USPS Exposes 60 Million; Amazon Ignores Infosec Incident Questions - ThreatWire

Published: Nov. 27, 2018, 4 p.m.

Amazon quietly discloses a security incident, USPS finally fixes a vulnerability they knew about a year ago, and rowhammer is back with a vengeance ! All that coming up now on ThreatWire. #threatwire #hak5

-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆Our Site → https://www.hak5.orgShop → https://www.hakshop.comSubscribe → https://www.youtube.com/user/Hak5Darren?sub_confirmation=1Support → https://www.patreon.com/threatwireContact Us → http://www.twitter.com/hak5Threat Wire RSS → https://shannonmorse.podbean.com/feed/Threat Wire iTunes → https://itunes.apple.com/us/podcast/threat-wire/id1197048999

Host: Shannon Morse → https://www.twitter.com/snubsHost: Darren Kitchen → https://www.twitter.com/hak5darrenHost: Mubix → http://www.twitter.com/mubix-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆

Links:Amazonhttps://www.cyberscoop.com/amazon-keeps-tight-lipped-pre-black-friday-security-incident/https://www.zdnet.com/article/amazon-leaks-users-email-addresses-due-to-technical-error/https://arstechnica.com/information-technology/2018/11/amazon-customers-names-and-email-addresses-disclosed-by-website-error/https://betanews.com/2018/11/21/amazon-discloses-names-and-addreses/

USPShttps://www.zdnet.com/article/usps-finally-fixes-website-flaw-that-exposed-60-million-users-data/https://krebsonsecurity.com/2018/11/usps-site-exposed-data-on-60-million-users/https://www.cnet.com/news/usps-reportedly-fixes-website-bug-that-exposed-data-of-60m-users/https://thehackernews.com/2018/11/usps-data-breach.htmlhttps://www.uspsoig.gov/sites/default/files/document-library-files/2018/IT-AR-19-001.pdf

Rowhammerhttps://www.zdnet.com/article/rowhammer-attacks-can-now-bypass-ecc-memory-protections/https://arstechnica.com/information-technology/2018/11/potentially-disastrous-rowhammer-bitflips-can-bypass-ecc-protections/https://www.wired.com/story/rowhammer-ecc-memory-data-hack/ https://www.vusec.net/projects/eccploit/

Photo credit:https://upload.wikimedia.org/wikipedia/commons/0/02/USPS-Mail-Truck.jpg