March 4, 2023


Hello all,
The Red-N Weekly Cyber Security News newsletter is below the Notable Callouts as usual.

Notable Callouts:

  • BlackLotus has successfully bypassed Secure Boot on Windows 11. More threat actors are sure to follow this UEFI compromise trend.
  • Microsoft has released security updates for Intel CPU flaws. There is no clear description as to what was patched, so apply carefully as these types of patches often result in a performance decrease.
  • Cisco patched a critical Web UI Remote Code Execution flaw in multiple IP phones. Any IoT can become a beachhead for a treat actor, which is why patching is vital.
  • Aruba Networks (HPE’s networking company) fixed six critical vulnerabilities in their ArubaOS.
  • com OAuth allowed for full account takeover when coming from Facebook.
  • CISA was quite active this week with numerous statements, warnings, and even released software to help map ATT&CK so you can respond appropriately.
  • Crowdstrike reported that data theft and extortion attacks, without deployment of ransomware, grew by 20% in 2022 from the prior year.
  • Raid7 reported in their 2022 Vulnerability Intelligence Report that 56% of all vulnerabilities analyzed in the report were exploited within seven days of being found. Defenders are being forced to respond faster than ever as a result and are hard-pressed to keep up.

The internet is somewhat akin to the Italian roadway system. There are seemingly no rules, potholes the size of a small Fiat, and a plethora of misleading, and randomly placed directional signs that will lead you to places you don’t want to go.

Visc. Zebulon Wamboldt Pike
Red-N Weekly Cyber Security News

Headline NEWS

Ransomware, Malware, and Vulnerabilities News

Other News Events of Note and Interest

Cyber Insurance News

For a PDF version of this week’s Red-N Weekly Cyber Security News, click here.

Share this with: