Apple Device Enrollment Program vulnerabilities explored. [Research Saturday]
CyberWire Daily22 Joulu 2018

Apple Device Enrollment Program vulnerabilities explored. [Research Saturday]

Researchers at Duo Security have been looking into Apple's Device Enrollment Program (DEM) and have discovered vulnerabilities that could expose users of the service to potential issues from social engineering and rogue devices. James Barclay is Senior R&D Engineer at Duo Security, and he joins us to share what they've found. The original research can be found here: https://duo.com/blog/weak-apple-dep-authentication-leaves-enterprises-vulnerable-to-social-engineering-attacks-and-rogue-devices

Tämä jakso on lisätty Podme-palveluun avoimen RSS-syötteen kautta eikä se ole Podmen omaa tuotantoa. Siksi jakso saattaa sisältää mainontaa.

Jaksot(3727)

Frontier models and the future of cyber defense. [Special Edition]

Frontier models and the future of cyber defense. [Special Edition]

In this special edition from Black Hat, Dave Bittner sits down with ⁠Clint Gibler⁠, Cyber Lead at ⁠OpenAI⁠, and ⁠Robby Winchester⁠, Chief Global Professional Services Officer at ⁠SpecterOps⁠, to explo...

16 Elo 28min

AI, misinformation, and the future of cybersecurity. [T-Minus: Space-Cyber Briefing]

AI, misinformation, and the future of cybersecurity. [T-Minus: Space-Cyber Briefing]

As AI products proliferate, they continue to introduce new concerns, which have subtly eroded trust in imagery and content created by space-based infrastructure. In this week's episode, host Maria Va...

16 Elo 21min

The botnet that scouts before it strikes. [Research Saturday]

The botnet that scouts before it strikes. [Research Saturday]

Today we are joined by Ian Goldin, Senior Lead Information Security Engineer, and Mike Horka, Principal Information Security Engineer, from Lumen's Black Lotus Labs, discussing their research entitled...

15 Elo 27min

Apple has a message for you.

Apple has a message for you.

Apple sends out threat notifications to users targeted by spyware. Trivy, not LiteLLM, was the original source of the 2,500-organization supply chain attack. French tax authority confirms data breach....

14 Elo 22min

Please hack responsibly.

Please hack responsibly.

President Trump deputizes private-sector companies to target cybercriminals. The LiteLLM supply-chain attack exposed credentials belonging to thousands of organizations. Data-theft campaign targets mi...

13 Elo 24min

A flurry of fixes.

A flurry of fixes.

We got your Patch Tuesday notes. Attackers target Microsoft SharePoint vulnerability following PoC release. Cyberattack on CEVA Logistics causes ongoing supply chain disruptions. Wesco confirms data b...

12 Elo 26min

A private route to public risk.

A private route to public risk.

Poland’s CERT describes winter cyberattack against heat-and-power plant. Russian military hackers target Ukrainian IT workers in fake recruitment scheme. Chinese IP connections spark security review i...

11 Elo 20min

Now with extra vulnerabilities.

Now with extra vulnerabilities.

Researchers find that only a quarter of AI-generated patches are fully successful. Ransomware attacks exploit critical N-able flaw. Atlassian fixes critical flaw in Rovo AI. LexisNexis disables some s...

10 Elo 27min

Suosittua kategoriassa Politiikka ja uutiset

uutiscast
aikalisa
politiikan-puskaradio
ootsa-kuullut-tasta-2
rss-ootsa-kuullut-tasta
otetaan-yhdet
rss-vaalirankkurit-podcast
rss-podme-livebox
rss-seksicast
tervo-halme
rikosmyytit
aihe
rss-raha-talous-ja-politiikka
the-ulkopolitist
rss-bimbolia
rss-vain-talouselamaa
rss-merja-mahkan-rahat
rss-kaikki-uusiksi
rss-50100-podcast
et-sa-noin-voi-sanoo-esittaa