December 31, 2022

Hello all,
The final Red-N Weekly Security newsletter for 2022 is below the notable callouts from this week.
Notable Callouts:

  • PyTorch the open source machine learning framework had dependency confusion attack against it which lead to download of a compromised framework.
  • Gamers using 3DS, Wii U, and Switch games need to be wary of a new critical vulnerability.
  • A new Linux Kernel Bug requires immediate patching
  • Google Ads continue to be abused to deliver malicious links via compromised software. This continued malvertising has prompted the FBI to suggest to consumers that they install ad-blockers.
  • The US Military apparently didn’t sanitize gear prior to sending it to auction, exposing critical intel and massive amounts of PII that could prove deadly to some.
  • Mark of the Web (MotW) protection continues to be bypassed via ISO and VHD files downloads.

Cybersecurity protection is a continual game of whack-a-mole. Threat actors are continually popping up in new locations, via new holes and methods, looking to spoil your day. Stay vigilant, ensure you have others standing by to help you smash the heads of those nasty rodents if they should rear their noggins in your environment. Two hammers are better than one, and three hammers will rarely be defeated!

Visc. Zebullon Wamboldt Pike

Headline NEWS

Other News Events of Note and Interest

Cyber Insurance News

To see the report in PDF format, click here.

Share this with: