Citrix Patches Major Vulnerability; Windows Patches NSA Reported Bug - ThreatWire

Published: Jan. 21, 2020, 9 p.m.

A critical flaw in Citrix is finally patched, the NSA reports a major windows bug, and half a million usernames and passwords were leaked! All that coming up now on ThreatWire. #threatwire #hak5

I'm Moving!! https://twitter.com/Snubs/status/1218286909966909445

Support me on alternative platforms! https://snubsie.com/support

Shop ThreatWire Merch! - https://snubsie.com/shop

https://www.youtube.com/shannonmorse -- subscribe to my new channel!

ThreatWire is only possible because of our Patreon patrons! https://www.patreon.com/threatwire

Links:Citrix:https://www.cyberscoop.com/citrix-adc-vulnerability-positive-technologies/https://support.citrix.com/article/CTX267027https://www.cyberscoop.com/citrix-vulnerability-patch-exploit/https://thehackernews.com/2020/01/citrix-adc-gateway-exploit.htmlhttps://github.com/trustedsec/cve-2019-19781https://github.com/projectzeroindia/CVE-2019-19781https://arstechnica.com/information-technology/2020/01/unpatched-citrix-vulnerability-now-exploited-patch-weeks-away/https://www.us-cert.gov/ncas/current-activity/2020/01/13/cisa-releases-test-citrix-adc-and-gateway-vulnerabilityhttps://www.zdnet.com/article/a-hacker-is-patching-citrix-servers-to-maintain-exclusive-access/https://www.fireeye.com/blog/threat-research/2020/01/vigilante-deploying-mitigation-for-citrix-netscaler-vulnerability-while-maintaining-backdoor.htmlhttps://support.citrix.com/article/CTX267027

NSA Windows:https://media.defense.gov/2020/Jan/14/2002234275/-1/-1/0/CSA-WINDOWS-10-CRYPT-LIB-20190114.PDFhttps://thehackernews.com/2020/01/warning-quickly-patch-new-critical.htmlhttps://www.cnet.com/news/major-windows-10-security-flaw-reported-nsa-same-day-windows-7-support-ended/https://www.cyberscoop.com/windows-10-vulnerability-nsa-public-disclosure/https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0601https://arstechnica.com/information-technology/2020/01/researcher-develops-working-exploit-for-critical-windows-10-vulnerability/https://github.com/ollypwn/cve-2020-0601https://threatpost.com/poc-exploits-published-for-microsoft-crypto-bug/151931/https://threatpost.com/microsoft-patches-crypto-bug/151842/

Via EmeryLeePW Leak:https://www.zdnet.com/article/hacker-leaks-passwords-for-more-than-500000-servers-routers-and-iot-devices/

 

Photo credit:https://live.staticflickr.com/3894/15207079997_ce6972329a_b.jpg

-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆Our Site → https://www.hak5.orgShop → https://www.hakshop.comSubscribe → https://www.youtube.com/user/Hak5Darren?sub_confirmation=1Support → https://www.patreon.com/threatwireContact Us → http://www.twitter.com/hak5Threat Wire RSS → https://shannonmorse.podbean.com/feed/Threat Wire iTunes → https://itunes.apple.com/us/podcast/threat-wire/id1197048999

Host: Shannon Morse → https://www.twitter.com/snubsHost: Darren Kitchen → https://www.twitter.com/hak5darrenHost: Mubix → http://www.twitter.com/mubix-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆