October 14, 2023


Hello all,

The big news this week was Patch Tuesday with many vendors releasing updates. Then unfathomable horror shocked the civilized world as we heard reports of women and children being targeted in inhuman barbaric attacks in Israel… Our thoughts and prayers go out to those affected. Thus far it doesn’t appear to have spilled over to a worldwide cyberwar, and as this newsletter is about cyber security I will move to our focus.

As usual, the complete Red-N Weekly Cyber Security News newsletter report is below the Notable Callouts. Don’t forget, our site, https://red-n-security.com also has searchable archives of past newsletters.

The volume of news and other can appear overwhelming, the best strategy is to read the Notable Callouts and then skim the other link titles for items that pertain to you or your environment, or simply interest you. So, let’s get to it.

Notable Callouts:

  • Adobe patched just about everything. So, if you have their products in use, update them asap as there are exploits underway for some of the vulnerabilities already.
  • Apple backported some of the recent fixes for iOS 17.x to the iOS16x family. It is for a zero-day, so if you’re using one of their older phones, please update.
  • DDoS – last week in a client facing meeting I had noted how distributed denial service attacks had decreased in the prior quarter. They had not. Merely the news of them had decreased or been suppressed until the cause could be patched. This week there were reports of record-breaking DDoS attacks shed by Cloudflare, Google, and others. They are being fueled by an HTTP/2 flaw that now has available patches out.
  • Fortinet released vulnerability updates for a plethora of products. CISA’s warning says that the “vulnerabilities may allow cyber threat actors to take control of the affected systems.”
  • Juniper has released updates for JunoOS vulnerabilities. Patch now.
  • Microsoft released over 100 updates, some of which were actively exploited zero-day vulnerabilities. One of those patches was for the aforementioned HTTP/2 issue. The patch is being pushed out via the normal patch process, but it must be manually enabled.
  • Windows 10 – there are reports that the October Patch Tuesday security updates are failing on a good number of systems. Microsoft knows and is working on it and have asked users to submit the failures to them for analysis.
  • SAP has released 7 new “notes”, which is their language for updates. The updates contain 37 fixes, including two critical- and 20 high-severity vulnerabilities.

In Ransomware, Malware, and Vulnerabilities News:

  • Ransomlooker is a new website that contains great insights into this global cyber-scourge.
  • HTTP/2 – as mentioned earlier has a major flaw that resulted in record breaking DDoS attacks in the past quarter.

In Other News Events of Note and Interest:

  • Shadow – a French company has launched a service whereby you can get a basic office work Windows cloud PC for $9.99 per month. If you need more power, they have additional tiers available.
  • Microsoft Defender is growing up quickly. A new feature will allow it to ostracize systems on a network that exhibit threat activity. Naturally, this is either a paid product, or available only with the tech giant’s higher license cost products.
  • Windows Server 2012, Windows Server 2012 R2, and Windows 11 21H2 have all reached the end of support with this patch Tuesday. Upgrade or replace them ASAP.

In Cyber Insurance News:

  • Security Panel talks about how MSPs need to be careful when talking about Cyber Insurance with customers. It is worth the read.

My focus is normally toward cyber and the various ways that the misuse or abuse of it can negatively impact your systems, business, and life. This past week’s events are a poignant reminder that despite amazing threat intelligence, and exceptional security practices, evil people will find a way. Make sure that you have plans in place prior to an event. Every business should have a Disaster Recovery Plan, a Business Continuity Plan, and a Business Resumption Plan.

Viscount Zebulon Wamboldt Pike
Red-N Weekly Cyber Security News

Headline NEWS

Ransomware, Malware, and Vulnerabilities News

Other News Events of Note and Interest

Cyber Insurance News

Share this with: