Weekend Update

A quick Saturday digest of cybersecurity news articles from other sources.


Tomorrow is World Backup Day

March 31 is World Backup Day.  Monday is April Fool’s Day.  Coincidence?  I think not.  I you are one of the hold-outs who is going to get around to it someday, today is your chance.


Google reveals BuggyCow macOS security flaw

Google’s Project Zero researchers have revealed a “high ...

Continue Reading →
0

The NSA Releases Reverse Engineering Tool

Here’s a kick in the head.  Your tax dollars at work in a way that may save you a bunch of money.  The National Security Agency has voluntarily released a software reverse engineering tool called Ghidra at the RSA security conference.  The NSA has been using this tool internally to take apart and analyze malicious code, and to find vulnerabilities in commercial ...

Continue Reading →
0

Docker Vulnerability Allows Crypto-Miner Access

If you are running a fleet of virtual machines using popular containerization solution Docker, you may be in for a nasty surprise.  A couple of vulnerabilities have been discovered in Docker that has been exploited by cyber-criminals to run the Monero crypto-currency miner on affected Docker containers.  This will of course have a serious impact on performance, and in an environment where billing is usage based, this will increase your ...

Continue Reading →
0

WyzGuys the the Press

I am showing up online in places other than this blog, and I wanted to share two of the most recent mentions.

I was interviewed for an articles in Financier World magazine, and the article appears in the April 2019 issue.  The article is titled Cyber posture: the value proposition of security.

I recently reported on New WordPress Security Options, and my article was picked up and republished ...

Continue Reading →
0

Technology Milestones In The News

This month marks the 30th anniversary of the World Wide Web.  It is also the 50th anniversary of the Apollo space flight missions to the moon and back.  More recently, the successful unmanned mission by the Space-X Crewed Dragon command module to the International Space Station, we finally see space flight becoming a business as opposed to being strictly a governmental exercise.

The underlying protocol of the web, and really all ...

Continue Reading →
0

Weekend Update

A quick Saturday digest of cybersecurity news articles from other sources.


Tax Identity Theft: Protecting Your Credit and Finances

Check this out from the Simple Dollar.  Tax-related identity theft is a growing problem in America, and the more security breaches, information hacks and digital business we do as a society, the more consumers who fall victim to it. In fact, in 2016 alone, thieves stole more than ...

Continue Reading →
0

Most Common Malware of 2019 (So Far)

In 2015 and 2016 the winner was crypto-ransomware exploits.  In 2017 and 2018 the most common exploit was Business Email Compromise, aka Email Account Hijacking (BEC/EAC).  This is year is shaping up to be the year of the crypto-mining exploit.

Here are the crypto-mining malware programs that are the most prevalent:

  • AuthedMine – A variant of Coinhive, AuthedMine ios supposed to require an explicit opt-in from the end user to run the miner. This is designed to run on browsers with ad-blockers ...
Continue Reading →
0

Skynet is Closer than Ever

I think we know where this is going.  The Department of Defense is pursuing several initiatives where artificial intelligent and machine learning are being integrated with weapons systems. Remind anyone of the Terminator movies?

The official line from the DoD is: “All development and use of autonomous and semi-autonomous functions in weapon systems, including manned and unmanned platforms, remain subject to the guidelines in the Department of Defense (DoD) Directive 3000.09, ...

Continue Reading →
0

New WordPress Security Options

I have developed some expertise around the area of WordPress security.  One of my clients has a WordPress site under development, and recently the web designer changed the name of the login URL from https://clientsite.com/wp-admin to https://clientsite.com/A9u3ycGH37.  Basically, the wp-admin page name had been replaced with random characters.  I found out when I tried to log in using the usual URL.  I ...

Continue Reading →
1
Page 121 of 273 «...90100110119120121122123...»