Cyber Defense Advisors

Cyber Threat Trends

  • by
  • October 27, 2022

Apple iOS and macOS Flaw Could’ve Let Apps Eavesdrop on Your Conversations with Siri

A now-patched security flaw in Apple’s iOS and macOS operating systems could have potentially enabled apps with Bluetooth access to eavesdrop on conversations with Siri. Apple said “an app may be able to record audio using a pair of connected AirPods,” adding it addressed the Core Bluetooth issue in iOS 16.1 with improved entitlements. Credited […]

Cyber News, Cyber Threat Trends

11 Cybersecurity investments you can make right now

This blog was written by an independent guest blogger. The average cost of a data breach will continue to rise, which means companies need to start planning accordingly. To protect your business, you need to invest in cybersecurity. Here are 11 areas you should focus on. Cyber insurance Cyber insurance is designed to protect businesses […]

Cyber News, Cyber Threat Trends
  • by
  • October 27, 2022

Attack Surface Management 2022 Midyear Review Part 2

In our 2022 midyear roundup, we examine the most significant trends and incidents that influenced the cybersecurity landscape in the first half of the year.

Cyber News, Cyber Threat Trends

White House Launches Chemical Sector Security Sprint

Bid to improve critical national infrastructure continues

Cyber News, Cyber Threat Trends

GitHub Bug Exposed Repositories to Hijacking

Checkmarx warns over 10,000 popular packages could be vulnerable

Cyber News, Cyber Threat Trends
  • by
  • October 27, 2022

Australian Health Insurer Medibank Suffers Breach Exposing 3.9 Million Customers’ Data

Australian health insurance firm Medibank on Wednesday disclosed that the personal information of all of its customers had been unauthorizedly accessed following a recent ransomware attack. In an update to its ongoing investigation into the incident, the firm said the attackers had access to “significant amounts of health claims data” as well as personal data belonging to […]

Cyber News, Cyber Threat Trends
  • by
  • October 27, 2022

New Cryptojacking Campaign Targeting Vulnerable Docker and Kubernetes Instances

A new cryptojacking campaign has been uncovered targeting vulnerable Docker and Kubernetes infrastructures as part of opportunistic attacks designed to illicitly mine cryptocurrency. Cybersecurity company CrowdStrike dubbed the activity Kiss-a-dog, with its command-and-control infrastructure overlapping with those associated with other groups like TeamTNT, which are known to strike misconfigured

Cyber News, Cyber Threat Trends
  • by
  • October 27, 2022

From Bounty to Exploit: Observations About Cybercriminal Contests

From articles to hackathons, cybercriminals are resorting to crowdsourcing to find more ways to exploit systems. In this blog, we discuss our takeaways and summarize the results of these contests.

Cyber News, Cyber Threat Trends