SB Blogwatch
Best of 2025: Huge Food Wholesaler Paralyzed by Hack — is it Scattered Spider Again?
Richi Jennings | | 0ktapus, amazon, attacks on online retailers, DragonForce, Muddled Libra, online retailers cyber threats, Ransomware, retail, Retail & Commerce, Retail & e-commerce, Retail and E-Commerce, Retail Cybersecurity, Retail Industry, SB Blogwatch, Scatter Swine, scattered spider, Starfraud, the Com, the Community, UNC3944, UNFI, United Natural Foods, Whole Foods
UNFInished business: We were warned this would happen. And now here we are ...
Security Boulevard
Best of 2025: NOT-So-Great Firewall: China Blocks the Web for 74 Min.
Richi Jennings | | censorship, china, Denial of Service, Denial of Service (DoS) attacks, denial of service attacks, denial of service vulnerability, Denial-of-Service (DoS), Government Censorship, Great Firewall of China, HTTPS, HTTPS connection, internet censorship, online censorship, Pakistan, Peoples Republic of China, port 443, SB Blogwatch, State Censorship, TCP, TCP/IP, The Great Firewall, Transmission Control Protocol (TCP) vulnerabilities
HTTPS connections on port 443 received forged replies. Chinese web users couldn’t access websites outside the People’s Republic yesterday. The outage lasted an hour and a quarter—with no explanation. Nobody’s sure whether it ...
Security Boulevard
Best of 2025: Oracle Hack: From ‘Deny-Deny-Deny’ to ‘Oops-Oops-Oops’
Richi Jennings | | CVE-2021-35587, Larry Ellison, OCI, Oracle, Oracle Access Manager, Oracle Classic, Oracle cloud, Oracle Cloud Classic, Oracle Cloud infrastructure, Oracle Fusion Cloud, rose87168, SB Blogwatch
Classic “wordplay:” Larry’s PR angels desperately dance on the head of a pin ...
Security Boulevard
Best of 2025: Ukraine Pwns Russian Drone Maker — Gaskar is ‘Paralyzed’
Richi Jennings | | Black Owl (BO Team), cyber attacks during ukraine war, cyber attacks russia, Drone, Drone Technology, drones, Gaskar Group, hacktivism ukraine cyber-attacks, military, Military Security, phishing campaigns in Russo-Ukrainian conflict, propaganda, Russia, Russia-Ukraine, russia-ukraine conflict, Russia's War on Ukraine, SB Blogwatch, UAV, UAVs, Ukraine, ukraine conflict, Ukraine Cyber War, Ukrainian Cyber Alliance (UAC)
Ukrainian Cyber Alliance and Black Owl team up to hack manufacturer of Russian military drones, sources say. Gaskar Group, Russian designer of drones plaguing Ukraine’s skies, is in utter disarray. Or, at least, ...
Security Boulevard
Elon Musk’s SpaceX ‘is Facilitating’ Scams via Starlink
Richi Jennings | | #CryptoScam, #InvestmentScam, #PigButchering, bank scam, bitcoin ATM scam, bitcoin scam, bitcoin transfer scams, Elon Musk, gift card, gift card fraud, Gift Card Gang, gift card scams, gift cards, GiftCardScams, Lauren Dreyer, myanmar, online romance scam, pig butchering, Pig Butchering Scams, romance, romance fraud, romance scam, romance scammers, romance scams, SB Blogwatch, Sen. Maggie Hassan, social media intelligence, SpaceX, Starlink
Low Earth Pork: Pig-butchering scammers in Myanmar lose use of 2,500 Starlink terminals ...
Security Boulevard
October Patch Tuesday Fails Hard — Windows Update Considered Harmful?
Richi Jennings | | CVE-2024-30098, DisableCapiOverrideForRSA, KB5066835, KB5070773, Microsoft patch tuesday, SB Blogwatch, Windows Update, Windows updates, WinRE
Satya fiddles while Redmond burns? Showstopper bugs with security certificates—plus failing USB keyboards and mice—cause QA questions ...
Security Boulevard
#Pixnapping: Android Timing Attack Sends Google Back to the Drawing Board
Richi Jennings | | android, Android 16, Android Application Hacking, Android attack, CVE-2025-48561, google, Pixnapping, Rowhammer, SB Blogwatch, Side-Channel, side-channel attack, side-channel attacks, software supply chain, software supply chain attack, software supply chain attacks
If at first you don’t succeed: Researchers discover a new way to steal secrets from Android apps ...
Security Boulevard
#RediShell: Redis/Valkey Get ‘Perfect 10’ Critical RCE Vuln
Richi Jennings | | CVE-2025-49844, CVSS10, Lua, open source, open source applications, open source code, open source components, Open-Source Databases, open-source-software, rce, RCE (Remote Code Execution), redis, Redis servers vulnerability, Redis vulnerabilities, RediShell, Remote Code Execution, Remote Code Execution (RCE), remote code execution attack, Remote Code Execution Exploit, remote code execution flaw, Remote Code Execution Vulnerabilities, remote code execution vulnerability, SB Blogwatch, Valkey
Redis hell: CVSS 10.0 vulnerability in ubiquitous cloud storage layer. PATCH NOW ...
Security Boulevard
Asahi Hack Update: Beer-Free Day #5 Dawns in Japanese Ransomware Crisis
Richi Jennings | | Asahi, Atsushi Katsuk, Beer, Data breach, Data leak, data leakage, Data Leaks, Japan, Ransomware, SB Blogwatch
金のうんこ! Breaking: Big beer brewer belatedly believes bitten by ransomware—and likely a data breach ...
Security Boulevard
‘Aggressive’ Akira Ransomware Blitz Clubs SonicWall 2FA to DEATH
Richi Jennings | | 2 factor, 2 factor auth, 2-factor authentication, 2fa, 2FA bypass, 2FA Flaws, 2FA/MFA, Akira, Akira ransomware, CVE-2024-40766, hacking two factor, MFA, MFA hacks, mfa login, Multi-Factor Authentication, Multi-Factor Authentication (MFA), Multifactor Authentication, multifactorauthentication, OTP, Ransomware, SB Blogwatch, SonicWall, SonicWall VPN, ssl vpn, two factor authentication, two-factor, two-factor athentication, two-factor-authentication.2fa
Strange factors: Yet another security problem plaguing SonicWall customers ...
Security Boulevard

