Baron SameEdit: Stopping the unstoppable (CVE-2021-3156)
In this episode of TFiR Secure IT, Ron Nixon and Swapnil Bhartiya discussed three major cybersecurity stories — Windows Exchange hack, Senate’s hearing on SolarWinds hack and NSA’s recommendations on zero trust.
Your website is the anchor to your online presence and often your first contact with customers
We recently learned about DreamBus and FreakOut botnets that are attacking Linux systems
NPM/Node.js recently had a clever, yet simple, code injection attack using a “dependency confusion” vulnerability
Today, cybersecurity solutions alert you after an attack occurs but only if that attack is known
We certified our open source detection agent Zerotect on Micro Focus ArcSight, a security information and event management (SIEM) and log management tool
The Qualys Research Team found a heap overflow vulnerability in sudo, a common and most used utility on Linux, which gives root privileges to any local user
One of the few non-controversial opinions in cybersecurity is that enabling any arbitrary user to get super-user privileges, without any caveats is a bad thing
The 2020 SolarWinds breach rocked the cybersecurity industry
2020 was an interesting year for the cybersecurity industry as organizations transitioned to an almost entire work from home workforce
Prevasio found that over half of the public container images hosted on Docker Hub have critical vulnerabilities
I’m Mike Sahari; lowkey Software Engineer, highkey Coffee Enthusiast