article thumbnail

Episode 233: Unpacking Log4Shell’s Un-coordinated Disclosure Chaos

The Security Ledger

In this episode of the podcast (#233) Mark Stanislav, a Vice President at the firm Gemini, joins Paul to talk about what went wrong with disclosure of Log4Shell, the critical, remote code execution flaw in the Log4j open source library. Read the whole entry. » » Click the icon below to listen. Log4j Disclosure Chaos.

article thumbnail

The Week in Cyber Security and Data Privacy: 15 – 21 April 2024

IT Governance

Significant changes have been made to sections covering remote access, privileged operations, user access levels and the use of multifactor authentication. NCSC CAF (Cyber Assessment Framework) 3.2 published The National Cyber Security Centre has published version 3.2 of its Cyber Assessment Framework.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

The Hacker Mind Podcast: The Right To Repair

ForAllSecure

Every three years the US Library of Congress is tasked with reviewing section 1201 of the DMCA. In April of 2021, the Library of Congress will again review new exemption requests. And if you didn't put on the, you know, manufacturer approved tire. It would say, Oh, I'm sorry I don't recognize that tire, you know I can't drive.

article thumbnail

The Hacker Mind Podcast: The Right To Repair

ForAllSecure

Every three years the US Library of Congress is tasked with reviewing section 1201 of the DMCA. In April of 2021, the Library of Congress will again review new exemption requests. And if you didn't put on the, you know, manufacturer approved tire. It would say, Oh, I'm sorry I don't recognize that tire, you know I can't drive.