A Spotlight on Security | Oct. 27, 2023

A Spotlight on Security | Oct. 27, 2023

Hi there. Welcome to “A Spotlight on Security” issue no. 37. Today we've got you covered with the 2nd security patch for an iPhone vulnerability, immediate cyber attack consequences for ambulances and patients in New York city, as well as the attack surface of the world's most famous lab and its security measures.


Urgent iPhone patch: When the exploiter rings twice

Issue may have been actively exploited against versions of iOS released before iOS 15.7. Image: Apple

According to The Register , researcher colleagues at Kaspersky have disvovered the new old iPhone vulnerability exploited by TriangleDB spyware and reported it first. Using it enables executing arbitrary code with kernel privileges. The patch is 苹果 's second attempt to fix the problem. Learn more here.


Ministry open to discussion around economic NIS2 aspects

Raising cybersecurity across the board to the level envisioned by European governments is a marathon, not a sprint, that’s for sure. Nevertheless, many organizations are already seeing hurdles at the starting line, namely specialists, budget, and legal certainty.

Despite progress in terms of NIS2 transition into national laws, what applies to whom and by when remain big questions in economies across Europe, especially for private companies. This is one of the reasons why the German Federal Ministry of the Interior and Home Affairs presented a discussion paper that met with positive response. Learn more here (text in German language, DeepL may help).


?? Stay ahead of the game, join our InfoSec Insider community ??

Sign up, and you'll get “Tresorit InfoSec Insider” conveniently delivered to your email inbox once a month, free of charge. It's got you covered with everything you love about “A Spotlight on Security,” plus exclusive CISO insights into the ever-changing regulatory landscape, state-of-the-art security tech, and InfoSec guidance. Sign up and join our growing InfoSec Insider community.


Attack on New York City hospitals puts patients at risk

A recent cyberattack on hospitals in the city of New York is alarming but went just fine – in terms of the avoidance of further physical damage at least. It caused hospitals to shut down their IT systems. As a result, ambulances and patients had to be moved elsewhere. Learn more here.


Securing one of the vastest attack surfaces in the world of physics

There is probably no laboratory in the world more famous than CERN in Geneva, Switzerland. And not many particle physics laboratories are likely to offer a larger surface for attack. CERN has just published its latest “Computer security: in numbers” report featuring tactics and measures for

  • 4000 switches,
  • 300 routers, and
  • 5000 wireless access points, among other things.

Learn more here.


?2023 Tresorit Events Outlook

?? “Compliance Without Compromise” webinar, Zoom, November 2, online

?? GDS Group, CIO Summit USA, December 5-7, online


About us

Tresorit?is a Swiss-Hungarian zero-knowledge encrypted cloud platform helping teams of all sizes collaborate the safe and easy way. It is designed to safeguard the digital valuables of organizations and individuals with highest classification.


Thanks for reading. See you again here at A Spotlight on Securitythe week after next.

要查看或添加评论,请登录

社区洞察

其他会员也浏览了