CVE-2021-22333
There is an Improper Validation of Array Index vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause code to execute, thus obtaining system permissions.
Application Security & Online Fraud , Cybercrime , Fraud Management & Cybercrime Google Ad Leads to Malicious App Disguised as Telegram Jeremy Kirk (jeremy_kirk) • March 17, 2021 An illustration of the desktop version of Telegram. (Source: Telegram) Jannis Kirschner, an independent security researcher based in Basel, Switzerland, searched on Sunday for the…
ANCHORAGE (BLOOMBERG) – The first high-level talks between the United States and China since President Joe Biden took office descended immediately into bickering and recriminations, with each side sharply criticising the other over human rights, trade and international alliances. US Secretary of State Antony Blinken began his remarks at the meeting in Anchorage, Alaska, by…
Governance & Risk Management , NIST Standards , Standards, Regulations & Compliance Firms Will Demonstrate Their Architectures to Help Agency Develop Guidance Dan Gunderman (dangun127) • July 26, 2021 The National Institute of Standards and Technology has selected 18 technology companies to demonstrate “zero trust” security architectures as it prepares to draft guidance…
Governance & Risk Management , Incident & Breach Response , IT Risk Management Department Recently Received a ‘D’ Grade for Its Cybersecurity Defenses Prajeet Nair (@prajeetspeaks) • August 23, 2021 Secretary of State Antony Blinken briefing reporters earlier this month (Source: State Department) The U.S. State Department reportedly recently sustained a cyber incident…
Fraud Management & Cybercrime , Fraud Risk Management , Governance & Risk Management Proofpoint: New Code Makes ‘RustyBuer’ Version Harder to Detect Doug Olenick (DougOlenick) • May 3, 2021 A malicious attachment containing RustyBuer malware (Source: Proofpoint) Attackers are using a freshly updated variant of the Buer first-stage malware loader rewritten in the…
The Republican National Committee (RNC) on Tuesday acknowledged that one of its contractors had been breached by hackers linked to Russia but said its data had not been accessed. Bloomberg News reported Tuesday that the Russian advanced persistent threat (APT) 29 group had breached the RNC’s computer systems last week by compromising Synnex, a third-party technology provider. …