Back to Basics: Why We Need to Encourage More Secure IoT Development

The Internet of Things (IoT) is radically reshaping the way we live and work. Before our very eyes, organizations are becoming more agile, efficient and cost effective to run, all while consumers marvel at the wonders of the smart home, fitness trackers and connected cars. There’s just one major problem: Much of this new infrastructure…
The post Back to Basics: Why We Need to Encourage More Secure IoT Development appeared first on . Read More HERE…

Read more

Zero-Day Coverage Update – Week of July 23, 2018

We’re at the end of July and the Zero Day Initiative (ZDI) has published 873 advisories so far. That’s 273 advisories this month alone – and that’s just the tip of the iceberg! Earlier this week, ZDI announced the Targeted Incentive Program, which brings over $1,500,000 USD in special bounty awards for specific targets. With…
The post Zero-Day Coverage Update – Week of July 23, 2018 appeared first on . Read More HERE…

Read more

Zero-Day Coverage Update – Week of July 16, 2018

One night this week, I came across one of my favorite movies Willy Wonka and the Chocolate Factory. The world had gone crazy after the reclusive Willy Wonka announces that he has hidden five golden tickets in chocolate Wonka Bars that promised a factory tour and a lifetime supply of chocolate. There’s a scene at…
The post Zero-Day Coverage Update – Week of July 16, 2018 appeared first on . Read More HERE…

Read more

Zero-Day Coverage Update – Week of July 9, 2018

Earlier this week, I wrote a blog covering a couple of the statistics from the Zero Day Initiative’s (ZDI) first half of 2018. One of the stats that I didn’t cover is the increasing focus on enterprise applications. The team is seeing consistent growth in submissions of Microsoft and Apple vulnerabilities, but now they’re also…
The post Zero-Day Coverage Update – Week of July 9, 2018 appeared first on . Read More HERE…

Read more

Zero Day Initiative: A 1H2018 Recap

When the Zero Day Initiative (ZDI) was formed in 2005, the cyber threat landscape was a bit different from what we see today. Threats were a little less sophisticated, but there was one thing that we saw then that we still see now: the shortage of cybersecurity professionals and researchers. The team decided that with…
The post Zero Day Initiative: A 1H2018 Recap appeared first on . Read More HERE…

Read more

Zero-Day Coverage Update – Week of July 2, 2018

The General Data Protection Regulation (GDPR) has been up and running for a couple of months now and your organization is compliant. It’s time to take a little break – well, not so fast! Late last week, the State of California passed a new data privacy law called the California Consumer Privacy Act of 2018….
The post Zero-Day Coverage Update – Week of July 2, 2018 appeared first on . Read More HERE…

Read more

TippingPoint Threat Intelligence and Zero-Day Coverage – Week of June 25, 2018

I have never reverse engineered anything, but I did dismantle a Betamax VCR and put it back together without an instruction manual. My little brother liked to use the tape slot as a garage for his Hot Wheels® toy cars. We were usually able to take out the cars without any issues, but one day,…
The post TippingPoint Threat Intelligence and Zero-Day Coverage – Week of June 25, 2018 appeared first on . Read More HERE…

Read more

TippingPoint Threat Intelligence and Zero-Day Coverage – Week of June 18, 2018

As I pull together the list of zero-day filters for this blog, I see all types of vulnerabilities from various vendors. My interest is always piqued when I see a vulnerability affecting a security company. The Zero Day Initiative’s (ZDI) interest was also piqued when the researcher Pagefault submitted a Bitdefender vulnerability to the ZDI…
The post TippingPoint Threat Intelligence and Zero-Day Coverage – Week of June 18, 2018 appeared first on . Read More HERE…

Read more

TippingPoint Threat Intelligence and Zero-Day Coverage – Week of June 11, 2018

As a native Texan, I’ve seen more than my fair share of bugs – actual physical bugs that love the hot, humid Texas climate and my curly hair for some reason. The Zero Day Initiative (ZDI) sees many bugs (of the software variety), including those that affect SCADA control systems. Fritz Sands recently walked through…
The post TippingPoint Threat Intelligence and Zero-Day Coverage – Week of June 11, 2018 appeared first on . Read More HERE…

Read more

TippingPoint Threat Intelligence and Zero-Day Coverage – Week of June 4, 2018

It was a busy day yesterday, with Adobe issuing four emergency patches for their Flash Player, including one for a zero-day being actively exploited in the wild. Adobe has indicated that CVE-2018-5002 was discovered being used in limited, targeted attacks on Windows users in the wild. The attacks use Microsoft Office documents embedded with malicious…
The post TippingPoint Threat Intelligence and Zero-Day Coverage – Week of June 4, 2018 appeared first on . Read More HERE…

Read more