Patches? “We don’t need those stinkin’ Patches”

Yet another Adobe Flash patch is out: Here is where they are all located: http://helpx.adobe.com/security.html Yesterday 2 patches (fixing vulnerabilities found) were released http://helpx.adobe.com/security/products/flash-player/apsa15-01.html “Successful exploitation could cause a crash and potentially allow an attacker to take control of the affected system.  We are aware of reports that this vulnerability is being actively exploited in the wild via drive-by-download attacks against systems … Read more

Reviewing all #cybersecurity changes in 2015

the biggest one in my book is Windows 2003 no more patches after the summer. http://www.microsoft.com/en-us/server-cloud/products/windows-server-2003/ From the Microsoft website: Windows Server 2003 support will end: 173 Days: 12 Hours :56 Minutes : 29 Seconds 173 days come faster than you think, so please do  the right thing – Philotimo update your servers. Our Youtube video (regarding ΦΙΛΟΤΙΜΟ- Philotimo in case you are … Read more

New Cisco Annual Security Report is Out

It is good to review this Annual report: http://www.cisco.com/web/offers/pdfs/cisco-asr-2015.pdf   (may have to fill out some information to get it)   key discoveries: 1) 1% of all high urgency CVE (Common vulnerabilities and Exposure) were actively exploited. This means organizations must prioritize and patch high urgency vulnerabilities. 2) Since Blackhole exploit kit in 2013, it … Read more

#OpFrance CyberJihad Attacking French Websites By Thousands

Twitter is aflame with the various tweets of the attackers and viewers of what is going on:     After my quick review of the top ten in our Security Analyzed page this morning, I saw NakedSecurityBlog https://nakedsecurity.sophos.com/2015/01/17/cyberjihadists-attack-thousands-of-french-websites-after-charlie-hebdo-massacre/ With a review of http://www.thelocal.fr/20150116/hackers-take-down-20000-french-websites website with the headline: “Islamist hackers attack 20,000 French websites”   It … Read more

Still Discussing Sony Attack … but why?

The reason is that it was a _Destructive_ attack. Credit card numbers were not stolen. Data was deleted and stolen. Highly unusual attack. Dark Reading  has a story on the “destructive” attack. http://www.darkreading.com/how-not-to-be-the-next-sony-defending-against-destructive-attacks-/d/d-id/1318516 ” “If your only goal is to do damage,” says Jonathan Sander, strategy and research officer for Stealthbits Technologies, “you don’t need a lot … Read more