March 15, 2025

(For a video version of the introduction below, click here) Hello all, Patch Tuesday from Microsoft and others came in with the March winds and left us a bit of a mess. Microsoft has six zero-days and six critical updates. A large quantity of other vendors, such as, Adobe, AMD, Apple,…

March 8, 2025

(Click here for a video version of the introduction) Hello all, Microsoft continued to have some sporadic issues this past week, but nowhere near as widespread as they had the prior weekend. Hopefully, by the time this makes it to you, they’ve fixed things. Speaking of fixing things, On Tuesday, Broadcom…

March 1, 2025

For a video version of the introduction below, click here. Hello all, This past Saturday, much of the world experienced Microsoft service disruptions. Big Redmond has now restored services, blaming the failure on a code change saying that they’ve “reverted the suspected code to alleviate impact.” The Bybit $1.5 billion crypto…

February 22, 2025

(For a video version of the introduction below, go to my LinkedIn post.) Hello all, This was somewhat of an interstitial week with less headline defects and vulnerabilities, but it was balanced by plenty of other news items. Some of the more significant were Apple’s decision to cripple security for their…

February 15, 2025

(Select here for a video version of my introductory comments from below) Hello all, Patch Tuesday came in with only a small bang this month with 4 zero days, two of which are under active exploitation, and 55 flaws. A good number of other vendors also released fixes for defects in…

February 8, 2025

(For a video of the introduction below, click here) Hello all, Last week didn’t bring us too many surprises. DeepSeek’s AI model is proving to be effective, but their security and AI guardrails have been demonstrated to be practically nonexistent. Major AI vendors are rapidly incorporating DeepSeek’s efficiency into their own…

February 1, 2025

(Select here for a video version of my opening commentary) Hello all, Unless your system administrators programmed your web and email filters to block it, the news of the week has been DeepSeek AI, the gains and pitfalls of this seeming revolutionary model, and what it means for governments, the AI…

January 25, 2025

(Select here for a video version of my opening commentary) Hello all, After Microsoft’s record-breaking number of defect and flaw patches last week, I figured that this week we’d be safe from onslaught. Was I ever wrong! Oracle decided to grace us with their quarterly update consisting of over three hundred…

January 18, 2025

Hello all, Last week I wrote about the unbelievable onslaught of CVEs that we must deal with. This week Microsoft hit us with the largest list of defect updates since 2017! Other vendors that are on the same patch cadence didn’t disappoint either, with both Adobe and SAP proffering fixes for…

January 11, 2025

Hello all, It has been a busy news week with quite a few critical items, some of which are already being exploited. One item that jumped out at me was a report from Guru Baran, the co-founder of Cyber Security News. His article’s headline reads, 40,000+ CVEs Published In 2024, Marking…

January 4, 2024

Hello all, Wow, 2025! It seems surreal that we are now a quarter of a century into the new millennium. But here we are. I vividly remember the Y2K hysteria of two and a half decades ago. And lest you think it was mere hype, that’s not the case; it was…

December 28, 2024

Hello all, The end is near! No, not of the world, but of the year. And what a year it has been! There are over half a dozen links that herald and decry the past year in the cyberverse as it relates to security and gains made by both defenders and…