OSN MARCH 8, 2021

Title: Bazar Drops the Anchor Date Published: March 8, 2021 Bazar Drops the Anchor Excerpt: “In this case we started with a DocuSign themed Excel maldoc. The excel file failed to bring down the payload but to follow the infection chain we executed the follow on...

OSN MARCH 4, 2021

Title: DHS Orders Agencies to Urgently Patch or Disconnect Exchange Servers Date Published: March 4, 2021 https://www.bleepingcomputer.com/news/security/dhs-orders-agencies-to-urgently-patch-or-disconnect-exchange-servers/ Excerpt: “CISA “strongly”...

OSN MARCH 1, 2021

Title: NSA, Microsoft Promote a Zero Trust Approach to Cybersecurity Date Published: February 27, 2021 https://www.bleepingcomputer.com/news/security/nsa-microsoft-promote-a-zero-trust-approach-to-cybersecurity/ Excerpt: “Combining user and device data with...

OSN FEBRUARY 24, 2021

Title: Exploitation of Accellion File Transfer Appliance Date Published: February 24, 2021 https://us-cert.cisa.gov/ncas/alerts/aa21-055a Excerpt: “One of the exploited vulnerabilities (CVE-2021-27101) is an SQL injection vulnerability that allows an unauthenticated...

OSN FEBRUARY 19, 2021

Title: Microsoft Wraps Solarwinds Probe, Nudges Companies Toward Zero Trust Date Published: February 18, 2021 Microsoft wraps SolarWinds probe, nudges companies toward zero trust Excerpt: “The findings offer lessons for all companies on the benefits of the zero trust...