News
  • SoS Reviews & Outreach Subscription
    The SoS Reviews and Outreach highlights some of the exciting research, news, and events that impact our technical community.
  • Pub Crawl Archive
    Pub Crawl Archive  
  • "The Urgent Need for Memory Safety in Software Products"
    The secure-by-design white paper from the US Cybersecurity and Infrastructure Security Agency (CISA) outlines three fundamental principles for software manufacturers: accept responsibility for customer security outcomes, embrace radical transpare
  • "FBI, CISA Issue Joint Warning on 'Snatch' Ransomware-as-a-Service"
    Cybersecurity advisories issued by the FBI and the US Cybersecurity and Infrastructure Security Agency (CISA) indicate that a specific threat warrants the immediate attention of organizations in the line of fire.
  • The Science of Security 5 Hard Problems
    The Science of Security 5 Hard ProblemsThe Principal Investigators (PIs) of the Science of Security Lablets in collaboration with NSA Research, developed the 5 Hard Problems as a measure to establish the beginnings of a common language and gau
  • "Fake WinRAR PoC Spread VenomRAT Malware"
    Unknown threat actors have published a fake proof-of-concept (PoC) exploit for CVE-2023-4047, a recently patched Remote Code Execution (RCE) flaw in WinRAR, in order to spread the VenomRAT malware.
  • "Data Breach Reveals Distressing Info: People Who Order Pineapple on Pizza"
    Pizza Hut Australia recently announced that 190,000 customer's data had been accessed.  The information unauthorized entities accessed included customers' names, delivery addresses, email addresses, phone numbers, and order histories.
  • Pub Crawl - September 2023
    Selections by dgoff
  • "Scams Now Make Up 75% of Cyber Threats"
    According to security researchers at Norton, scams involving human manipulation comprised 75% of all desktop threats in the first half of 2023.
  • "Bot Attack Costs Double to $86m Annually"
    According to security researchers at Netacea, the typical business in the US and UK loses over 4% of their online revenue every year due to malicious bot attacks.
  • "T-Mobile App Glitch Let Users See Other People's Account Info"
    T-Mobile customers reported being able to see the account and billing information of others after logging into the company's official mobile app.
  • "Cyber Group 'Gold Melody' Selling Compromised Access to Ransomware Attackers"
    A financially motivated threat actor has been identified as an Initial Access Broker (IAB) who sells access to compromised organizations to other adversaries to perform follow-on attacks.