Microsoft – Office 365 Government Secret edition
A high security version of O/365 is being offered to USA GOVT areas to better safeguard security & privacy concerns. It is designed to meet IL6 standards & is built…
Privacy – new EU and USA framework in progress MAR-2022
A new “Trans-Atlantic Data Privacy Framework” between EU & USA is being designed to improve upon earlier standards. Some of the past standards were beneficial, but they did not hold…
Metaverse – Security critical for new virtual reality environment
The new “Metaverse” is a new virtual reality environment where real people take on avatars & they can even make e-commerce purchases there (e.g., even buying virtual property, virtual services,…
Senate HSGA Committee Amends and Approves 2 Cybersecurity Bills
Yesterday, the Senate Homeland Security and Governmental Affairs Committee held a business meeting looking at eight nominations, eleven postal naming bills, and eleven other bills. Two of those ‘other bills’…
Review – 7 Advisories and 2 Updates Published – 3-31-22
Today, CISA’s NCCIC-ICS published seven control system security advisories for products from Rockwell Automation (2), General Electric Renewables, Mitsubishi Electric, Fuji Electric, Hitachi Energy, and Schneider Electric. They also updated…
Review – HR 7174 Introduced – NCFI Reauthorization
Earlier this month, Rep Slotkin (D,MI) introduced HR 7174, the National Computer Forensics Institute Reauthorization Act of 2022. The bill would reauthorize the Secret Service’s NCFI through 2032 and expand…
Bills Introduced – 3-30-22
Yesterday, with both the House and Senate in session, there were 52 bills introduced. One of those bills will receive additional attention in this blog: HR 7302 To impose sanctions…
Nugget post: WKHTMLTOPDF not loading JavaScript
WKHTMLTOPDF is an extremely popular tool to convert existing html pages (or strings) to a PDF. This comes in handy for CyberSift’s Tutela product, where we are required to generate…
WAF mitigations for Spring4Shell
A set of high profile vulnerabilities have been identified affecting the popular Java Spring Framework and related software components – generally being referred to as Spring4Shell. Four CVEs have been…
Future-proofing SaltStack
At Cloudflare, we are preparing the Internet and our infrastructure for the arrival of quantum computers. A sufficiently large and stable quantum computer will easily break commonly deployed cryptography such…