720-891-1663

Security News for the Week Ending January 20, 2023

New York Gov Signs Right to Repair Law While industry lobbyists have done their best to water down New York’s right to repair law (and they were relatively successful at it), it is a start. It goes into effect in July, 2023 and while it excludes electronics used in government and schools, has other ridiculous […]

Continue reading → [DISPLAY_ACURAX_ICONS]

The Securing Open Source Software Act

While there are not a lot of things Republicans and Democrats agree on, apparently they can agree about cybersecurity is a problem. the Securing Open Source Software Act is designed to improve the security of open source software. While some people would like to believe the myth that open source software is secure, the reality […]

Continue reading → [DISPLAY_ACURAX_ICONS]

What You Don’t Know Can Hack You

Optus, the second largest telecom vendor in Australia was hacked and the hackers want a million dollars in exchange for not selling the data on ten plus million people that they stole. Optus is being investigated over the breach by the Australian Federal Police. The hacker leaked sample data that appears to validate that the […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Security News for the Week Ending August 5, 2022

US Emergency Alert System Has a Minor Bug Homeland Security has issued an alert that there are critical vulnerability in the Emergency Alert System encoder and decoder devices. If left unpatched, it would allow a hacker to issue fake warnings of emergencies. The EAS is the nationwide alert system that is used to warn citizens […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Security News for the Week Ending June 3, 2022

FBI Warns US Colleges of Widespread VPN Credential Leaks – On Russian Crime Forums Here’s a shocker. Cybersecurity practices at US colleges and universities are not so good. According to an FBI PIN (Color WHITE, general distribution), Russian cybercrime forums are offering network and VPN credentials for sale for many US higher education institutions, some […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Security News for the Week Ending May 20, 2022

Flaw in uClibc Allows DNS Poisoning Attacks A flaw in all versions of the popular C standard libraries uClibc and uClibc-ng can allow for DNS poisoning attacks against target devices. The library is likely used in milliosn of Internet of Things devices that will never be patched and will always be vulnerable. This is where […]

Continue reading → [DISPLAY_ACURAX_ICONS]