Apple Patches iPhone Zero-Day

Read Time:38 Second

The most recent iPhone update—to version 16.1.2—patches a zero-day vulnerability that “may have been actively exploited against versions of iOS released before iOS 15.1.”

News:

Apple said security researchers at Google’s Threat Analysis Group, which investigates nation state-backed spyware, hacking and cyberattacks, discovered and reported the WebKit bug.

WebKit bugs are often exploited when a person visits a malicious domain in their browser (or via the in-app browser). It’s not uncommon for bad actors to find vulnerabilities that target WebKit as a way to break into the device’s operating system and the user’s private data. WebKit bugs can be “chained” to other vulnerabilities to break through multiple layers of a device’s defenses.

Read More

fasterxml-oss-parent-49-2.fc38 jackson-annotations-2.14.1-3.fc38 jackson-bom-2.14.1-1.fc38 jackson-core-2.14.1-1.fc38 jackson-databind-2.14.1-1.fc38 jackson-jaxrs-providers-2.14.1-1.fc38 jackson-modules-base-2.14.1-1.fc38 jackson-parent-2.14-1.fc38

Read Time:23 Second

FEDORA-2022-6aa833b95f

Packages in this update:

fasterxml-oss-parent-49-2.fc38
jackson-annotations-2.14.1-3.fc38
jackson-bom-2.14.1-1.fc38
jackson-core-2.14.1-1.fc38
jackson-databind-2.14.1-1.fc38
jackson-jaxrs-providers-2.14.1-1.fc38
jackson-modules-base-2.14.1-1.fc38
jackson-parent-2.14-1.fc38

Update description:

Rebase Jackson packages to the latest upstream version (2.14.1)

Read More

MTTR “not a viable metric” for complex software system reliability and security

Read Time:36 Second

Mean time to resolve (MTTR) isn’t a viable metric for measuring the reliability or security of complex software systems and should be replaced by other, more trustworthy options. That’s according to a new report from Verica which argued that the use of MTTR to gauge software network failures and outages is not appropriate, partly due to the distribution of duration data and because failures in such systems don’t arrive uniformly over time. Site reliability engineering (SRE) teams and others in similar roles should therefore retire MTTR as a key metric, instead looking to other strategies including service level objectives (SLOs) and post-incident data review, the report stated.

To read this article in full, please click here

Read More