@LBHTShow Context is important when you make these types of hot takes !
2015 we led league the league in injuries 18 players went on ir: including
Terrell Suggs out for the season
Joe Flacco out for the season
Steve smith
Starting Tackles
Dennis pitta
The first two running backs.
Introducing Maverc’s Penetration Testing as a Service solution (PTaaS)
Fast, Automated, and Verified by Experts—Pentest-as-a-Service You Can Trust. https://t.co/rm7uwWCDs8
Cyber Threat Advisory: A financially motivated cybercriminal organization recently used a zero-day vulnerability in the widely used file compression tool WinRAR to launch cyberattacks against traders and brokers, aiming to steal their digital currency.
https://t.co/ysWTTRpzZp
🚨More than 40 vulnerabilities were routinely exploited by malicious cyber actors targeting orgs across the globe. An annual fan favorite --> Protect your org by diving into the 2022 Top Routinely Exploited Vulnerabilities: https://t.co/PhP97gGVBu
🚨 BREAKING: Code Interpreter is FINALLY rolling out to all ChatGPT Plus users.
It's the most powerful feature OpenAI has released since GPT-4. It makes everyone a data analyst.
Here are 15 mind-blowing use cases of Code Interpreter:
The ransomware gang claimed the cyber attack on Siemens Energy and four other organizations including Schneider Electric and the University of California Los Angeles.
#cybersecurity https://t.co/G14vperHfz
DreamPort hosted the Joint Cyber Warfighting Architecture (JCWA) technical exchange meeting this week, which examined the need to illuminate capability shortfalls. The keynote speaker was Khoi Nguyen, Command Acquisition Executive and J9 for U.S. Cyber Command.
#cybersecurity
A critical vulnerability was discovered in the secure file transfer service MOVEit Transfer. The ReliaQuest Threat Research team is monitoring the situation closely. Read more here for what you should know and immediate mitigation steps: https://t.co/0dacIARuTN
GreyNoise has observed scanning activity for the login page of MOVEit Transfer as early as March 3rd, 2023. While we have not observed activity directly related to exploitation, all of the 5 IPs we have observed attempting to discover the location of MOVEit installations were marked as “Malicious” by GreyNoise for prior activities.
https://t.co/P8rZaRiDEw
Today Kaspersky announced they were a victim of an iOS zero-click 0day exploit. The exploit delivered spyware targetting Kaspersky middle and upper management.
They named the attack 'Operation Triangulation'
More info: https://t.co/gH13mQXroT
Cross-Sector Cybersecurity Performance Goals (CPGs) can help all organizations, regardless of size or industry, prioritize the steps they need to take to mitigate risk of potential threats from sophisticated cyber threat actors. Learn more: https://t.co/TtiBLrqqqa
The critical infrastructure #cybersecurity one day C-Suite Conference.
Subject matter expert presentations
Use case and solutions from asset owners
Announcing Dr. Michael Mylrea as subject matter expert presenter and moderator.
Website launch is eminent.
Microsoft announces a new GPT-4 powered AI assistant known as Security Copilot to help with incident response and threat hunting
https://t.co/s2xiHn1Wh5
Critical #0day in #Outlook fixed.
CVE-2023-23397 exploited by #FancyBear to breach government, military, energy, and transportation orgs.
Reported by CERT-UA so probably used in Russia's war against Ukraine.
The flaw can be used to steal NTLM Hashes of victims.
To cite:
Threat actors can exploit it by sending messages with extended MAPI properties containing UNC paths to an SMB share (TCP 445) under their control.
"The attacker could exploit this vulnerability by sending a specially crafted email which triggers automatically when it is retrieved and processed by the Outlook client. This could lead to exploitation BEFORE the email is viewed in the Preview Pane," Microsoft says in a security advisory published today.
"The connection to the remote SMB server sends the user's NTLM negotiation message, which the attacker can then relay for authentication against other systems that support NTLM authentication," Redmond explains added in a separate blog post.
CVE-2023-23397 impacts all supported versions of Microsoft Outlook for Windows but doesn't affect Outlook for Android, iOS, or macOS versions.
Additionally, since online services like Outlook on the web and Microsoft 365 do not support NTLM authentication, they are not vulnerable to attacks exploiting this NTLM relay vulnerability.
Patches are out so #Patch now!
#infosec #vulnerabilty #news
Microsoft has released CVE-2023-23397 to address the critical elevation of privilege (EoP) vulnerability affecting Microsoft Outlook for Windows. We strongly recommend all customers update Microsoft Outlook for Windows to remain secure. Learn more ⬇️
https://t.co/GNovrlBniL