October 21, 2023


Hello all,

There were no earth-shattering vulnerability or patch reports this week for a change. Although Oracle comes close to hitting that criterion with 387 patches this week, more on that in a moment.

As usual, the complete Red-N Weekly Cyber Security News newsletter report is below the Notable Callouts. Don’t forget, our site, https://red-n-security.com also has searchable archives of past newsletters.

The volume of news and other can appear overwhelming, the best strategy is to read the Notable Callouts and then skim the other link titles for items that pertain to you or your environment, or simply interest you. So, let’s get to it.

Notable Callouts:

  • Cisco issued warnings that their IOS XE devices have a zero-day that is under active exploitation. At time of publication, there were no patches available, only mitigation instructions. Sadly, many organizations did not either receive or heed the dire warning, as reports show that thousands of these devices have now been compromised.
  • Negligence is the only way to describe this next item. Researchers have found over 40,000 internet connected devices with a login portal password of “admin”. Unbelievable.
  • Oracle fired off a massive patch update addressing 176 CVEs, that patch 387 items., including 46 critical updates. A good number include RCE issues. In a corporate greed move, all of the patches above are behind an Oracle paywall. There is no way to get them without an account, which requires a subscription.
  • SolarWinds (insert shudder) has new critical RCE flaws that require patching in their Access Rights Manager (ARM). Patch quickly if you have this.
  • SonicWALL hasn’t had anything notable in a while. They’ve just released firmware for most of their currently supported Firewalls to address vulnerabilities in the management portal and in the SSL VPN tunnels. Patch as soon as you’re able.

In Ransomware, Malware, and Vulnerabilities News:

  • Google Ads and others, to be fair, are still being plagued by malicious advertising aka Malvertising. Be wary of any searches and be absolutely certain of what you’re seeing.
  • Trigona Ransomware group has had their entire operation wiped and exfiltrated by Ukranian hackers. Chalk one up for the good guys!

In Other News Events of Note and Interest:

  • Coffee may not be technology, but it is definitely related as much of the world’s IT staff runs on it. An article on how coffee helps with memory is in this section.

In Cyber Insurance News:

  • Growing an article on the massive growth expected for the next few years.

Security is everyone’s job, from the janitor to the CEO. And nobody should be exempted from the rules and policies that are in place to protect a company. Threat Actors love finding exceptions and exploiting them, things like the CEO insists on having Admin rights, or that spammy website must be permitted because the purchasing person just loves Chinese knock-offs. Just say no.

Viscount Zebulon Wamboldt Pike
Red-N Weekly Cyber Security News

Headline NEWS

Ransomware, Malware, and Vulnerabilities News

Other News Events of Note and Interest

Cyber Insurance News

Share this with: