Month: January 2023

Jan 17, 2023Ravie LakshmananThreat Response / Malware New research has found that it is possible for threat actors to abuse a legitimate feature in GitHub Codespaces to deliver malware to victim systems. GitHub Codespaces is a cloud-based configurable development environment that allows users to debug, maintain, and commit changes to a given codebase from a
0 Comments
Jan 17, 2023Ravie LakshmananCloud Security / Bug Report Four different Microsoft Azure services have been found vulnerable to server-side request forgery (SSRF) attacks that could be exploited to gain unauthorized access to cloud resources. The security issues, which were discovered by Orca between October 8, 2022 and December 2, 2022 in Azure API Management, Azure
0 Comments
Netflix has released a revamped interface for its iPhone app via an update. The new update, which started development in 2022, brings a refreshed look to the app’s interface, with new animations and transitions, making it all appear fluid. The update also brings a card-like interface with matching backgrounds that Netflix refers to as the
0 Comments
Jan 17, 2023Ravie LakshmananSoftware Security / Supply Chain A threat actor by the name Lolip0p has uploaded three rogue packages to the Python Package Index (PyPI) repository that are designed to drop malware on compromised developer systems. The packages – named colorslib (versions 4.6.11 and 4.6.12), httpslib (versions 4.6.9 and 4.6.11), and libhttps (version 4.6.12)
0 Comments
Business titans trudging through Alpine snow can’t stop talking about a chatbot from San Francisco. Generative artificial intelligence, tech that can invent virtually any content someone can think up and type into a text box, is garnering not just venture investment in Silicon Valley but interest in Davos at the World Economic Forum’s annual meeting
0 Comments
Jan 16, 2023The Hacker NewsIdentity Management / MFA When considering authentication providers, many organizations consider the ease of configuration, ubiquity of usage, and technical stability. Organizations cannot always be judged on those metrics alone. There is an increasing need to evaluate company ownership, policies and the stability, or instability, that it brings. How Leadership Change
0 Comments
Twitter has secured a ruling allowing the social media company to force several laid-off workers suing over their termination to pursue their claims via individual arbitration than a class-action lawsuit. US District Judge James Donato on Friday ruled that five former Twitter employees pursuing a proposed class action accusing the company of failing to give adequate
0 Comments