36 Followers
107 Following
309 Posts
Security news director at Informa TechTarget's Dark Reading, patron saint of TT's "Bagel Wednesday." Formerly of SearchSecurity, Tom's Hardware, CRN, and a whole lot more. Signal: rwrightTT.20
Good lord, AI sucks...
CrowdStrike's preliminary post incident review attributes Friday's defective channel file update to a bug in the company's Content Validator.
https://www.crowdstrike.com/falcon-content-update-remediation-and-guidance-hub/
Falcon Content Update Remediation and Guidance Hub | CrowdStrike

Access consolidated remediation and guidance resources for the CrowdStrike Falcon content update affecting Windows hosts.

crowdstrike.com
Still waiting...
I know a lot of folks are probably sick of the attention that side channel attacks have swallowed up since Meltdown & Spectre first emerged and may be saying "Stop trying to make GoFetch happen!" -- but I think this one is worth watching. https://www.techtarget.com/searchsecurity/news/366575096/GoFetch-attack-spells-trouble-for-Apple-M-series-chips
'GoFetch' attack spells trouble for Apple M-series chips

Academic researchers discovered a hardware optimization feature called 'data memory-dependent prefetcher' could be abused to extract secret encryption keys from vulnerable systems.

TechTarget
Microsoft this morning published a very short update on the Midnight Blizzard breach that raises a lot of questions. https://msrc.microsoft.com/blog/2024/03/update-on-microsoft-actions-following-attack-by-nation-state-actor-midnight-blizzard/
Update on Microsoft Actions Following Attack by Nation State Actor Midnight Blizzard | MSRC Blog | Microsoft Security Response Center

Update on Microsoft Actions Following Attack by Nation State Actor Midnight Blizzard

If there isn't something more to this apparently very simple technique, then it seems like a major fly in the ointment for Google's security posture.
Um...I don't think that addresses the question.
Given the severity of the zero-day vulnerability and the fact that it was under exploitation *since October*, it feels like we need more info from Barracuda than just a couple sentences saying "replace your ESG device immediately."