Tag CISA

January 14, 2023

Hello all,The Red-N Weekly Security newsletter is below the Notable Callouts. Notable Callouts: Being on the internet is like shopping in a Guatemalan Mercado. There are amazing things to see, smell, hear, and even taste – with great deals to…

January 7, 2023

Hello all,The first Red-N Weekly Security newsletter for 2023 is below the notable callouts from this week. There are two new topic sections within the body of the newsletter – Ransomware, and Cyber Insurance. There were significant items to report…

December 17, 2022

Hello all, The Red-N Weekly Security newsletter is below the callouts below. Notable callouts this week include: Just like attempting to drive a car that has a hole in a tire is fraught with issues, running a computer system with…

December 10, 2022

Hello All, The Red-N Weekly Security newsletter is below the callouts below. Notable callouts this week include: It costs a Threat Actor almost nothing to send out several hundred thousand well-crafted phishing emails. It can cost you everything if you…

December 3, 2022

Hello all, The Red-N Weekly Security newsletter is below the callouts below. Notable callouts this week include: Also in this week’s issue are several links about cyber insurance. Remember, the second rat gets the cheese. In security, you cannot rest…

November 26, 2022

Hello all,A few of the notable call-out’s from this week’s report (found below this introduction) are: Having up to date, monitored and effective internet security is sort of like owning a snow-blower in Buffalo NY. It doesn’t do much for…

October 29, 2022

ConnectWise patched a critical RCE vulnerability in Recover and R1Soft Server Backup Manager Google fixes seventh Chrome zero-day exploited in attacks this year Atlassian Jira Align, Version 10.107.4 Vulnerability Advisory Apple fixes new zero-day used in attacks against iPhones, iPads,…

October 22, 2022

Researchers Keep a Wary Eye on Critical New Vulnerability in Apache Commons Text (Text4Shell) Our new scanner for Text4Shell – Silent Signal Techblog – Scanner on Github Vulnerabilities in Cisco Identity Services Engine require your attention Heat left by users’…

September 30, 2022

Two Zero-Day Microsoft Exchange vulnerabilities without a patch are being exploited – mitigation steps published Microsoft Customer Guidance for Reported Zero-day Vulnerabilities in Microsoft Exchange Server Critical Remote Hack Flaws Found in Dataprobe’s Power Distribution Units WhatsApp 0-Day Bug Let…

September 23, 2022

Critical Flaws in Airplanes WiFi Access Point Let Attackers Gain Root Access Windows 11 22H2 is released, here are the new features Recent Windows 11 update apparently causing various issues due to Core Isolation (VBS) Critical Vulnerability in Oracle Cloud…

September 16, 2022

Microsoft September 2022 Patch Tuesday fixes zero-day used in attacks, 63 flaws Windows 10 Update KB5017308 causes issues when creating/copying files via GPO Microsoft issues critical security updates as PCs attacked through zero-day flaw Microsoft issues patch for serious security…