Ouvir "Cyber Morning Call - #71 - 06/05/2022"
Sinopse do Episódio
[Referências do Episódio]
- Apple, Google e Microsoft adotarão mesmo padrão logins sem senha - https://fidoalliance.org/apple-google-and-microsoft-commit-to-expanded-support-for-fido-standard-to-accelerate-availability-of-passwordless-sign-ins/
- CVE-2022-26522 e CVE-2022-26523 no Avast e AVG - https://www.sentinelone.com/labs/vulnerabilities-in-avast-and-avg-put-millions-at-risk/
- NetDooka Framework - https://www.trendmicro.com/en_us/research/22/e/netdooka-framework-distributed-via-privateloader-ppi.html
- Nota da Heroku sobre o incidente - https://status.heroku.com/incidents/2413
- Novo padrão do NIST sobre supply chain - https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-161r1.pdf
- Material da ENISA sobre supply chain - https://www.enisa.europa.eu/news/enisa-news/understanding-the-increase-in-supply-chain-security-attacks
[Ficha técnica]
Roteiro e apresentação: Carlos Cabral
Edição de áudio: Paulo Arruzzo
Narração de encerramento: Bianca Garcia
Projeto gráfico: Julian Prieto
- Apple, Google e Microsoft adotarão mesmo padrão logins sem senha - https://fidoalliance.org/apple-google-and-microsoft-commit-to-expanded-support-for-fido-standard-to-accelerate-availability-of-passwordless-sign-ins/
- CVE-2022-26522 e CVE-2022-26523 no Avast e AVG - https://www.sentinelone.com/labs/vulnerabilities-in-avast-and-avg-put-millions-at-risk/
- NetDooka Framework - https://www.trendmicro.com/en_us/research/22/e/netdooka-framework-distributed-via-privateloader-ppi.html
- Nota da Heroku sobre o incidente - https://status.heroku.com/incidents/2413
- Novo padrão do NIST sobre supply chain - https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-161r1.pdf
- Material da ENISA sobre supply chain - https://www.enisa.europa.eu/news/enisa-news/understanding-the-increase-in-supply-chain-security-attacks
[Ficha técnica]
Roteiro e apresentação: Carlos Cabral
Edição de áudio: Paulo Arruzzo
Narração de encerramento: Bianca Garcia
Projeto gráfico: Julian Prieto
ZARZA We are Zarza, the prestigious firm behind major projects in information technology.