Security Newsletter

Issue #227 · 7 December 2023

23andMe breach worse than expected. New SLAM CPU and LogoFAIL UEFI attacks. Quick version.

Supported by 1Password, GlitchSecure and Escape.

News

Hi folks,

It's another quick version :-) I'm still caught up in work, travel and training. Normal service should resume next week, until then I'll use the default summaries provided by the newssites themselves.

Enjoy!

Breaches and leaks

  • Florida water agency latest to confirm cyber incident as feds warn of nation-state attacks: link.
  • New Relic security breach: link.
  • HHS warns of ‘Citrix Bleed’ attacks after hospital outages: link.
  • DePauw University warns of data breach as ransomware attacks on colleges surge: link.
  • Hershey warns of data breach following phishing attack: link.
  • US Navy shipbuilder Austal says cyber incident had ‘no impact on operations’: link.
  • Nissan investigates cyberattack in Australia and New Zealand: link.
  • Schools in Maine, Indiana and Georgia contend ransomware attacks: link.
  • Stanley Steemer says nearly 68,000 people affected by data breach in March: link.
  • HTC Global Services confirms cyberattack after data leaked online: link.
  • Payments processor Tipalti investigating ransomware attack: link.

Issues and fixes

  • Adobe Coldfusion vulnerability used in attacks on government servers: link.
  • Atlassian patches critical RCE flaws across multiple products: link.
  • "Sierra:21" vulnerabilities impact critical infrastructure routers: link.
  • Multiple NFT collections at risk by flaw in open-source library: link.
  • Over 20,000 vulnerable Microsoft Exchange servers exposed to attacks: link.
  • VMware fixes critical Cloud Director auth bypass unpatched for 2 weeks: link.
  • Dangerous vulnerability in fleet management software seemingly ignored by vendor: link.