After 3,911 days, my time at Twitter is done. It’s been an absolute honor working with so many amazing people over the years. Best job I’ve ever had. So many stories and unforgettable moments.
But for now, some rest. 🙏🏻💙
################################
CVE-2023-38408: Remote Code Execution in OpenSSH's forwarded ssh-agent
################################
now.. first questions...
how many devices in your enterprise do you have running a vulnerable version of SSH?
How many of these are internet facing?
are there in the wild exploitation?
Do you need to patch regardless? (think cyber essentials)
are there even patches available?
At what priority should you patch this vs other vulnerabilities?
#Vulnerability #Management
Earlier today @CrowdStrike reported a supply chain attack targeting the 3CX Voice Over Internet Protocol (VOIP) Windows desktop client.
- 600,000 companies use it
- 12,000,000 users
- @Sophos has identified a MacOS variant infected
- Currently attributed to Lazarus Group
This is important: if you're using a Samsung, Pixel or Vivo phone and don't want to dive into whether your phone is affected or not, disable "Wi-Fi Calling" and "VoLTE" and wait for the patch.
At least on some Samsung phones, both are enabled by default.