August 26, 2023


Hello all,

Lots of items this week, read on.

As usual, the complete the Red-N Weekly Cyber Security News newsletter report is below the Notable Callouts. Don’t forget, our site, https://red-n-security.com also has searchable archives of past newsletters.

Notable Callouts:

  • Cisco has patched some switches and firewalls that can subject them to DoS attacks. Check the article to determine if your devices are vulnerable and have a patch available.
  • CloudNordic and Azero Cloud, a Danish hosting company, have experienced a devastating ransomware attack. They have posted online, “…the majority of our customers have thus lost all data with us”. In reading their “What happened” on their public notice, it is painfully obvious that they missed the “1” in the 321-backup scheme. They didn’t have cold backups. This unfathomable loss underscores the criticality of clients understanding the “Shared Responsibility Model” that most hosting companies have. You are responsible for your data, that host is only responsible for their infrastructure.
  • Generative AI, not a company per-se, but a category, is being identified as “fueling a significant rise in cyberattacks.” The article goes on to discuss ransomware and cyber security team stress.
  • Google just announced that they will soon require two administrators to sign off on any critical changes to Google Workspace. If you don’t have a second admin, it is high-time to follow Google’s recommendations and get another one set up. The process to recover an admin account is lengthy and onerous.
  • Ivanti keeps making news. Another new zero-day for their MobileIron MDM was revealed and patched this week. Update fast.
  • Tesla announced that a May data breach was caused by two former employees. As nearly everyone in IT knows, the human element is the weakest link in security.
  • TP-Link smart bulbs have been shown to have a security threat that allows for exposure of credentials, takeover of the app, and potentially stealing Wi-Fi secrets.
  • Western Digital has been in the news quite a bit lately due to their SSDs failing prematurely. They have just released firmware updates that are supposed to address the failings. If you have any of the affected drives, update quickly before yours becomes a victim.
  • WinRAR has been in the news for the past two weeks for a high severity vulnerability that could allow code to execute when files are opened. Update to the latest version to mitigate this flaw.
  • Highlights in Ransomware, Malware, and Vulnerabilities News
  • Some wonk found a way to bypass Bitlocker using a Logical Analyzer. Fortunately, it is somewhat motherboard specific, but there it is, the path used can definitely be exploited if someone is determined. Physical access is key.
  • Speaking of Physical Access, we often forget that losing an unencrypted drive with PII, PKI, or HIPAA data is a breach. A NJ hospital just sent breach notices to patients because of a missing drive.
  • The Cuba Ransomware group is actively exploiting a Veeam bug that had a patch and mitigation released months ago. If only someone had warned them to patch. Oh wait, they did…

  • Highlights in Other News Events of Note and Interest
  • The SEC’s new rules regarding incident notification requirements and more for public companies are now out. There is an excellent article that describes the requirements and potential problems.
  • 28 years ago last week Windows 95 took the industry by storm and things have never been the same.
  • Highlights in Cyber Insurance News
  • A good report from Forrester describing the state of Cyber Insurance in 2023.

In light of the CloudNordic news, please ensure that you have working backups of your important data that are secured. It would be a real shame to be aware and still unprotected. If you’re reading this, there is no excuse for major data loss.

Viscount Zebulon Wamboldt Pike
Red-N Weekly Cyber Security News

Headline NEWS

Ransomware, Malware, and Vulnerabilities News

Other News Events of Note and Interest

Cyber Insurance News

Cyber Insurance News

Share this with: