Security Now!

SN 852: December 33rd - Log4j Update, RSA Postponed, Hack the DHS Expanded, Cyber Insurance Cost Rising

Hinzugefügt: 5. Januar 2022

Picture of the Week.
Log4j's 5th update.
Microsoft's Log4j scanner triggers false positives.
Chinese government is annoyed with Alibaba.
"Hack the DHS" Bug Bounty Expanded.
COVID postpones the RSA...

SN 851: Best of 2021 - The Year's Best Stories on Security Now

Hinzugefügt: 28. Dezember 2021

Leo Laporte walks through some of the highlights of the show and most impactful stories of 2021. Stories include:
SolarWinds Hack Detailed By Microsoft
Crispy Subtitles from Lay's
Remembering Dan...

SN 850: It's a Log4j Christmas - Another Chrome 0-Day, Cloud Clipboard Disabled, Wi-Fi/Bluetooth Leakage

Hinzugefügt: 22. Dezember 2021

Picture of the Week.
Google's 16th exploited Chrome 0-day of the year.
Firefox refuses to do Microsoft.com!
Firefox disabled Microsoft's Cloud Clipboard.
Weaknesses in all cellular networks since...

SN 849: Log4j & Log4Shell - Apple AirTag Abuse, Amazon Outage and Cloud Dependence, New WordPress Threats

Hinzugefügt: 15. Dezember 2021

Picture of the Week.
Amazon outage and cloud dependence.
AirTag Abuse.
Windows 11 vs Your Browser of Choice.
WordPress once again in the crosshairs.
Closing the Loop.
Sci-Fi.
SpinRite.
Log4j &...

SN 848: XSinator - NSS Has a Bug, Botnet on the Blockchain, HP's Vulnerable Printers, Microsoft Edge Relief

Hinzugefügt: 8. Dezember 2021

Picture of the Week.
Tavis finds a bad bug in NSS.
Cheap Smartwatches for kids and babies?
Additional VPN vendors just say no to Roskomnadzor!
Windows 11 loosens its grip on Edge.
RTF Templates...

SN 847: Bogons Begone! - 0-Day Windows Exploit, Major MediaTek Flaw, Super Duper Secure Mode

Hinzugefügt: 1. Dezember 2021

Picture of the Week.
"Super Duper Secure Mode"
37% of the world's smartphones are vulnerable.
The RAT Dispenser.
The Entirely Predictable 0-Day Windows Exploit.
"The Frontiers Saga: Fringe...

SN 846: HTTP Request Smuggling - NetGear Routers 0-Day, The Most Brute Forced Passwords, GoDaddy Breach

Hinzugefügt: 24. November 2021

Picture of the Week.
An idea whose time has passed...
The stats of brute force password attacks.
The Most Common Passwords.
GoDaddy Breached Bigtime!
A heads-up about NetGear routers.
HTTP Request...

SN 845: Blacksmith - Patch Tuesday's 55 Flaws, The Zen of Code, Ryuk Ransomware Gang

Hinzugefügt: 17. November 2021

Picture of the week.
~10,000 VPN/Firewall appliances from Palo Alto Networks vulnerable.
The 0-Patch Guys Produce a Micropatch
This brings me to "The Zen of Code"
November's Patch Tuesday
November...

SN 844: Bluetooth Fingerprinting - Pwn2Own Austin, Unpatched GitLab Servers, Cisco's DEFAULT SSH Key

Hinzugefügt: 10. November 2021

Picture of the Week.
Lots of welcome progress on the ransomware front.
Pwn2Own Austin: Last Tuesday-Thursday largest ever 3-day Fall 2021 Pwn2Own.
Windows 11 snipping tool, its emoji picker, and...

SN 843: Trojan Source - Chrome 0-days, Windows 11 confusion, VoIP DDos attacks, Dune

Hinzugefügt: 3. November 2021

Chrome 0-days, Windows 11 confusion, VoIP DDoS attacks, Dune
More 0-days for Chrome.
Two naughty Firefox add-ons have been caught abusing an extension API.
Windows 11 News: Can we print yet?
A new...

SN 842: The More Things Change... - Gummy Browsers Attack, What Happened to REvil, Comms Hub, Win 11 Fixes

Hinzugefügt: 27. Oktober 2021

Picture of the Week.
A sneak peak at November 9th upcoming Win11 fixes.
Leo gets his wish!! REvil WAS recently re-taken down by Law Enforcement!
Microsoft: "We're Excited to Announce the Launch of...

SN 841: Minh Duong's Epic Rickroll - REvil Gone for Good? Tianfu Cup 2021, Patch Tuesday Aftermath

Hinzugefügt: 20. Oktober 2021

Picture of the week.
Windows 11 Watch - Don't update to Windows 11 unless you need to.
Patch Tuesday - PrintNightmare fix to fix the previous print nightmare fix that broke other things.
Point and...

SN 840: 0-Day Angst - Windows 11 Watch, Google's Universal 2SV, Twitch Hack, Patch Tuesday

Hinzugefügt: 13. Oktober 2021

Picture of the week.
Windows 11 Watch: "AllowUpgradesWithUnsupportedTPMOrCPU"
AMD processors running some apps up to 15% slower.
The Windows 10 taskbar on Windows 11.
Microsoft is disagreeing......

SN 839: “Something Went Wrong” - Windows 11 Released, New Android Trojan, Windows Explorer Memory Leak

Hinzugefügt: 6. Oktober 2021

Picture of the Week.
Another two, in-the-wild, true 0-days found and fixed in Chrome.
Windows 11 arrives.
A known memory leak in Windows Explorer.
Ransomware and cyber warfare.
On the topic of...

SN 838: autodiscover.fiasco - Epik Confirms Hack, Apple Annoys Bug Reporters, Chrome's 12th 0-Day in 2021

Hinzugefügt: 29. September 2021

Picture of the Week.
Chrome's 12th 0-day this year.
Next up on this week's 0-day Watch... is Apple.
Apple appears to be annoying their bug reporters.
Epik Confirms Hack, Gigabytes of Data on...

SN 837: Cobalt Strike - Android Auto-Revokes Permissions, DDoS on VoIP.ms, Patch Tuesday, Was GRC Pwned?

Hinzugefügt: 22. September 2021

Picture of the week.
The DDoS attack on VoIP.ms.
Patch Tuesday's Mixed Blessing.
Android to auto-reset app permissions on many more devices.
BREAKING: FBI held back ransomware decryption key from...

SN 836: The Mēris Botnet - 0-Day Attack on Office Docs, WFH and Security, Return of REvil

Hinzugefügt: 15. September 2021

Picture of the Week.
A new worrisome 0-day attack against Office documents.
Work From Home (WFH) — No problem?
"Attacks only ever get better"
The return of REvil — Apparently, vacation's...

SN 835: TPM v1.2 vs 2.0 - BlueTooth Troubles, Internet Anonymity, Apple CSAM, Light Chaser

Hinzugefügt: 8. September 2021

Picture of the Week.
The Razor mouse & keyboard.
The wishful phrase "Internet Anonymity" is an oxymoron.
And speaking of Apple's client-side image matching...
BlueTooth has new troubles.
Attackers...

SN 834: Life: Hanging by a PIN - Credit Freeze vs. Credit Lock, SSD Bait & Switch, ProxyToken, Windows 11

Hinzugefügt: 1. September 2021

Picture of the Week.
Credit Freeze vs Credit Lock.
T-Mobile hacker speaks!
Where will Windows 11 run?
ProxyToken.
Tailscale Open Source?
SSD Bait & Switch.
SpinRite.
Life: Hanging by a PIN.
We...

SN 833: Microsoft's Reasoned Neglect - T-Mobile's Major Data Leak, Razer Mouse Hack, Overlay Networks

Hinzugefügt: 25. August 2021

Picture of the week.
Firefox soon to be blocking mixed-content downloads by default.
The news from T-Mobile is all bad.
Introducing ProxyLogon's kissing cousin, ProxyShell.
The Razer mouse hack.
A...