11.14.25 Security News Bites
DoD Cyber Command 2.0
DoD, apparently, doesn’t like it being called Cyber Command 2.0. Maybe we should call it 3.0 or 4.0. DoD has been wrestling with making Cyber Command more effective since it was formed in 2010. Multiple presidents from both parties have failed at it. Now DoD has a new plan to solve the problem with parts of the solution not showing up until “beyond 2030”. One might draw some negative conclusions from the fact that DoD is not going to publicly release the plan. Clearly there is a problem and just as clearly, they don’t have a great solution. Learn what has been leaked here.
As Prez Charges $100k for H-1B Visa, China Rolls Out Red Carpet
This is EXACTLY what I said would happen. As the US clamps down on companies hiring foreign talent, two things are happening. First, in a world of Zoom and Teams, US companies are not hiring US citizens, instead, they are taking those jobs and moving the job openings overseas to a foreign subsidiary. Problem solved for both the applicant and the company. This of course, is exactly what the president did not want to happen, but which is a “DUH!” moment for anyone with a brain. Second, other countries, both friendly and not, are welcoming these same people. Korea’s VIP visa and China’s K-visa are two examples. So, it is a win win. Not only are we not moving jobs to the US, we are helping our enemies beat us. As I said, a win, win, just not for us. Credit: Cybernews
Google Launches Civil Lawsuit Over Text Message Phishing
Text message phishing or smishing is a scam where scammers send you a text message that tries to separate you from your money or your information or both. Google filed a civil suit against John Doe #1 thru 25 in an effort to call attention to the problem. They say it has compromised a million users in 120 countries. These are the folks behind those USPS, UPS and EZ-Pass scams, among many others. China is not going to give them up, but at least they may get to tear down some of their infrastructure. Credit: NRP and Ars Technica and The Hacker News
SAP Pushes Patch for Bug Rated 9.9
While not a perfect 10, it is about as close as you can get without being a 10. SAP says that hackers could take complete control over a company’s SAP network and all data it contains. That could be a big problem. The patch is one of 25 in SAP’s patch Tuesday and one of four that fell into the highest priority category. Credit: Hackread
AI Powered Balloons Photographing Homes for Insurance Risk Assessments
AI powered robots lifted by balloons to near the edge of the atmosphere are gliding down back to earth on parachutes are taking high resolution images of Arizona that can be used to determine insurance rates for homeowners in Arizona. This raises privacy concerns as well. Credit: Route Fifty
