Dark mode: ON

Infosec Decoded Season 4 #60: Satellite Migration

With @sambowne@infosec.exchange

Recorded Fri, July 26, 2024

Sam Bowne

Weight-loss power of oats naturally mimics popular obesity drugs
One-dose nasal spray clears toxic Alzheimer's proteins to improve memory (in mice)
Twice-a-year shot provides 100 percent HIV protection, study finds

Microsoft adds generative search to its Bing engine

Fortune 500 firms to see $5.4 bln in CrowdStrike losses, says insurer Parametrix

Data breach exposes US spyware maker behind Windows, Mac, Android and Chromebook malware
The Minnesota-based Spytech snooped on thousands of devices before it was hacked.
The data shows that Spytech’s spyware — Realtime-Spy and SpyAgent, among others — has been used to compromise more than 10,000 devices since the earliest-dated leaked records from 2013, including Android devices, Chromebooks, Macs, and Windows PCs worldwide.

Biggest-ever leak of digital pirates: 10 million exposed by Z-Library copycat
On June 27th, 2024, the Cybernews research team discovered an exposed database containing almost 10 million users’ data.
The data belonged to a threat actor operating a malicious clone of Z-Library, a well-known shadow online platform for pirating books and academic papers.

New DNS attack impacts a quarter of all open DNS resolvers
A team of Chinese academics has discovered a new type of DNS attack that impacts almost a quarter of all open DNS resolvers running on the internet. Named TuDoor, the attack uses malformed DNS packets to trigger logic errors inside DNS software. Eighteen of the 24 projects have acknowledged the research team's work and have issued 33 CVEs.

Non-Google search engines blocked from showing recent Reddit results
Updated robots.txt file hits Bing and others without a Reddit deal.

May solar superstorm caused largest 'mass migration' of satellites in history
The May solar superstorm that set the night sky around the world ablaze with colorful aurora displays also triggered chaos in orbit as thousands of satellites had to maneuver at the same time to maintain their altitude amid the sudden thickening of the upper atmosphere.

Goodbye? Attackers Can Bypass 'Windows Hello' Strong Authentication
Evilginx adversary-in-the-middle (AitM) reverse-proxy attack framework performs downgrade attacks, allowing threat actors to crack into even biometrically protected PCs and laptops.

Intent to End OCSP Service--Let's Encrypt

PKfail Secure Boot bypass lets attackers install UEFI malware
Hundreds of UEFI products from 10 vendors are susceptible to compromise due to a critical firmware supply-chain issue known as PKfail, which allows attackers to bypass Secure Boot and install malware. As the Binarly Research Team found, affected devices use a test Secure Boot "master key"—also known as Platform Key (PK)—generated by American Megatrends International (AMI), which was tagged as "DO NOT TRUST" and that upstream vendors should've replaced with their own securely generated keys.

FYI: Data from deleted GitHub repos may not actually be deleted

US solar production soars by 25 percent in just one year


Gov. Gavin Newsom issues executive order for removal of homeless encampments in California
“Newsom could have issued this order before the (Supreme Court) decision. The only difference now is that states and localities are free to confine and arrest people even when there is no shelter available”