PLAY PODCASTS
Network Security News Summary for Thursday September 28th, 2023

Network Security News Summary for Thursday September 28th, 2023

SANS Internet Storm Center's Daily Network Security News Podcast · Johannes B. Ullrich

September 28, 20236m 57s

Audio is streamed directly from the publisher (traffic.libsyn.com) as published in their RSS feed. Play Podcasts does not host this file. Rights-holders can request removal through the copyright & takedown page.

Show Notes

GPU Sidechannels; Compromised Routers; More libwebp Confusion; Fake Dependabot GPU Sidechannel Attack https://www.hertzbleed.com/gpu.zip/GPU-zip.pdf Router Firmware Compromised for Persistent Access https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-csa-cyber-report-sept-2023 https://www.cisa.gov/news-events/cybersecurity-advisories/aa23-270a More libwebp vulnerability confusion https://www.cve.org/CVERecord?id=CVE-2023-5129 https://arstechnica.com/security/2023/09/google-quietly-corrects-previously-submitted-disclosure-for-critical-webp-0-day/ Fake Dependabot Commits https://checkmarx.com/blog/surprise-when-dependabot-contributes-malicious-code/ keywords: dependabot; libwebp; router; persistent; backdoor; sidechannel; GPU