In Other News: Nvidia Fixes Critical Flaw, Chinese Linux Backdoor, New Details in WhatsApp-NSO Lawsuit 

November 22, 2024 at 08:33AM SecurityWeek summarizes key cybersecurity developments, highlighting Microsoft’s influence on U.S. government security, vulnerabilities in Bing and Android VPNs, Mozilla’s research on data risks, NSO spyware revelations, and more. Additionally, it covers AI-driven vulnerability detection, increased DocuSign attacks, and recent patches from Google, Atlassian, Nvidia, and Adobe. ### Meeting Notes Summary … Read more

US Government on High Alert as Russian Hackers Steal Critical Correspondence From Microsoft

April 11, 2024 at 04:36PM CISA issued an emergency directive for federal agencies to search for signs of a Russian APT that breached Microsoft’s network. The directive requires analysis of compromised emails, resetting of credentials, and securing of Azure accounts. CISA and Microsoft notified affected federal agencies and agreed to provide metadata. The breach follows … Read more

White House Budget Proposal Seeks Cybersecurity Funding Boost 

March 13, 2024 at 10:45AM The White House has released a $7.3 trillion budget proposal for fiscal year 2025, emphasizing increased cybersecurity spending. This includes specific allocations such as $13 billion across civilian departments, $3 billion for the cybersecurity agency CISA, and additional funding for the Justice Department and healthcare sector. The budget also addresses … Read more

Hackers breach US govt agencies using Adobe ColdFusion exploit

December 5, 2023 at 12:07PM CISA warns of ongoing attacks exploiting a critical Adobe ColdFusion vulnerability (CVE-2023-26360), despite a fix. Hackers targeted government servers, installing malware and conducting reconnaissance. Although attacks were contained, CISA stresses updating ColdFusion and enhancing security measures. Meeting Takeaways: 1. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a … Read more