Latest News Articles



--- TLP:WHITE ---

News

− FTC: Patch Log4j Vulnerability to Avoid Potential Legal Action

he U.S. Federal Trade Commission (FTC) on Tuesday informed companies that they could face legal action if their customers are impacted by an attack that involves exploitation of the recent Log4j vulnerabilities.

https://www.ftc.gov/news-events/blogs/techftc/2022/01/ftc-warns-companies-remediate-log4j-security-vulnerability

− 5 ways hackers steal passwords (and how to stop them)

From social engineering to looking over your shoulder, here are some of the most common tricks that bad guys use to steal passwords

https://www.welivesecurity.com/2022/01/05/5-ways-hackers-steal-passwords-how-stop-them/

Vulnerabilities

− Log4Shell Vulnerabilities in VMware Horizon Targeted to Install Web Shells

Attackers are actively targeting Log4Shell vulnerabilities in VMware Horizon servers in an effort to establish web shells.

https://digital.nhs.uk/cyber-alerts/2022/cc-4002

− Google Releases New Chrome Update to Patch Dozens of New Browser Vulnerabilities

Google has rolled out the first round of updates to its Chrome web browser for 2022 to fix 37 security issues, one of which is rated Critical in severity and could be exploited to pass arbitrary code and gain control over a victim's system.

https://thehackernews.com/2022/01/google-releases-new-chrome-update-to.html

− Aquatic Panda infiltrated academic institution through Log4j vulnerability, says CrowdStrike

CrowdStrike said in a new report that they've seen a China-based group searching for intellectual property through Log4Shell.

https://www.crowdstrike.com/blog/overwatch-exposes-aquatic-panda-in-possession-of-log-4-shell-exploit-tools/

− Critical Vulnerabilities in Apache Log4j library - CVE-2021-44228, CVE-2021-45046, CVE-2021-45105, CVE-2021-44832 - Update 5

A number of vulnerabilities has been identified in Apache Log4j, an open source Java logging library used by many web applications and services.

https://www.ncsc.gov.ie/pdfs/apache-log4j-101221.pdf

Community News

− Instagram and teens: A quick guide for parents to keep their kids safe

H ow can you help your kids navigate Instagram safely? Here are a few tips to help you protect their privacy on the app.

https://www.welivesecurity.com/2022/01/04/instagram-teens-quick-guide-parents/

--- TLP:WHITE ---