Episode 315 - Zillow, Lyft, and Slack are being targeted by a ‘Dependency Confusion’ Vulnerability

Published: March 3, 2021, 12:30 p.m.

Good Morning and Welcome to the ProactiveIT Cyber Security Daily number 315.  It is Wednesday March 3rd 2021.  I am your host Scott Gombar and Amazon, Zillow, Lyft, and Slack are being targeted by a ‘Dependency Confusion’ Vulnerability Microsoft Releases Out-of-Band Security Updates for Exchange Server Compromised Website Images Camouflage ObliqueRAT Malware Google fixes second actively exploited Chrome zero-day bug this year Payroll giant PrismHR outage likely caused by ransomware attack Malaysia Airlines discloses a nine-year-long data breach SolarWinds reports $3.5 million in expenses from supply-chain attack Microsoft announces Windows Server 2022 with new security features Malicious NPM packages target Amazon, Slack with new dependency attacks Roundup of Recent Healthcare Phishing and Malware Incidents