Polkit on Linux, VMWare Log4J headach, China’s APT27 and Android Malware
Cybersecurity News
CyberHub Podcast
January 26th, 2022
Today's Headlines and the latest #cybernews from the desk of the #CISO:
Polkit Vulnerability Provides Root Privileges on Linux Systems
VMware: Patch Horizon servers against ongoing Log4j attacks!
Android malware will factory-reset a phone after stealing a user’s funds
German govt warns of APT27 hackers backdooring business networks
Let's Encrypt is revoking lots of SSL certificates in two days
Google Drops FLoC and Introduces Topics API to Replace Tracking Cookies for Ads
Story Links:
https://www.securityweek.com/polkit-vulnerability-provides-root-privileges-linux-systems (https://www.securityweek.com/polkit-vulnerability-provides-root-privileges-linux-systems)
https://www.bleepingcomputer.com/news/security/vmware-patch-horizon-servers-against-ongoing-log4j-attacks/ (https://www.bleepingcomputer.com/news/security/vmware-patch-horizon-servers-against-ongoing-log4j-attacks/)
https://therecord.media/android-malware-will-factory-reset-a-phone-after-stealing-a-users-funds/ (https://therecord.media/android-malware-will-factory-reset-a-phone-after-stealing-a-users-funds/)
https://www.bleepingcomputer.com/news/security/german-govt-warns-of-apt27-hackers-backdooring-business-networks/ (https://www.bleepingcomputer.com/news/security/german-govt-warns-of-apt27-hackers-backdooring-business-networks/)
https://www.bleepingcomputer.com/news/security/lets-encrypt-is-revoking-lots-of-ssl-certificates-in-two-days/ (https://www.bleepingcomputer.com/news/security/lets-encrypt-is-revoking-lots-of-ssl-certificates-in-two-days/)
https://thehackernews.com/2022/01/google-drops-floc-and-introduces-topics.html (https://thehackernews.com/2022/01/google-drops-floc-and-introduces-topics.html)
“The Microsoft Doctrine” by James Azar now on Substack https://jamesazar.substack.com/p/the-microsoft-doctrine (https://jamesazar.substack.com/p/the-microsoft-doctrine)
The Practitioner Brief is sponsored by:
KnowBe4: https://info.knowbe4.com/phishing-security-test-cyberhub (https://info.knowbe4.com/phishing-security-test-cyberhub)
******
Find James Azar Host of CyberHub Podcast, CISO Talk, Goodbye Privacy, Digital Debate, and Other Side of Cyber
James on Linkedin: https://www.linkedin.com/in/james-azar-a1655316/ (https://www.linkedin.com/in/james-azar-a1655316/)
Telegram: CyberHub Podcast
******
Sign up for our newsletter with the best of CyberHub Podcast delivered to your inbox once a month: http://bit.ly/cyberhubengage-newsletter (https://www.youtube.com/redirect?v=64OtAZsDEeo&event=video_description&redir_token=7clfSb1AyXDXZa4GVIPiUJ3h9LB8MTU5MDU5MjczOUAxNTkwNTA2MzM5&q=http%3A%2F%2Fbit.ly%2Fcyberhubengage-newsletter)
******
Website: https://www.cyberhubpodcast.com (https://www.youtube.com/redirect?v=64OtAZsDEeo&event=video_description&redir_token=7clfSb1AyXDXZa4GVIPiUJ3h9LB8MTU5MDU5MjczOUAxNTkwNTA2MzM5&q=https%3A%2F%2Fwww.cyberhubpodcast.com)
Youtube: https://www.youtube.com/channel/UCPoU8iZfKFIsJ1gk0UrvGFw (https://www.youtube.com/channel/UCPoU8iZfKFIsJ1gk0UrvGFw)
Facebook: https://www.facebook.com/CyberHubpodcast/ (https://www.facebook.com/CyberHubpodcast/)
Linkedin: https://www.linkedin.com/company/cyberhubpodcast/
Twitter: https://twitter.com/cyberhubpodcast (http://www.twitter.com/cyberhubpodcast)
Instagram: https://www.instagram.com/cyberhubpodcast
Listen here: https://linktr.ee/cyberhubpodcast (https://linktr.ee/cyberhubpodcast)
The Hub of the Infosec Community.
Our mission is to provide substantive and quality content that’s more than headlines or sales pitches. We want to be a valuable source to assist those cybersecurity practitioners in their mission to keep their organizations secure.