Jan 31, 2023 | Podcast
Make sure upgrade to the latest version of GitHub before this Thursday, otherwise it will no longer function. GitHub said that unknown attackers had stolen encrypted code-signing certificates for its Desktop and Atom applications. While they have found no evidence...
Jan 30, 2023 | Podcast
If your company has a security champions program, it’s probably not doing too well. According to Sandesh of Boring AppSec, he claims that most security champions program do not take off, or if they do, taper off quickly. Building a security program is hard and...
Jan 27, 2023 | Podcast
The data trail you leave behind whenever you’re online is bigger, and more revealing, than you may think. It’s data privacy day this Saturday. Or if you’re based in Europe, then it would be data protection day for you. The day serves as a reminder of...
Jan 26, 2023 | Podcast
Cyber criminals have found a new way to send spam and phishing emails that allow them to bypass email scanners. They are using Google Ad invites for their email delivery. Administrator of Google Ads accounts can add new users to their account by sending out invites....
Jan 25, 2023 | Podcast
A popular wordpress learning management system, called LearnPress, was vulnerable to multiple critical severity vulnerabilities. This includes SQL injection and local file inclusion. The vulnerability was patched on December 20, 2022 with the release of version 4.2.0....
Jan 24, 2023 | Podcast
Researchers from Trend Micro recently demonstrate how GitHub Codespaces can easily be configured to act as a web server for distributing malware. Launched in November 2022, GitHub Codespaces allows developers to deploy cloud-hosted platforms in virtualised containers...