Security News > 2023 > February > S3 Ep122: Stop calling every breach “sophisticated”! [Audio + Text]

S3 Ep122: Stop calling every breach “sophisticated”! [Audio + Text]
2023-02-16 19:46

DOUG. Patching bugs, hacking Reddit, and the early days of computing.

Like in the LastPass breach and the recent GitHub breach, source code got stolen, along with a bit of other stuff.

DOUG. There are so many bugs in this Patch Tuesday that it forced your hand to devote a section of this article called Security Bug Classes Explained.

If the crooks can pick the right time to do it,then they may actually be able to use a denial of service bug surprisingly infrequently to cause what amounts to almost a continuous outage for you.

Is a zero-day remote code execution hole in WebKit, which I for one, and I think many other people infer to mean, "Browser bug that can be triggered by code that's supplied remotely."

Of course, particularly in iPhones and iPads, as we've spoken about many times, WebKit is required code for every single browser, even ones that don't use WebKit on other platforms.


News URL

https://nakedsecurity.sophos.com/2023/02/16/s3-ep122-stop-calling-every-breach-sophisticated-audio-text/