Lots happening in the infosec world this week (and its not even friday yet!) in case you missed it..
Microsoft have started the new 'Zero Day Quest' bug bounty program, details can be found here:
The ACSC/ASD have released their Annual Cyber Threat Report which is an interesting read:
Lots of vulnerabilities in network devices at the moment. Fortinet have just released patches to address the 2 CVE's being actively exploited in the wild, more info can be found here:
Palo Alto have released guidance for the super critical 'hack-my-firewall' authentication bypass zero day that is being actively exploited in the wild, this one should be addressed asap folks! As a basic and best practice remediation, none of your palo alto web interfaces should be exposed to the internet. More details can be found here:
Apple have also released their fixes to patch the latest zero-day being exploited in the wild:
Lastly, Wired have an interesting post about national security risks stemming from companies legally collecting digital advertising data:
Comments