Apache Open Source Callout, Log4J Ransomware and More
Cybersecurity News
CyberHub Podcast
January 11th, 2021
Today's Headlines and the latest #cybernews from the desk of the #CISO:
Apache Foundation Calls Out Open-Source Leechers
Night Sky ransomware uses Log4j bug to hack VMware Horizon servers
CISA director: Log4Shell has not resulted in ‘significant’ government intrusions yet Microsoft Details 'powerdir' macOS Vulnerability Leading to Data Leaks
North Korean Hackers Start New Year with Attacks on Russian Foreign Ministry
Story Links:
https://www.securityweek.com/apache-foundation-calls-out-open-source-leechers
https://www.bleepingcomputer.com/news/security/night-sky-ransomware-uses-log4j-bug-to-hack-vmware-horizon-servers/
https://therecord.media/cisa-director-log4shell-has-not-resulted-in-significant-government-intrusions-yet/
https://www.securityweek.com/microsoft-details-powerdir-macos-vulnerability-leading-data-leaks
https://thehackernews.com/2022/01/north-korean-hackers-start-new-year.html
“The Microsoft Doctrine” by James Azar now on Substack https://jamesazar.substack.com/p/the-microsoft-doctrine
The Practitioner Brief is sponsored by:
KnowBe4: https://info.knowbe4.com/phishing-security-test-cyberhub
Find James Azar Host of CyberHub Podcast, CISO Talk, Goodbye Privacy, Digital Debate, and Other Side of Cyber
James on Linkedin: https://www.linkedin.com/in/james-azar-a1655316/
Telegram: CyberHub Podcast
Gettr: @Jamesazar
Sign up for our newsletter with the best of CyberHub Podcast delivered to your inbox once a month: http://bit.ly/cyberhubengage-newsletter
Website: https://www.cyberhubpodcast.com
Youtube: https://www.youtube.com/channel/UCPoU8iZfKFIsJ1gk0UrvGFw
Facebook: https://www.facebook.com/CyberHubpodcast/
Linkedin: https://www.linkedin.com/company/cyberhubpodcast/
Twitter: https://twitter.com/cyberhubpodcast
Instagram: https://www.instagram.com/cyberhubpodcast
Listen here: https://linktr.ee/cyberhubpodcast
The Hub of the Infosec Community.
Our mission is to provide substantive and quality content that’s more than headlines or sales pitches. We want to be a valuable source to assist those cybersecurity practitioners in their mission to keep their organizations secure.