Joseph Carson, chief security scientist and advisory CISO at ThycoticCentrify, offers advice on least privilege, automation, application control and more.
Threatpost
Security
BrakTooth Bluetooth Bugs Bite: Exploit Code, PoC Released
CISA is urging vendors to patch, given the release of public exploit code & a proof of concept tool for bugs that open billions of devices – phones, PCs, toys, etc. – to DoS & code execution.
Threatpost
Native Tribal Casinos Taking Millions in Ransomware Losses
An FBI notification is warning of an uptick in attacks against tribal casinos.
Threatpost
IOTW: Anonymous hacker posts salaries of ‘Twitchers’ to 4chan
Twitch users targeted by hacker who describes the online video community as “a disgusting toxic cesspool”
IOTW: Is your company at risk from this mysterious hacker group?
A series of hacks targeting 13 telecoms organizations across the globe by malicious group LightBasin is uncovered after five years of undetected activity
Why the Next-Generation of Application Security Is Needed
New software and code stand at the core of everything we do, but how well is all of this new code tested? Luckily, autonomous application security is here.
Threatpost
Top 10 Cyber Security Blogs
Cyber Security Hub’s recommended blogs to help keep you and your organization secure
REvil Servers Shoved Offline by Governments – But They’ll Be Back, Researchers Say
A multi-country effort has given ransomware gang REvil a taste of its own medicine by pwning its backups and pushing its leak site and Tor payment site offline.
CISA Urges Sites to Patch Critical RCE in Discourse
The patch, urgently rushed out on Friday, is an emergency fix for the widely deployed platform, whose No. 1 most trafficked site is Amazon’s Seller Central.
IOTW: Acer suffers second massive data breach in seven months
The world’s sixth-largest PC seller hit by data breach and loses 60GB of client, distributor and retailer information

