The consultation will focus on legal mechanisms to restrict the use of Huawei in the UK’s infrastructure due to national security concerns
Daily Archives: February 18, 2022
Trickbot Targets 140,000 Victims in 14 Months
Security asset management should be buttoned down. It isn’t.
I’ve been writing recently about security hygiene and posture management. In January, I declared that security hygiene and posture management would become a priority in 2022. Earlier this month, I wrote about attack surface management challenges.
Why focus on security hygiene and posture management? Because every IT widget represents a potential entry point for cyber-adversaries. Oh, and the bad guys go looking for these open doors using automated scanning tools, software exploits, social engineering scams, or anything else that works.
High Severity WordPress Plugin Bug Hits Three Million
CVE-2020-8107
A Process Control vulnerability in ProductAgentUI.exe as used in Bitdefender Antivirus Plus allows an attacker to tamper with product settings via a specially crafted DLL file. This issue affects: Bitdefender Antivirus Plus versions prior to 24.0.26.136. Bitdefender Internet Security versions prior to 24.0.26.136. Bitdefender Total Security versions prior to 24.0.26.136.
Stop pixelating! New tool reveals the secrets of “redacted” documents
A new tool makes crystal clear that it’s a big mistake to redact text by pixelating it.. or indeed blurring it, or even applying a “swirl” filter.
Read more in my article on the Hot for Security blog.
FlexBooker Data Leak Impacts Millions of End Customers
ZDI-22-378: ICONICS GENESIS64 DWG File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
This vulnerability allows remote attackers to disclose sensitive information on affected installations of ICONICS GENESIS64. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
ZDI-22-379: (Pwn2Own) Samsung Galaxy S21 Open Redirect Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Samsung Galaxy S21 phones. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
ZDI-22-380: (Pwn2Own) Samsung Galaxy S21 Improper Error Handling Remote Code Execution Vulnerability
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Samsung Galaxy S21 phones. User interaction is required to exploit this vulnerability in that the target must visit a malicious page.