Cyber Defense Advisors

News

  • by
  • October 19, 2022

User-Specific Secrets on AWS: KMS

ACM.84 Granting an IAM Group permission to use a KMS key in a Key Policy This is a continuation of my series of posts on Automating Cybersecurity Metrics. We’ve been working on adding a user-specific secret in Secrets Manager in the past few posts and considered how to deploy secrets in a manner that supports non-repudiation. […]

Cyber News, Cyber Threat Trends

Spyder Loader Malware Deployed Against Hong Kong Organizations

The attackers reportedly remained active on some networks for more than a year

Cyber News, Cyber Threat Trends

HelpSystems Patch Falls Short, RCE Vulnerability in Cobalt Strike Remains

Certain components in Java Swing will interpret text as HTML content if it starts with

Cyber News, Cyber Threat Trends

Zoom Patches High-Severity Flaw in macOS Client

The flaw could allow an attacker to connect to clients and control the Zoom Apps running in it

Cyber News, Cyber Threat Trends
  • by
  • October 19, 2022

Dangerous hole in Apache Commons Text – like Log4Shell all over again

Third time unlucky. Time to put your patching boots on again…

Cyber News, Cyber Threat Trends
  • by
  • October 19, 2022

Zoom for Mac patches sneaky “spy-on-me” bug – update now!

Hey! That back door isn’t supposed to be there at all, let alone propped open…

Cyber News, Cyber Threat Trends

Plugging holes remote work punched through security

Mike Arrowsmith, chief trust officer at NinjaOne, makes the case for a permanent shift in the way businesses conduct remote security. The post Plugging holes remote work punched through security appeared first on TechRepublic.

Cyber News, Cyber Threat Trends

Gartner: IT force multipliers for sustainable growth, cyber resiliency and responsible investment

Gartner analysts outline the steps CIOs need to take to “revolutionize work” for the next stage of digital and detail how to power sustainability outcomes during a keynote address at the Gartner IT Symposium/Xpo Monday. The post Gartner: IT force multipliers for sustainable growth, cyber resiliency and responsible investment appeared first on TechRepublic.

Cyber News, Cyber Threat Trends

Asana launches enterprise-level workplace tools for prioritization and planning

A slew of new Asana capabilities are geared toward enhancing reporting, decreasing duplicate cross-functional work and costs, and strengthening security. The post Asana launches enterprise-level workplace tools for prioritization and planning appeared first on TechRepublic.

Cyber News, Cyber Threat Trends