Monthly Archives: November 2023

What a failed attack against ColdFusion revealed about ransomware tools and tactics

What a failed attack against ColdFusion revealed about ransomware tools and tactics

A recent attack levied against servers running out-of-date Adobe software sheds some light on how threat actors are currently trying to exploit systems and deploy ransomware. In this recent attack, which took place in September and early October, the threat actors hoped to gain access to Windows servers and, subsequently, deploy ransomware payloads. While the attack wasn’t successful, lessons must be learned here. According to an analysis by Sophos researchers who uncovered the attack, the threat actor was trying to deploy ransomware created using leaked source code from the family of ransomware known as LockBit 3.0. This is a trend Sophos researchers noticed in other campaigns, as well. The attackers likely chose the LockBit 3.0 ransomware family because of its speed and… Source link

Read More »

Tech Enthusiasts Need to Check Out These Youtube Channels! | by Elisa Day | Nov, 2023

Tech Enthusiasts Need to Check Out These Youtube Channels! | by Elisa Day | Nov, 2023

In the ever-evolving cosmos of technology, YouTube stands as a beacon, illuminating the path for tech enthusiasts, professionals, and the simply curious. It’s a digital playground where innovation meets accessibility, and where the future is unpacked, one video at a time. Whether you’re chasing the latest in AI advancements, thirsting for new gadget reviews, or diving into the deep end of software tutorials, YouTube’s tech channels are like a never-ending tech fest. This roundup showcases the crème de la crème of technology channels, where each click brings you closer to understanding the pulse of our digital world. From the intricacies of cutting-edge tech to the nuts and bolts of everyday gadgets, these channels are your go-to guides in the vast universe of technology. So,… Source link

Read More »

A November rain of patches from Microsoft – Sophos News

Microsoft on Tuesday released patches for 57 vulnerabilities, including 31 for Windows. Eleven other product groups are also affected. Of the 57 CVEs addressed, just 3 are considered Critical in severity; 2 of those are in Windows, while the third falls in Azure. One CVE, an Important-severity elevation-of-privilege issue (CVE-2023-36049), affects both .NET and Visual Studio; another Important-severity EoP affects .NET, Visual Studio, and also ASP.NET. At press time, three Windows issues are known to be under exploit in the wild. (Or, depending on how you count these things, there are four, as we’ll discuss in the Notable November Updates section below.) An additional 10 vulnerabilities in Windows, Exchange, Office, and SharePoint are by the company’s estimation more likely to… Source link

Read More »

A November rain of patches from Microsoft – Sophos News

Microsoft on Tuesday released patches for 57 vulnerabilities, including 31 for Windows. Eleven other product groups are also affected. Of the 57 CVEs addressed, just 3 are considered Critical in severity; 2 of those are in Windows, while the third falls in Azure. One CVE, an Important-severity elevation-of-privilege issue (CVE-2023-36049), affects both .NET and Visual Studio; another Important-severity EoP affects .NET, Visual Studio, and also ASP.NET. At press time, three Windows issues are known to be under exploit in the wild. (Or, depending on how you count these things, there are four, as we’ll discuss in the Notable November Updates section below.) An additional 10 vulnerabilities in Windows, Exchange, Office, and SharePoint are by the company’s estimation more likely to… Source link

Read More »