Today's Headlines and the latest #cybernews from the desk of the #CISO:

Apache fixes actively exploited zero-day vulnerability, patch now

Chase Bank Heavily Targeted Via XBALTI Phishing Kit

Researchers Discover UEFI Bootkit Targeting Windows Computers Since 2012

Arizona Launches Command Center to Combat Cyberattacks

New Study Links Seemingly Disparate Malware Attacks to Chinese Hackers

Story Links:

https://www.bleepingcomputer.com/news/security/apache-fixes-actively-exploited-zero-day-vulnerability-patch-now/

https://www.securityweek.com/chase-bank-heavily-targeted-xbalti-phishing-kit

https://thehackernews.com/2021/10/researchers-discover-uefi-bootkit.html

https://www.securityweek.com/arizona-launches-command-center-combat-cyberattacks

https://thehackernews.com/2021/10/new-study-links-seemingly-disparate.html

“The Microsoft Doctrine” by James Azar now on Substack https://jamesazar.substack.com/p/the-microsoft-doctrine

VeteraNovember is back!! Apply now to be a featured guest on the show https://mailchi.mp/cyberhubpodcast/93rzgm5a7n

The Practitioner Brief is sponsored by:

KnowBe4: https://info.knowbe4.com/phishing-security-test-cyberhub


Find James Azar Host of CyberHub Podcast, CISO Talk, Goodbye Privacy, Tech Town Square, and Other Side of Cyber

James on Linkedin: https://www.linkedin.com/in/james-j-azar/

James on Parler: @realjamesazar

Telegram: CyberHub Podcast

Locals: https://cyberhubpodcast.locals.com


Sign up for our newsletter with the best of CyberHub Podcast delivered to your inbox once a month: http://bit.ly/cyberhubengage-newsletter


Website: https://www.cyberhubpodcast.com

Youtube: https://www.youtube.com/channel/UCPoU8iZfKFIsJ1gk0UrvGFw

Facebook: https://www.facebook.com/CyberHubpodcast/

Linkedin: https://www.linkedin.com/company/cyberhubpodcast/

Twitter: https://twitter.com/cyberhubpodcast

Instagram: https://www.instagram.com/cyberhubpodcast

Listen here: https://linktr.ee/cyberhubpodcast

The Hub of the Infosec Community.

Our mission is to provide substantive and quality content that’s more than headlines or sales pitches. We want to be a valuable source to assist those cybersecurity practitioners in their mission to keep their organizations secure.