Theft of FireEye Red Team Tools

This article is contributed. See the original author and article here.

Original release date: December 8, 2020

FireEye has released a blog addressing unauthorized access to their Red Team’s tools by a highly sophisticated threat actor. Red Team tools are often used by cybersecurity organizations to evaluate the security posture of enterprise systems. Although the Cybersecurity and Infrastructure Security Agency (CISA) has not received reporting of these tools being maliciously used to date, unauthorized third-party users could abuse these tools to take control of targeted systems. The exposed tools do not contain zero-day exploits.

CISA recommends cybersecurity practitioners review FireEye’s two blog posts for more information and FireEye’s GitHub repository for detection countermeasures:

This product is provided subject to this Notification and this Privacy & Use policy.

Incorrect background reports can deny you a home

This article was originally posted by the FTC. See the original article here.

Whether you’re just starting out or starting a new life, information on your background report can determine if you get credit, a job, or even housing. That’s why the law requires background screening companies to take steps to ensure the accuracy of the information they collect and share about you. But some companies don’t take enough of these steps and put together inaccurate background reports that can stand between you and a place to live.

Brought to you by Dr. Ware, Microsoft Office 365 Silver Partner, Charleston SC.

Adobe Releases Security Updates for Multiple Products

This article is contributed. See the original author and article here.

Original release date: December 8, 2020

Adobe has released security updates to address vulnerabilities in multiple products. An attacker could exploit some of these vulnerabilities to take control of an affected system.

The Cybersecurity and Infrastructure Security Agency (CISA) encourages users and administrators to review the following Adobe Security Bulletins and apply the necessary updates.

This product is provided subject to this Notification and this Privacy & Use policy.

Microsoft Releases December 2020 Security Updates

This article is contributed. See the original author and article here.

Original release date: December 8, 2020

Microsoft has released updates to address vulnerabilities in Microsoft software. A remote attacker could exploit some of these vulnerabilities to take control of an affected system.

The Cybersecurity and Infrastructure Security Agency (CISA) encourages users and administrators to review Microsoft’s December 2020 Security Update Summary and Deployment Information and apply the necessary updates.

This product is provided subject to this Notification and this Privacy & Use policy.