After years of complaints from YouTubers, Google has pinpointed the root cause of a series of account hijackings: software sponsorship deals that delivered malware.
[âŚ]
I really hate this trouser leg of time we find ourselves inâŚ
Well, this sucks.
Paying attention to your email attachments is still sound advice though, donât open anything youâre not expecting or donât know. Keeping your eyes open for those filename extensions as well.
Utility biz Delta-Montrose Electric Association loses billing capability and two decades of records after cyber attack
A US utility company based in Colorado was hit by a ransomware attack in November that wiped out two decadesâ worth of records and knocked out billing systems that wonât be restored until next week at the earliest.
The attack was detailed by the Delta-Montrose Electric Association (DMEA) in a post on its website explaining that current customers wonât be penalised for being unable to pay their bills because of the incident.
[âŚ]
Does this effect here?
ETA
I knew Little My would bite me in the arse!
:
It looks like Gravatar accidentally allows usersâ data to be accessed using a sequential index number, instead accessing it only as part of a site that youâre already using. The main danger here, from what I can see, is the ability of the attacker to assemble a big index of users.
An âunintended interactionâ between the app and Android prevented emergency calls from being placed properly. ⌠Google also warns users running Teams on any Android 10+ device to make sure theyâre signed into an account. If you arenât signed in, uninstall and reinstall the app to prevent your 911 calls from being blocked.
On Thursday, researchers noticed that a popular Java logging library (log4j) had a bug that allows for Remote Code Execution or RCE, hacker lingo for one of the most dangerous types of vulnerabilities, one that essentially allows hackers to take control of the target. GitHub labeled the vulnerability as âcritical severity,â and many researchers, as well as the Director of Cybersecurity at the NSA, are sounding the alarm.
Begun, the patch wars have.
Apache can be affected, but I donât think that Iâm using anything that should touch Java and this library. Still, might as well do an update. (Still on Buster because the Bullseye upgrade is a kind of a mess.)
The Quebec government got on it quickly.
Relevant: