Cyber Morning Call

704 - Patch Tuesday: Zero-days sob exploração em produtos Fortinet e Microsoft


Listen Later

[Referências do Episódio]

  • Atualizações de Segurança de janeiro de 2025 - https://msrc.microsoft.com/update-guide/releaseNote/2025-Jan 

  • Microsoft January 2025 Patch Tuesday fixes 8 zero-days, 159 flaws - https://www.bleepingcomputer.com/news/microsoft/microsoft-january-2025-patch-tuesday-fixes-8-zero-days-159-flaws/ 

  • January 14, 2025—KB5049981 (OS Builds 19044.5371 and 19045.5371) - https://support.microsoft.com/en-us/topic/january-14-2025-kb5049981-os-builds-19044-5371-and-19045-5371-12f3788f-6e7d-4524-8ab3-27d1666e0510 

  • Microsoft’s January security update fails/reverts on a machine with 2411 Session Recording Agent - https://support.citrix.com/s/article/CTX692505-microsofts-january-security-update-failsreverts-on-a-machine-with-2411-session-recording-agent?language=en_US 

  • Microsoft Patch Tuesday for January 2025 — Snort rules and prominent vulnerabilities - https://blog.talosintelligence.com/january-patch-tuesday-release/ 

  • Fortinet Releases Security Updates for Multiple Products - https://www.cisa.gov/news-events/alerts/2025/01/14/fortinet-releases-security-updates-multiple-products 

  • CVE-2024-55591: Fortinet Authentication Bypass Zero-Day Vulnerability Exploited in the Wild - https://www.tenable.com/blog/cve-2024-55591-fortinet-authentication-bypass-zero-day-vulnerability-exploited-in-the-wild 

  • Console Chaos: A Campaign Targeting Publicly Exposed Management Interfaces on Fortinet FortiGate Firewalls - https://arcticwolf.com/resources/blog/console-chaos-targets-fortinet-fortigate-firewalls/ 

  • Security Advisory Ivanti Avalanche 6.4.7 (Multiple CVEs) - https://forums.ivanti.com/s/article/Security-Advisory-Ivanti-Avalanche-6-4-7-Multiple-CVEs?language=en_US 

  • Security Advisory - Ivanti Application Control Engine (CVE-2024-10630) - https://forums.ivanti.com/s/article/Security-Advisory-Ivanti-Application-Control-Engine-CVE-2024-10630?language=en_US 

  • Security Advisory EPM January 2025 for EPM 2024 and EPM 2022 SU6 - https://forums.ivanti.com/s/article/Security-Advisory-EPM-January-2025-for-EPM-2024-and-EPM-2022-SU6?language=en_US 

  • Adobe Security Bulletins and Advisories, Jan 14, 2025 - https://helpx.adobe.com/security/security-bulletin.html 

  • Justice Department and FBI Conduct International Operation to Delete Malware Used by China-Backed Hackers - https://www.justice.gov/opa/pr/justice-department-and-fbi-conduct-international-operation-delete-malware-used-china-backed 

  • Google OAuth Vulnerability Exposes Millions via Failed Startup Domains - https://thehackernews.com/2025/01/google-oauth-vulnerability-exposes.html 

  • CISA Releases the JCDC AI Cybersecurity Collaboration Playbook and Fact Sheet - https://www.cisa.gov/news-events/alerts/2025/01/14/cisa-releases-jcdc-ai-cybersecurity-collaboration-playbook-and-fact-sheet 

  • Joint Statement on Cryptocurrency Thefts by the Democratic People’s Republic of Korea and Public-Private Collaboration -  https://www.state.gov/office-of-the-spokesperson/releases/2025/01/joint-statement-on-cryptocurrency-thefts-by-the-democratic-peoples-republic-of-korea-and-public-private-collaboration

  • Investigating A Web Shell Intrusion With Trend Micro™ Managed XDR - https://www.trendmicro.com/en_us/research/25/a/investigating-a-web-shell-intrusion-with-trend-micro--managed-xd.html  

  • Roteiro e apresentação: Carlos Cabral e Bianca Oliveira

    Edição de áudio: Paulo Arruzzo

    Narração de encerramento: Bianca Garcia

    ...more
    View all episodesView all episodes
    Download on the App Store

    Cyber Morning CallBy Tempest Security Intelligence


    More shows like Cyber Morning Call

    View all
    MacMagazine no Ar by MacMagazine.com.br

    MacMagazine no Ar

    178 Listeners

    Xadrez Verbal by Central 3 Podcasts

    Xadrez Verbal

    171 Listeners

    Giro do Loop by Loop Infinito

    Giro do Loop

    91 Listeners

    ResumoCast | Livros para Empreendedores by RESUMOCAST VENTURES

    ResumoCast | Livros para Empreendedores

    87 Listeners

    Christo Nihil Praeponere by Padre Paulo Ricardo

    Christo Nihil Praeponere

    53 Listeners

    História FM by Leitura ObrigaHISTÓRIA

    História FM

    29 Listeners

    Do Zero ao Topo by InfoMoney

    Do Zero ao Topo

    38 Listeners

    O Assunto by G1

    O Assunto

    165 Listeners

    RedCast | O podcast de Segurança da Informação by RedBelt Security

    RedCast | O podcast de Segurança da Informação

    0 Listeners

    História em Meia Hora by Agência de Podcast

    História em Meia Hora

    38 Listeners

    Não Inviabilize by Déia Freitas

    Não Inviabilize

    212 Listeners

    BBC Lê by BBC Brasil

    BBC Lê

    15 Listeners

    Rádio Novelo Apresenta by Rádio Novelo

    Rádio Novelo Apresenta

    94 Listeners

    IA Sob Controle - Inteligência Artificial by Alura - Hipsters Network

    IA Sob Controle - Inteligência Artificial

    2 Listeners

    Fio da Meada by Rádio Novelo

    Fio da Meada

    21 Listeners