DecryptedTech Feed (3739)
Flaws, they’re not Just for Attackers Anymore as Researchers Find a way to Recover the Master Key for Hive Ransomware
Posted on Monday, 21 February 2022
in
Security Talk
Written by
Sean Kalinich
There is an old saying that say, what someone can lock, someone else can unlock. This is usually used regarding attackers getting into a network or compromising protected data. It is not often applied to security researchers unlocking information encrypted…
Read 493 times
The Risks, the Crime, and the Illusions of Blockchain or Decentralized Networks.
Posted on Monday, 21 February 2022
in
Security Talk
Written by
Sean Kalinich
Blockchain, the immutable public transaction log where many say the future lies and the concept of “code is law” is often bandied about. However, the bank ending utopian promise of block chain and web3.0 has not exactly arrived and it…
Read 704 times
Concerned about Android Tracking? You Can Remove your Ad ID in Android 12 and Up to Help with This
Posted on Friday, 18 February 2022
in
Security Talk
Written by
Sean Kalinich
After Google talked about their response to Apple requiring user acceptance for cross app tracking on mobile devices, the internet sort of exploded with different articles about the pros and cons of each. We wrote about this 2 days ago…
Read 802 times
Linux has a New Local Privilege Escalation Bug in Snap-Confine
Posted on Friday, 18 February 2022
in
Security Talk
Written by
Sean Kalinich
Linux has always had something of a mystique about it. Regardless of the distro (flavor) of Linux there simply certain misconception around Linux that are both entertaining and concerning. One of my all-time favorites was/is that it is a “hacker”…
Read 537 times
Microsoft to Require Microsoft Account for Windows 11 Pro Soon
Posted on Friday, 18 February 2022
in
Security Talk
Written by
Sean Kalinich
Will someone tell Microsoft (again) that to lead in the industry means not just following the competition? They seem to have lost that message again as we are hearing that they will require a Microsoft account to set up and…
Read 947 times
Trickbot Evolves as The Developers Target Customers of Multiple Financial Institutions
Posted on Thursday, 17 February 2022
in
Security Talk
Written by
Sean Kalinich
Researchers have identified Trickbot in use in campaigns targeting several financial institutions. These groups along with a few tech companies thrown in a predominantly in the US and appear to be using an evolved version of the malware to get…
Read 672 times
Joint Advisory from the NSA, FBI and CISA Warns of Long-Term Attack by State Actors with Little Detail.
Posted on Thursday, 17 February 2022
in
Security Talk
Written by
Sean Kalinich
Life would not be the same without new popping up that one state level threat actor or another was attacking and compromising US defense contractors or other businesses linked to US national security and defense. The counties of origin for…
Read 476 times
After Apple Unveils Privacy Features that Block Meta Tracking, Google Says they Can Do it Too
Posted on Wednesday, 16 February 2022
in
Security Talk
Written by
Sean Kalinich
A couple of weeks ago Meta, Facebook’s parent company, announced that they were losing money (to the tune of $10 Billion) due to changes in the way Apple mobile devices handle user tracking by apps. The move by Apple was…
Read 947 times
Is Firefox Going away and Taking Privacy Options with It?
Posted on Wednesday, 16 February 2022
in
Security Talk
Written by
Sean Kalinich
Firefox was once one of the leading “alternative” browsers on the internet. After the death of Netscape Firefox came along and offered people an alternative to the building Windows Internet Explorer and even to Safari on macOS. This trend continued…
Read 1059 times
Apache Cassandra Database Manager Patches an RCE Vulnerability
Posted on Wednesday, 16 February 2022
in
Security Talk
Written by
Sean Kalinich
Apache and their open-source tools have gotten a lot of press lately. After the Lgo4Shell vulnerability in their Log4J tool, and the massive response from vendors and security organizations we are now learning that researchers have discovered a remote code…
Read 905 times
Meta Settles 2012 Data Privacy Lawsuit to the Tune of $90 Million.
Posted on Wednesday, 16 February 2022
in
In Other News
Written by
Sean Kalinich
Meta (Facebook) has a long history of privacy and other abuses of the platform they control. We have seen everything from abusing facial recognition technology to tracking users’ internet history after existing the platform. These types of abuses are concerning…
Read 552 times
Google Patches the First Zero-Day in Chrome for 2022
Posted on Tuesday, 15 February 2022
in
Security Talk
Written by
Sean Kalinich
Google has announced the release of a new version of Chrome. The new version comes with fixes for eight vulnerabilities. Once of these vulnerabilities CVE-2022-0609, which is describes as a user-after-free vulnerability is already being exploited in the wild. This…
Read 976 times
CIA Found to have Run Bulk Data Collection Program that May Have Mishandled US Citizen Data.
Posted on Tuesday, 15 February 2022
in
In Other News
Written by
Sean Kalinich
On December 4th, 1981, then President Ronald Regan signed Executive Order 12333. This Order, further amended by EO13284 in 2003, 13355(2004) and 13470(2008), is what grants and governs the collection of intelligence by Federal agencies. These agencies include the NSA,…
Read 556 times
Network Management Software from Moxa Has Five Critical Bugs that Could Allow for an RCE Attack
Posted on Monday, 14 February 2022
in
Security Talk
Written by
Sean Kalinich
Management and a monitoring software are ubiquitous in the IT operation industry. They are force multipliers that allow for what are usually small teams to manage a large number of assets. By design they need to have elevated permission to…
Read 586 times
Cisco looking to Buy a Coner of the Market, makes a $20 Billion Buy Attempt of Splunk
Posted on Monday, 14 February 2022
in
In Other News
Written by
Sean Kalinich
According to reports form the Wallstreet Journal, Cisco has attempted to take over Splunk for more than $20 Billion. The acquisition would be the largest in Cisco’s history by far. Cisco has a history of buying technology companies and integrating…
Read 951 times
Hacking Groups that Plant Fake Evidence Identified in Trukey and India, Where Else are They?
Posted on Monday, 14 February 2022
in
Security Talk
Written by
Sean Kalinich
SentinelOne’s threat team has been tracking a couple of threat groups with an unusual goal. These groups are not looking to steal money or get a ransom, instead they are looking to track, monitor and incriminate specific targets. The targets…
Read 764 times