nish
nish
@nish.com
CyberSecurity, Network, Cloud & Infrastructure. Advisor | Strategist | Architect | CISSP - #CyberSecurity #InfoSec #Cloud #Network #Linux #Tech
Microsoft Teams vulnerability allows attackers to deliver malware to employees.

#cybersecurity #infosec #Microsoft #Teams #vulnerability #Malware

https://www.helpnetsecurity.com/2023/06/23/microsoft-teams-deliver-malware/
Microsoft Teams vulnerability allows attackers to deliver malware to employees - Help Net Security
Security researchers have found a bug that could allow attackers to deliver malware directly into employees' Microsoft Teams inbox.
www.helpnetsecurity.com
June 25, 2023 at 9:22 AM
Two Microsoft Windows bugs under attack, one in Secure Boot with a manual fix

https://www.theregister.com/2023/05/09/microsoft_may_patch_tuesday/

#cybersecurity #infosec #Microsoft #Windows
Microsoft warns of two bugs under active exploit
On the plus side, this month's update batch is a bit smaller than usual
www.theregister.com
May 10, 2023 at 8:54 AM
If you own MSI device, it’s advisable to exercise great caution when downloading firmwares & updates. - Hackers publish MSI private keys, enabling signed malware

https://www.techspot.com/news/98612-hackers-publish-msi-private-keys-enabling-signed-malware.html

#cybersecurity #infosec #MSI #malware
Hackers publish MSI private keys, enabling signed malware
Security researchers have confirmed that private keys for MSI products and Intel Boot Guard are loose in the wild. Hackers could use the keys to sign malware...
www.techspot.com
May 8, 2023 at 11:51 PM
If you run WordPress Advanced Custom Fields plugin, then you should patch it ASAP.

https://www.theregister.com/2023/05/08/wordpress_plugin_vulnerability

#cybersecurity #infosec #WordPress #vulnerability #XSS
WordPress plugin flaw puts 'millions of websites' at risk
XSS marks the spot
www.theregister.com
May 8, 2023 at 11:50 PM
Twitter admits to ‘security incident’ involving Circles tweets

https://www.theguardian.com/technology/2023/may/06/twitter-admits-to-security-incident-involving-circles-tweets

#cybersecurity #infosec #Twitter
Twitter admits to ‘security incident’ involving Circles tweets
Feature allows users to set a list of friends and post tweets that only they are supposed to be able to read
www.theguardian.com
May 6, 2023 at 2:07 PM
@atproto.com got rid of the need for verification by introducing custom domains.
May 5, 2023 at 10:28 AM