It's Security Y'all!
banner
itssecurityyall.substack.com
It's Security Y'all!
@itssecurityyall.substack.com
Vanguard of Incident Response Management
👉🏾 Infects devices through firmware updates and backdoored apps.

open.substack.com/pub/itssecur...
#infosec #androidsecurity
January 17, 2024 at 8:31 PM
👉🏾 Zero-day exploit already exists for V8 engine bug (CVE-2024-0519). Update Chrome immediately (automatic updates recommended).

lnkd.in/gXpwnHpX
#infosec #zeroday #patchmanagement
January 17, 2024 at 4:31 PM
👉🏾 New malware, Phemedrone Stealer, targets personal data like passwords, browser history, and logins.

open.substack.com/pub/itssecur...
#infosec
January 15, 2024 at 5:34 PM
January 14, 2024 at 2:57 PM
👉🏾 Hackers Exploited Hidden Flaws: Two vulnerabilities in Ivanti Connect Secure, discovered in December, allowed attackers to install custom malware.

open.substack.com/pub/itssecur...
#infosec
January 12, 2024 at 5:30 PM
👉🏾 Catfishin' Malware: Balada Injector hijacked over 6,700 websites since December, redirecting visitors to fake popups and scams.

open.substack.com/pub/itssecur...
#infosec
January 11, 2024 at 6:56 PM
👉🏾 Mandiant's X Account Hijacked: Hackers used the platform to spread fake token airdrop scams, targeting 123,000 followers.

open.substack.com/pub/itssecur...
#infosec
January 11, 2024 at 2:49 PM
👉🏾 Tortilla Ransomware Nailed: Dutch police arrested the operator and obtained a decryptor for victims' locked files.

#infosec
open.substack.com/pub/itssecur...
January 9, 2024 at 5:59 PM
December 28, 2023 at 10:41 PM
December 26, 2023 at 5:06 PM
December 22, 2023 at 6:03 PM
December 22, 2023 at 12:21 AM
December 20, 2023 at 5:46 PM
December 20, 2023 at 4:40 PM
December 19, 2023 at 4:25 PM
December 19, 2023 at 12:40 AM
👉🏾 Qakbot, a versatile malware threat, returned after a takedown in August.

open.substack.com/pub/itssecur...

#infosec
December 18, 2023 at 3:36 PM
December 14, 2023 at 3:50 PM
December 14, 2023 at 2:05 PM
December 12, 2023 at 2:12 PM
December 10, 2023 at 1:56 AM
👉🏾 AutoSpill vulnerability allows malicious apps to steal login credentials from popular password managers.
👉🏾 Impact widespread, affecting 1Password, LastPass, Enpass, and Keeper.

open.substack.com/pub/itssecur...
#infosec
December 9, 2023 at 6:14 PM
December 8, 2023 at 8:12 PM
December 8, 2023 at 1:30 PM
December 7, 2023 at 1:56 AM