Category Archives: Security

Patch Now: Cisco Zero-Day Under Fire From Chinese APT

Cisco has patched a command-line injection flaw in its network management platform used to manage switches in data centers. The bug (CVE-2024-20399) allows authenticated attackers to execute arbitrary commands as root on the underlying operating system of an affected device. It affects Cisco Nexus series switches and some other products. The vulnerability is due to…

US Supreme Court ruling will likely cause cyber regulation chaos

The US Supreme Court’s decision in Loper Bright Enterprises v. Raimondo could significantly impact federal cybersecurity regulations by shifting regulatory approval from agencies to the courts. This ruling may lead to a wave of lawsuits that could ultimately gut the Biden administration’s recent cyber incident reporting requirements and other regulations. The court’s decision reverses nearly…

It all adds up: Pretexting in executive compromise

Executives are prime targets for hackers using pretexting, a social engineering technique that builds trust with a fabricated story or narrative. This approach is more effective than traditional phishing as it establishes rapport between the attacker and executive. Pretexting involves creating a false connection with executives, such as pretending to be an old acquaintance or…

Daily Newsletter

Subscribe to our free daily newsletter to get the latest summarized updates