. Complexity and length are key components of a strong password, but both make it inherently difficult for a human to remember. Additionally, passwords should be changed periodically, fine when you’re working with a handful of devices, but when your network is distributed geographically with […]

Cyber News, Cyber Threat Trends

Twitter Verified Status Users Flooded with Scams

Elon Musk’s arrival has opened the door for fraudsters

Cyber News, Cyber Threat Trends

AT&T Cybersecurity Insights Report: Focus Energy and Utilities

As energy and utilities companies strive to use the edge to innovate new solutions for delivering more efficient and resilient services, cybersecurity risks to carrying out those business missions loom large. Ransomware attackers and other cybercriminals have increasingly found energy and utilities organizations a profitable target, lobbying high-profile attacks in the last few years that […]

Cyber News, Cyber Threat Trends

A Third of Security Leaders Considering Quitting Their Current Role

Of those thinking of leaving their current organization, a third would do so within the next six months, according to the research

Cyber News, Cyber Threat Trends
  • by
  • November 2, 2022

Dropbox Breach: Hackers Unauthorizedly Accessed 130 GitHub Source Code Repositories

File hosting service Dropbox on Tuesday disclosed that it was the victim of a phishing campaign that allowed unidentified threat actors to gain unauthorized access to 130 of its source code repositories on GitHub. “These repositories included our own copies of third-party libraries slightly modified for use by Dropbox, internal prototypes, and some tools and […]

Cyber News, Cyber Threat Trends
  • by
  • November 2, 2022

Still Using Passwords? Get Started with Phishing-Resistant, Passwordless Authentication Now!

Going beyond the hype, passwordless authentication is now a reality. Cisco Duo’s passwordless authentication is now generally available across all Duo Editions. “Cisco Duo simplifies the passwordless journey for organizations that want to implement phishing-resistant authentication and adopt a zero trust security strategy.“ – Jack Poller, Senior Analyst, ESG We received tremendous participation and feedback […]

Cyber News, Cyber Threat Trends
  • by
  • November 1, 2022

OpenSSL project patches two vulnerabilities but downgrades severity

The OpenSSL project released a patch for two high severity vulnerabilities in the world’s most widely used cryptographic library. The project’s maintainers warned users since last week to prepare for a critical patch on November 1, but the severity has since been downgraded following additional testing. Organizations should still determine which of their applications and […]

Cyber News, Cyber Threat Trends

Osaka Hospital Halts Services After Ransomware Attack

Emergency operations are continuing, but the hospital system failed and cannot be accessed

Cyber News, Cyber Threat Trends
  • by
  • November 1, 2022

OpenSSL Releases Patch for 2 New High-Severity Vulnerabilities

The OpenSSL project has rolled out fixes to contain two high-severity flaws in its widely used cryptography library that could result in a denial-of-service (DoS) and remote code execution. The issues, tracked as CVE-2022-3602 and CVE-2022-3786, have been described as buffer overrun vulnerabilities that can be triggered during X.509 certificate verification by supplying a specially-crafted email

Cyber News, Cyber Threat Trends