February 11, 2023


Hello all,
The Red-N Weekly Security newsletter is below the Notable Callouts as usual.

Notable Callouts:

  • VMware has announced and patched a high-severity LPE in Workstation
  • OpenSSH Server 9.1 has updates. Patch anything than contains it. Although some items will rely on vendor updates. It is highly likely that this coming Tuesday (patch Tuesday) will have some updates to this library from Microsoft and others.
  • QakBot, and likely more now, is using OneNote to distribute malicious notebooks. It is recommended that you turn off receiving “.one” files via email.
  • CISA, in a surprise move, released a recovery script for the ESXiArgs ransomware that has engulfed thousands of companies worldwide that are running on unpatched or out of date VMware ESXi servers.
  • Google Chrome 110 has been released. It contains 15 vulnerability fixes, and this version will not install on EOL Windows 7 or Windows 2008.
  • There is a rather sobering prediction from the Davos conference about a “catastrophic cyber event” coming.
  • Last week I called out the GoAnywhere transfer tool’s zero-day. Clop ransomware leapt to the occasion and claims it has breached 130 orgs via the hole.
  • In Other News Events of Note and Interest, there’s a link to an article that describes how US lawmakers slipped in a cybersecurity law that requires medical equipment manufacturers to provide updates and patching for their products.
  • In Cyber Insurance News, an interesting and very accurate blog written by an AI informing readers why businesses need Cyber Liability Insurance.

Keeping your file and system backups in the same Windows Active Directory Domain as your servers and workstations is like putting a freshly grilled steak on your kitchen counter and letting your famished Borzoi into the house while you go wash your hands.

Visc. Zebullon Wamboldt Pike

Headline NEWS

Ransomware, Malware, and Vulnerabilities News

Other News Events of Note and Interest

Cyber Insurance News

For a PDF copy of this week’s report, click here.

Share this with: