Insider Threats: Your employees are being used against you
Over the past six months to a year, we have seen an increasing amount of incident response engagements involving malicious insiders and unwitting assets being compromised via social engineering.
Vulnerability Spotlight: Vulnerabilities in popular library affect Unix-based devices
TALOS-2022-1517 (CVE-2022-29503 - CVE-2022-29504) is a memory corruption vulnerability in uClibC and uClibc-ng that can occur if a malicious user repeatedly creates threads.
Our current world, health care apps and your personal data
In the wake of the U.S. Supreme Court’s ruling in Dobbs v. Jackson Women’s Health Organization that reversed previous interpretations of the 14th amendment on privacy from Roe v. Wade, users of sensitive health apps need to be mindful of the kinds of data these apps keep, sell and share.
Threat Roundup for September 9 to September 16
Today, Talos is publishing a glimpse into the most prevalent threats we've observed between Sept. 9 and Sept. 16.
Threat Source newsletter (Sept. 15, 2022) — Teachers have to be IT admins now, too
Public schools in the United States already rely on our teachers for so much — they have to be educators, occasional parental figures, nurses, safety officers, law enforcement and much more.
Gamaredon APT targets Ukrainian government agencies in new campaign
Cisco Talos discovered Gamaredon APT activity targeting users in Ukraine with malicious LNK files distributed in RAR archives.
Microsoft Patch Tuesday for September 2022 — Snort rules and prominent vulnerabilities
September's security update features five critical vulnerabilities, 10 fewer than were included in last month’s Patch Tuesday.
Threat Source newsletter (Sept. 8, 2022) — Why there is no one-stop-shop solution for protecting passwords
Everyone has their own method for storing their passwords, and some of you may even rely on pen and paper.
Lazarus and the tale of three RATs
Cisco Talos assesses with high confidence these attacks have been conducted by the North Korean state-sponsored threat actor Lazarus Group.