Recap of the daily security news and why it matters to you! These news stories are the items you should be discussing amongst your team and leadership. Its always easier to affect change if you are ahead of the curve and have examples to drive your value proposition. Gain the insight you need with Security On The Bayou.
Google spent a record sum rewarding researchers for hacking its products Number of Botnet Command & Control Servers Soared in 2019 Hackers were paid ransom after attack on Canadian insurance firm, court documents reveal
New Zoom Bug Prompts Security Fix, Platform Changes Major Canadian Military Contractor Compromised in Ransomware Attack States sue over rules that allow release of 3D-printed gun blueprints US Space Industry to Launch Cybersecurity Portal
Microsoft’s Internet Explorer zero-day workaround is breaking printers We’re dung for! Hackers hit firms with ransomware by exploiting Shitrix flaw Average Cost To Recover From Ransomware Skyrockets To Over $84,000
MuddyWater: The cyber-espionage group that targets Middle East countries Cost of cybercrime set to rise to unprecedented levels Hackers Can Bypass macOS Security Features With Synthetic Clicks
Own goal for Leicester City FC after fan credit card details snatched in merch store breach Facial recognition used to strip adult industry workers of anonymity 2.3 Billion Files And 11 Million Photos, ‘Private’ Ones Included, Exposed Online
New Zealand’s “hacked” budget was found on a website We ain’t afraid of no ‘ghost user’: Infosec world tells GCHQ to GTFO over privacy-busting proposals Checkers Says Data Breach Affected 100+ Locations
Eternally Blue: Baltimore City leaders blame NSA for ransomware attack New Zealand budget: National party denies hacking Treasury A dive into Turla PowerShell usage
Hackers breach US license plate scanning company Tech Support scammers arrested for swindling over $1.3 million from victims Nearly 1 Million Computers Still Vulnerable to “Wormable” BlueKeep RDP Flaw
PoC Exploit For Unpatched Windows 10 Zero-Day Flaw Published Online https://github.com/SandboxEscaper/polarbearrepo Learn to Hack Non-Competes & Sell 0-Days at Black Hat USA Consumer IoT Devices Are Compromising Enterprise Networks Transcripts: Hello f...
Linux variant of Winnti malware spotted in wild Windows 10’s May patches are borking McAfee and Sophos software Ransomware Cyberattacks Knock Baltimore’s City Services Offline Transcript: May 21st Raw.mp3 It’s Tuesday May 21st 2019 and this is securit...
Sophos tells users to roll back Microsoft’s Patch Tuesday run if they want PC to boot Slack Bug Allows Remote File Hijacking, Malware Injection TeamViewer Confirms It Was Hacked in 2016 Transcript: Hello, Friends, it is Monday, May 20th.
GOOGLE WILL REPLACE TITAN SECURITY KEY OVER A BLUETOOTH FLAW ‘GozNym’ Banking Malware Gang Dismantled by International Law Enforcement Russian government sites leak passport and personal data for 2.25 million users Transcript: Welcome to security on t...
Baltimore Ransomware Attack Takes Strange Twist UPDATE NOW! Critical, remote, ‘wormable’ Windows vulnerability Israeli TV’s Eurovision webcast hijacked by hackers. Hamas blamed Transcript: Hello friends welcome to security on the bayou It is Wednesday ...
Update WhatsApp now! One call could give spies access to your phone Over 25,000 Linksys Smart Wi-Fi routers vulnerable to sensitive information disclosure flaw. FBI Detects New Surveillance Malware Linked to North Korea’s Lazarus Group Transcript: [00...
U.S. charges Chinese national in hacks of Anthem, other businesses Two crypto-mining groups are fighting a turf war over unsecured Linux servers Bumper Crop of New Briefings Added for Black Hat USA Transcript: [00:00:06] All right first things first f...
Breach Incidents on Record Pace for 2019 C-level executives increasingly and proactively targeted by social breaches IT Specialist Convicted on Cyber Hacking Charges Sentenced Transcript: [00:00:00] Good morning friends. It is Thursday May 9th 2019.
LulZSec and Anonymous Ita hackers published sensitive data from 30,000 Roman lawyers CIA camps out in anonymized Tor network Highlights from the Verizon DBIR 2019 Transcript: [00:00:00] Welcome friends. It is Wednesday May 8th 20 19 and here’s today’s...
A bug in Mirai code allows crashing C2 servers DuckDuckGo proposes “Do-Not-Track Act of 2019” to require sites to respect DNT browser setting ‘Matrix’-Themed Ransomware Variant Spreads Transcript:M [00:00:00] Welcome to Security led by you it is Tuesd...
McAfee Survey Finds IT at Cybersecurity Fault Most President Trump Signs EO to Bolster Federal Digital Security Workforce A MYSTERIOUS HACKER GROUP IS ON A SUPPLY CHAIN HIJACKING SPREE Transcript: [00:00:00] Hello folks it is Friday, May 3rd 20.
Sinister secret backdoor found in networking gear perfect for government espionage: The Chinese are – oh no, wait, it’s Cisco again Putin Signs Controversial Internet Law We dunno what’s worse: Hackers ransacked Citrix for FIVE months,
Phone and laptop searches at US border ‘quadruple’ Plan to secure internet of things with new law A ‘Cyber Event’ Disrupted the Power Grid in California and Wyoming, But Don’t Panic Just Yet Hackers went undetected in Citrix’s internal network for six ...
People Are Clamoring to Buy Old Insulin Pumps Malware Infests Popular Pirate Streaming Hardware Chinese dev jailed and fined for posting DJI’s private keys on Github Transcript: [00:00:01] Good morning friends It is Tuesday, April 30th and here is today’s security news. [00:00:05][4.5] [00:00:06] First off from the Atlantic dot.com not your traditional security article that we’ll discuss here but the title is “People are clamoring to buy old insulin pumps.” Written by Sarah Zhang on the Atlantic. So this is an interesting article, and there’s a lot of you know sort of medical terminology, and you know a lot…Continue ReadingTuesday, April 30th, 2019
A Crash Course In Card Shops Lime Scooter Hacked in Australia Google boots major Android app developer from store for conducting massive ad fraud Credential stuffing: Bigger and badder than ever Transcript: [00:00:01] Good morning friends It is Monday, April 29th and this is security on the bayou. [00:00:05] Let’s get things kicked off today with an article from SC Magazine U.S. by Doug Olynyk credentials stuffing bigger and better than ever. Obviously credential stuffing has been around for a long time but Recorded Future issued a report this week talking about the resurgence of it for a few reasons.…Continue ReadingMonday, April 29th, 2019
FYI: Yeah, the cops can force your finger onto a suspect’s iPhone to see if it unlocks, says judge Microsoft drops password expiration from Windows 10 security Bodybuilding.com forces password reset after a security breach Microsoft drops password expiration from Windows 10 security