fbpx

Clive’s weekly Cyber Security roundup – 20 May 2022

There were two an interesting stories this week about privacy. The first was about how much our of our personal data is being sold and how that impacts on our privacy, so we can see adverts targeted at us.

Just how much and often is your data shared? UPDATED 19 May 2022 – Smart Thinking Solutions

There is a weekend read coming out, first thing, on Saturday explaining how to protect your privacy on your smart phone.

The second was how legitimate websites are using “keylogger malware” type software to capture information about you when you have a reasonable right not to expect it.

Your expectations of privacy – Smart Thinking Solutions

A joint cyber security advisory from the National Cyber Security Centre, for the UK, the US Cybersecurity and Infrastructure Security Agency and the cyber security agencies of Canada, New Zealand, the Netherlands, list the ten most “routinely exploited weak security controls, poor configurations, and bad practices that allow malicious actors to compromise networks”. The lack of use of multi-factor authentication (MFA) was top of that list. You must use MFA where ever you can.

CISA joint advisory on access control. Are you still missing MFA? – Smart Thinking Solutions

Did you update your Apple device this week?

Time to patch everything Apple – UPDATED 18 May 2022 – Smart Thinking Solutions

Then there was this story from Saturday:

The wrong Lincoln College closes

Of course the Russia Ukraine conflict has not gone away – here is my updated advice post. Have you read it and taken the actions advised?

Advice from the National Cyber Security Centre and the UK Government – actions to take when the cybersecurity risk is high (Russia Ukraine Conflict) – UPDATED 20 May 2022

Clive Catton MSc (Cyber Security) by-line and other articles

This is a weekly round-up of the articles from Smart Thinking Solutions, our specialist cybersecurity, governance and compliance web site.

The articles are mostly quick reads to give you an overview of the cybersecurity threat landscape facing businesses today, with links to the sources. Many of the posts have action points or top tips to help you navigate these threats to your organisations.

Sometimes they are just there to make you smile!


Because It’s Friday – A Trip to Mars
This story starts off as Science Fiction come true but rapidly becomes about privacy
BlackByte cyber gang active despite the FBI advisory
CISA alert: ISC Berkeley Internet Name Domain (BIND)
I wrote some simple malware to steal credit card data and how that connects to a Texas data breach
The malware player Wizard Spider
Universities as targets UPDATED 20 May 2022
VMWare is a real cyber security issue – fix it or get rid of it CISA warns
The Conti Gang and Costa Rica
Just how much and often is your data shared? UPDATED 19 May 2022
CISA warns of threat actors exploiting the F5 vulnerabilities
More on Bumblebee malware – detailed attack examination
Windows and Linux server both targets for crypto-mining malware
CISA joint advisory on access control. Are you still missing MFA?
CISA Apple Updates
Google – “cybersecurity is one of the top issues facing the world today”
Make money fast – the classic social engineering phishing campaign
CISA updates on Apache and two more vulnerabilities added to their database – UPDATED 18 May 2022
Research that shows it is possible to hack an iPhone when it is turned off and drive off in your Tesla – UPDATED 18 May 2022 with real world examples of Bluetooth vulnerabilities
Time to patch everything Apple – UPDATED 18 May 2022
Our trust in public code – UPDATED 18 May 2022
The insider risk
Your expectations of privacy
Silent Linux malware
Life cycle of a vulnerability
EU sets a new baseline for cyber security for critical services
“We will pay if hit by ransomware again”
Shopping for malware
Anatomy of a WordPress hack
Quantum computers – it is never too early to have a plan
The wrong Lincoln College closes
The cyber crime gig economy
CISA notification – Adobe releases multiple updates
Happy Birthday WannaCry – but don’t expect a card from the NHS
Because It’s Friday – The End of an Era