Full advisory from the #TCG about #CVE20231017 and #CVE20231017 here:https://trustedcomputinggroup.org/wp-content/uploads/TCGVRT0007-Advisory-FINAL.pdf
Article overview from #THN about the latest on the #TPM20 library flaws https://thehackernews.com/2023/03/new-flaws-in-tpm-20-library-pose-threat.html
From #THN: "An exhaustive analysis of #FIN7 has unmasked the #cybercrime syndicate's organizational hierarchy, alongside unraveling its role as an affiliate for mounting ransomware attacks.
It has also exposed deeper associations between the group and the larger threat ecosystem comprising the now-defunct #ransomware #DarkSide, #REvil, and #LockBit families.
The highly active threat group, also known as #Carbanak, is known for employing an extensive arsenal of tools and tactics to expand its "cybercrime horizons," including adding ransomware to its playbook and setting up fake security companies to lure researchers into conducting ransomware attacks under the guise of penetration testing.
https://thehackernews.com/2022/12/fin7-cybercrime-syndicate-emerges-as.html?_m=3n%2e009a%2e2920%2evo0ao07ax6%2e1w1s
Privacy protection is basically what we do, so I never get tired of stories about how unpredictable the ways of getting Facebook user data are. Cambridge Analytica might be dead, but the business of stealing users’ data lives on, and this article demonstrates one more example of that. The story