March 17, 2022 at 12:56PM

■□□□□ Deprecating weak cryptographic standards (TLS 1.0 and 1.1) in Azure DevOps Services. https://devblogs.microsoft.com/devops/deprecating-weak-cryptographic-standards-tls-1-0-and-1-1-in-azure-devops-services/ https://t.me/cKure/10958

March 17, 2022 at 12:55PM

■■□□□ Employee Outsmarts Company With Their Own Rules When He Increases His Pay By 50% After They Refused To Do It . https://www.boredpanda.com/employee-denied-salary-raise-uses-company-rules-gets-paid-extra/ https://t.me/cKure/10957

March 17, 2022 at 12:54PM

■■■■□ United States’ CISA and FBI warning: Hackers used these tricks to dodge multi-factor authentication and steal email from NGO. https://www.zdnet.com/article/cisa-and-fbi-warning-hackers-used-these-tricks-to-dodge-multi-factor-authentication-and-steal-email/ https://t.me/cKure/10956

March 17, 2022 at 12:49PM

■■■■□ OpenSSL cert parsing bug causes infinite denial of service loop. https://www.openssl.org/news/secadv/20220315.txt https://www.bleepingcomputer.com/news/security/openssl-cert-parsing-bug-causes-infinite-denial-of-service-loop/ https://t.me/cKure/10954

March 17, 2022 at 12:46PM

■■■■■ Zero-Day: CrowdStrike’s Cloud Threat Research team discovered a new vulnerability (CVE-2022-0811) in CRI-O (a container runtime engine underpinning Kubernetes). Dubbed “cr8escape,” when invoked, an attacker could escape from a Kubernetes container and gain root access to the host and be able to move anywhere in the cluster. Invocation of CVE-2022-0811 can allow an attacker…

March 16, 2022 at 07:23PM

■■■■■ Exploit Development: Browser Exploitation on Windows – CVE-2019-0567, A Microsoft Edge Type Confusion Vulnerability (Part 1). https://connormcgarr.github.io/type-confusion-part-1/ https://t.me/cKure/10950

March 16, 2022 at 12:22PM

■□□□□ Cyber-War between Ukraine and Russia . A hacker remotely accessed a computer belonging to a regional Russian Ministry of Health, taking advantage of sloppy cybersecurity practices to expose its entire network. https://cybernews.com/cyber-war/hacker-breaches-key-russian-ministry-in-blink-of-an-eye/ https://t.me/cKure/10947