Cyberthreats In Retail
Published Nov 14 2024 11:13 AM
The holiday season is busy time for the retail industry. Cybercriminals know this and ramp up their attacks on retail businesses. The attacks range from annoying to disastrous. Knowing what may be coming helps you better protect against them.
Holiday season for cyber attackers
Microsoft Fixes 90 New Flaws, Including Actively Exploited NTLM and Task Scheduler Bugs
Published Nov 14 2024 11:11 AM
Microsoft issued patches for 90 recently discovered vulnerabilities. Four of the vulnerabilities are rated as critical. Be sure to determine which of the patches apply to your systems and which have the most impact on you. Then install those first.
Microsoft patches 90 vulnerabilities - install now
Citrix 'Recording Manager' Zero-Day Bug Allows Unauthenticated RCE
Published Nov 14 2024 11:08 AM
A Zero-Day in Citrix Recording Manager allows attackers to install and execute code on the platform with no authentication. A patch was just issued. Install it now!
Citrix under attack again
'GoIssue' Cybercrime Tool Targets GitHub Developers En Masse
Published Nov 14 2024 11:03 AM
For only $700 you can purchase a tool that steals email addresses from the public profiles on GitHub. The stolen emails help cybercriminals steal other credentials, deliver malware, circumvent access protections, and more.
Cheap tool steals GitHub addresses
Microsoft Power Pages Leak Millions of Private Records
Published Nov 14 2024 11:00 AM
Low code and no code make it easy for almost anyone to create something. Microsoft’s Power Pages use it to let people build websites quickly and easily. However, these environments do not help people understand the security implications. The result is massive cybersecurity gaps and confidential information exposures. A recent example is Microsoft’s Power Pages with millions of private pages exposed on websites built using this platform.
Massive leak from misunderstanding requirements
AI, Artificial Intelligence, offers many benefits in many arenas including IT and cybersecurity. But it also still suffers from problems. The problems can reduce the trust in the AI system and undermine its effectiveness.