August 19, 2022
I highly recommend this write up of a cool bug.
-
-
-
-
-
This is amazing. In 2009 someone showed how yelling at disk drives causes I/O problems, and then over a decade later someone else got a CVE with the same technique. Move over ROWHAMMER — there’s a new, and significantly less useful, trick in town!
-
Find out what we were up to in Q2 to help protect @googlechrome users:link:
https://www.chromium.org/Home/chromium-security/quarterly-updates/-
See that red dot with 623 Gbps? That’s Mirai.
-
@RoryCormac on how public perception shape covert operations:-
The latest drama in infosec.
-
-
-
-
-
-
-
-
-
An Experiment Showed that the Military Must Change Its Cybersecurity Approach
Big controversial ideas brewing over in DoD. It seems some people are advocating this thing called “red teaming,” where networks are attacked to find vulnerabilities. Sounds wild to me, but let me know what do you guys think? Sound off in the comments…
https://www.nextgov.com/cybersecurity/2022/08/experiment-showed-military-must-change-its-cybersecurity-approach/376003/-
Quite a nicely execute phishing scam. Abuse a compromised PayPal account to send fake invoices to people and include a number for them to call and complain. The operator then walks them through the typical call centre mediated scam
https://krebsonsecurity.com/2022/08/paypal-phishing-scam-uses-invoices-sent-via-paypal/