Security News > 2022 > January

Privacy is for paedophiles, UK government seems to be saying while spending £500k demonising online chat encryption
2022-01-20 15:06

The British government's PR campaign to destroy popular support for end-to-end encryption on messaging platforms has kicked off, under the handle "No Place To Hide", and it's as broad as any previous attack on the safety-guaranteeing technology. Judging by videos earnestly distributed by organisations supporting it, the No Place To Hide campaign is much wider than merely targeting Facebook Messenger as was previously thought.

'Now' would be the right time to patch Ubuntu container hosts and ditch 21.04 thanks to heap buffer overflow bug
2022-01-20 14:38

The CVE-2022-0185 vulnerability in Ubuntu is severe enough that Red Hat is also advising immediate patching. It affects RHEL as well as Ubuntu 20.04, 21.04 and 21.10 - and presumably other distros, too.

SEC Filing Reveals Fortune 500 Firm Targeted in Ransomware Attack
2022-01-20 14:27

Fortune 500 integrated services firm R.R.Donnelley & Sons is the latest victim of the hacking collective known as the Conti Group. RRD didn't name the perpetrator of the attack in the filing.

Biden signs memo to boost US national security systems’ defenses
2022-01-20 13:57

President Joe Biden signed a national security memorandum on Wednesday to increase the security of national security systems part of critical US government networks used in military and intelligence activities when storing or transferring classified info. "Modernizing our cybersecurity defenses and protecting all federal networks is a priority for the Biden Administration, and this National Security Memorandum raises the bar for the cybersecurity of our most sensitive systems," the White House said.

Cisco bug gives remote attackers root privileges via debug mode
2022-01-20 13:15

Cisco has fixed a critical security flaw discovered in the Cisco Redundancy Configuration Manager for Cisco StarOS Software during internal security testing. "A vulnerability in Cisco RCM for Cisco StarOS Software could allow an unauthenticated, remote attacker to perform remote code execution on the application with root-level privileges in the context of the configured container," Cisco said.

WAN report: Complexity continue to grow as more organizations close legacy data centers
2022-01-20 13:05

The sixth annual report from Aryaka found that IT teams are planning to invest more in 2022 but expect more transparency and control. IT leaders are managing distributed teams and juggling more complex networks than ever, according to Aryaka's Global State of the WAN 2022 report.

New MoonBounce UEFI malware used by APT41 in targeted attacks
2022-01-20 12:55

Security analysts have discovered and linked MoonBounce, "The most advanced" UEFI firmware implant found in the wild so far, to the Chinese-speaking APT41 hacker group. Kaspersky couldn't retrieve that payload for analysis or figure out how exactly the actors infected the UEFI firmware in the first place.

San Francisco Police Illegally Spying on Protesters
2022-01-20 12:13

Last summer, the San Francisco police illegally used surveillance cameras at the George Floyd protests. It prohibits city agencies like the SFPD from acquiring, borrowing, or using surveillance technology, without prior approval from the city's Board of Supervisors, following an open process that includes public participation.

NortonLifeLock and Avast tie-up falls under UK competition regulator's spotlight
2022-01-20 11:03

The UK's Competition and Markets Authority has invited comments from industry and interested parties about NortonLifeLock's proposed $8bn purchase of fellow infosec outfit Avast. "The CMA is considering whether it is or may be the case that this transaction, if carried into effect, will result in the creation of a relevant merger situation under the merger provisions of the Enterprise Act 2002," it said.

New SolarWinds Serv-U vulnerability exploited in Log4j-related attacks
2022-01-20 10:18

Attackers looking to exploit recently discovered Log4j vulnerabilities are also trying to take advantage of a previously undisclosed vulnerability in the SolarWinds Serv-U software. It affects version 15.2.5 and previous versions of Serv-U, and has been patched by SolarWinds in version 15.3.