<img src="https://secure.ruth8badb.com/159098.png" alt="" style="display:none;">

IT Security Newsletter - 4/10/23

SHARE

Hacking

Printers Pose Persistent Yet Overlooked Threat

Vulnerabilities in the device firmware and drivers underscore how printers cannot be set-and-forget technology and need to be managed. A rash of printer-related vulnerabilities in 2023 have punctuated security expert warnings that printers continue to be a significant source of vulnerability within companies - especially as remote workers require printing resources or access to corporate printers. READ MORE...


MSI hit in cyberattack, warns against installing knock-off firmware

Owners of MSI-brand motherboards, GPUs, notebooks, PCs, and other equipment should exercise caution when updating their device's firmware or BIOS after the manufacturer revealed it has recently suffered a cyberattack. In a statement shared on Friday, MSI urged users "to obtain firmware/BIOS updates only from its official website," and to avoid using files from other sources. READ MORE...

Trends

Cybercriminals use simple trick to obtain personal data

People reveal more personal information when you ask them the same questions a second time - according to new research from the University of East Anglia. A new study reveals how simple repetition can make people over-disclose, and potentially put themselves at risk of identity theft and cybercrime. The research team say that understanding why people disclose personal data could help inform measures to address the problem. READ MORE...

Software Updates

Apple Ships Urgent iOS Patch for Newly Exploited Zero-Days

The newest iOS 16.4.1 and iPadOS 16.4.1 patches a pair of code execution flaws that have already been exploited in the wild. The newest iOS 16.4.1 and iPadOS 16.4.1 updates cover code execution software flaws in IOSurfaceAccelerator and WebKit, suggesting a complex exploit chain was detected in the wild hitting the latest iPhone devices. "Apple is aware of a report that this issue may have been actively exploited," Cupertino says in a barebones advisory that credits Google and Amnesty International with reporting the issue. READ MORE...

Information Security

Almost Half of Former Employees Say Their Passwords Still Work

An alarming number of organizations are not properly offboarding employees when they leave, especially in regard to passwords. In a March PasswordManager.com survey of 1,000 U.S. workers who had access to company passwords at their previous jobs, 47% admitted to using them after leaving the company. Security teams should be terminating access to all employee accounts, such as email, cloud applications, and internal tools, after employees leave. READ MORE...

On This Date

  • ...in 1912, the RMS Titanic leaves port in Southampton, England for her first and last voyage.
  • ...in 1925, F. Scott Fitzgerald's classic novel "The Great Gatsby" is first published in New York City.
  • ...in 1970, The Beatles officially break up after Paul McCartney announces that he is leaving for personal and professional reasons.
  • ...in 1992, actress Daisy Ridley (Star Wars: The Force Awakens) is born in London, England.