Call us today on: +44 (0)203 88 020 88
SecureTeamSecureTeamSecureTeamSecureTeam
  • Home
  • Our Services
    • Infrastructure Testing
      • Internal Network Penetration Test
      • External Network Penetration Test
      • Wireless Network Penetration Test
      • Vulnerability Assessment
      • Network Segregation Test
      • Voice over IP (VoIP) Penetration Test
    • Application Testing
      • Web Application Penetration Test
      • Mobile Application Penetration Test
      • Desktop Application Security Assessment
      • Citrix Breakout Test
    • Configuration Review
      • Windows Server Build Review
      • Linux Server Build Review
      • Citrix Configuration Review
    • Information Assurance
      • ISO 27001 Gap Analysis
    • Cyber Essentials
  • News
  • Articles
  • About
    • About SecureTeam
    • STORM Appliances
      • Installing a STORM Device
      • Returning a STORM Device
    • White-Label Consultancy
    • Jobs
    • Cookie Policy
    • Privacy Notice
    • Website Terms & Conditions
  • Contact Us

Blog

Home 2020 June

Netgear SOHO Router Vulnerabilities

By Mark Faithfull | News, Vulnerabilities | 24 June, 2020 | 0

A Zero-Day Remote Code Execution vulnerability affects 79 different Netgear routers With the significant increase in home-working due to the COVID pandemic, the security of home workers’ connectivity is under scrutiny.  Security researchers have detailed a serious vulnerability in the firmware of many Netgear routers popular in small and home office set-ups. The vulnerability existsRead more

AWS deflects largest every DDoS

By Mark Faithfull | News | 24 June, 2020 | 0

Amazon Web Services has revealed that in May 2020 it deflected the largest ever recorded DDoS attack. The previous largest Distributed Denial of Service (DDoS) attack had been against GitHub in 2018 which was measured at 1.3 Terabits (Thousand Billion bits per second) – the attack against AWS in May was almost double at 2.3Read more

Key Lessons from 2020 Data Breach Report

By Mark Faithfull | Articles, Information Assurance | 24 June, 2020 | 0

Verizon has published their 13th annual Data Breach Investigations Report – and it focuses on security incidents and breaches that occurred during 2019. The 2020 DBIR analysed 157,525 incidents, 32,002 in detail and confirmed 3950 breaches in 81 countries. Although the scope is global, half of the incidents in the data come from North AmericaRead more

LastPass study reveals extent of password reuse

By Mark Faithfull | News | 22 June, 2020 | 0

Security software provider LastPass has published their third Annual Global Password Security Report which reveals the extent of password reuse. LastPass has analysed the anonymised data and usage patterns of their enterprise password vault used by 47,000 organisations around the world. Some key data points from the report: For Businesses under 25 employees the averageRead more

VideoLAN patches RCE vulnerability in VLC

By Mark Faithfull | News, Vulnerabilities | 22 June, 2020 | 0

VideoLAN has released a patch for their popular VLC Media player software to resolve a remote code execution vulnerability The VLC open source media player is widely used in domestic and enterprise environments for playback of all kinds of video files and digital signage applications. In a security bulletin, the developer state that: If successful, a maliciousRead more

What is Security Awareness Training

By Mark Faithfull | Articles, Information Assurance | 17 June, 2020 | 0

Security Awareness Training is an essential component of any organisation’s information security. Even though it is mandated by frameworks such as PCI-DSS or ISO 27001, Security Awareness Training should be more than just a compliance exercise.  A good security awareness training programme will drive changes in behaviour amongst staff, suppliers and customers that will improveRead more

OpenSSH to drop support for SHA-1

By Mark Faithfull | News, Tools | 12 June, 2020 | 0

The developers of the OpenSSH implementation of Secure Shell have announced their intention to drop support for SHA-1 in a ‘near future release.’   OpenSSH is used by millions of system administrators to securely access networked systems.   OpenSSH supports various encryption algorithms and the decision to drop support for SHA-1 comes as recent research demonstrates itRead more

Record breaking June Patch Tuesday

By Mark Faithfull | News, Vulnerabilities | 12 June, 2020 | 0

In June 2020 Microsoft’s Patch Tuesday fixes a record 129 defects and vulnerabilities in its software – with a further 19 patches in the June Microsoft Office patch bundle. This continues a recent trend of ever-increasing numbers of patches included in the monthly updates from Microsoft (the two previous highest number of patches were inRead more

Recent Posts

  • CISA Warns of Pass-the-Cookie attack
  • Microsoft Patches Critical Bugs
  • Flash is dead – now delete it from your system
  • 100000 Zyxel firewalls have hardcoded backdoor exposed
  • When Good Employees Go Bad

Tags

Android blockchain Bluetooth Chrome Cisco credential stuffing cyber crime cyber essentials cyber security cyber security news Data Protection DNS Ethereum Exchange Server exim fileless formjacking GDPR Intel IoT Linux MacOS Meltdown microsoft ncsc patching penetration testing phishing ransomware RDP Row Hammer security breach Security operations security testing SIEM Spectre supply chain attacks Sysinternals Tomcat TPM VNC vulnerability management web applications web browsers wireless

Archives

  • January 2021
  • December 2020
  • November 2020
  • October 2020
  • September 2020
  • August 2020
  • July 2020
  • June 2020
  • April 2020
  • March 2020
  • February 2020
  • January 2020
  • December 2019
  • November 2019
  • October 2019
  • September 2019
  • August 2019
  • July 2019
  • June 2019
  • May 2019
  • April 2019
  • March 2019
  • February 2019
  • January 2019
  • December 2018
  • November 2018
  • July 2018
  • June 2018
  • April 2018
  • January 2018
  • October 2017
BCS Cyber Essentials Cyber Essentials Cyber Essentials PLUS ISO 9001 ISO 27001
information. secured.
  • Home
  • Our Services
    • Infrastructure Testing
      • Internal Network Penetration Test
      • External Network Penetration Test
      • Wireless Network Penetration Test
      • Vulnerability Assessment
      • Network Segregation Test
      • Voice over IP (VoIP) Penetration Test
    • Application Testing
      • Web Application Penetration Test
      • Mobile Application Penetration Test
      • Desktop Application Security Assessment
      • Citrix Breakout Test
    • Configuration Review
      • Windows Server Build Review
      • Linux Server Build Review
      • Citrix Configuration Review
    • Information Assurance
      • ISO 27001 Gap Analysis
    • Cyber Essentials
  • News
  • Articles
  • About
    • About SecureTeam
    • STORM Appliances
      • Installing a STORM Device
      • Returning a STORM Device
    • White-Label Consultancy
    • Jobs
    • Cookie Policy
    • Privacy Notice
    • Website Terms & Conditions
  • Contact Us
SecureTeam
SecureTeam use cookies on this website to ensure that we give you the best experience possible. If you continue to use our site we will assume that you are happy with cookies being used.OkRead more