Apple Security Updates Details Released https://support.apple.com/en-us/HT201222 Untitled Goose Deserialization https://pulsesecurity.co.nz/advisories/untitled-goose-game-deserialization Insecure Pagers Leak Medical Data https://techcrunch.com/2019/10/30/nhs-pagers-medical-health-data/ Kibana Vulnerablity https://research.securitum.com/prototype-pollution-rce-kibana-cve-2019-7609/
Happy Wait For It Wednesday! This week, @PhilTheFilipino brings you his thoughts on the brand new Netflix Comedy/Drama, Living With Yourself, starring Paul Rudd. Should you add this to your binging schedule or pass on it all together? Phil will tell you everything you need to know in just a Read More
xHelper Android Malware https://www.symantec.com/blogs/threat-intelligence/xhelper-android-malware Counterstrike Game Keys Used for Money Laundry https://blog.counter-strike.net/index.php/2019/10/26113/ Greating PCAP Files From YAML https://isc.sans.edu/forums/diary/Generating+PCAP+Files+from+YAML/25464/
Odd Double Base64 Endoded "BS_REAL_IP" Header https://isc.sans.edu/forums/diary/Unusual+Activity+with+Double+Base64+Encoding/25458/ DNS Archeology With PowerShell https://isc.sans.edu/forums/diary/More+on+DNS+Archeology+with+PowerShell/25452/ iOS Appstore Malware https://www.wandera.com/mobile-security/ios-trojan-malware/ British Law Enforcement Misses Malware Reports Due to Anti-Malware https://www.theregister.co.uk/2019/10/24/hmicfrs_report_cyber_crime/
XML External Entity Vuln in LSP4XML Affects Various Developer Tools https://www.shielder.it/blog/dont-open-that-xml-xxe-to-rce-in-xml-plugins-for-vs-code-eclipse-theia/?preview=true Google Chrome Will Make "SameSite" Default https://blog.chromium.org/2019/10/developers-get-ready-for-new.html Leftover Gigamon Configurations https://isc.sans.edu/forums/diary/Your+Supply+Chain+Doesnt+End+At+Receiving+How+Do+You+Decommission+Network+Equipment/25448/
In Episode 148, Ben and Scott discuss MC193609, "Announcing self-service purchase capabilities for Power Platform products" and some of the things you'll need to think about as this new capability comes to an Office 365 tenant near you. Sponsors ShareGate - ShareGate's industry-leading products help IT professionals worldwide migrate their Read More
Testing TLS 1.3 And Supported Ciphers https://isc.sans.edu/forums/diary/Testing+TLSv13+and+supported+ciphers/25442/ Google Chrome 78 Released https://chromereleases.googleblog.com/2019/10/stable-channel-update-for-desktop_22.html Firefox 70 Released https://www.mozilla.org/en-US/firefox/70.0/releasenotes/ Cache Poisoning DoS https://cpdos.org/
Attacks Against NVMS-9000 DVR Web Vulnerability https://isc.sans.edu/forums/diary/Scanning+Activity+for+NVMS9000+Digital+Video+Recorder/25434/ Pixel 4 Face Unlock Works with Eyes Shut https://www.bbc.com/news/technology-50085630 Samsung Galaxy S10 Fingerprint Unlock Bug https://www.bbc.com/news/technology-50080586 Alexa/Google Home Phishing https://srlabs.de/bites/smart-spies/
@PhilTheFilipino is here with a review of Zombieland: Double Tap, the sequel to 2009's Zombieland. It's been ten years since the original came out and the whole family is back for more. Phil is here to cover all your questions. Is it worth your time? Does it hold up against Read More
Phishing E-Mail Spoofing SPF Protected Domain https://isc.sans.edu/forums/diary/Phishing+email+spoofing+SPFenabled+domain/25426/ Purchased Domain Arrives with Paypal Accounts Linked to it https://www.theregister.co.uk/2019/10/17/paypal_account_domain/ Typosquatting Attacks Affect 2020 Presidential Election https://www.digitalshadows.com/blog-and-research/typosquatting-and-the-2020-u-s-presidential-election/ STI Student: Christopher Hurless Exploring Osquery, Fleet, and Elastic Stack as an Open-source solution to Endpoint Detection and Response https://www.sans.org/reading-room/whitepapers/detection/paper/39165
In Episode 147, Ben and Scott have a chat with Anna Chu, Senior Product Marketing Manager at Microsoft for the Microsoft Tech Community where they discuss Microsoft Ignite 2019 and all of the exciting announcements coming. The session catalog is out and you'll want to listen for tips and tricks around how Read More
Happy Wait For It Wednesday everyone! This week @PhilTheFilipino is covering the highly anticipated Netflix debut of Ben Platt in The Politician! Is this show binge worthy or should it stay out of you queue all together? Phil will let you know in just a short amount of time!Also, be Read More
@PhilTheFilipino and @MrEricAlmighty are back for the second weekend in a row with a special movie review episode! This week, we talk about El Camino: A Breaking Bad Movie. It's been so long since the popular TV series ended, and now it's back to tell the final story for Jessie Read More