TWiC #3 – 6/18/23 – 7/1/23

Two Weeks in Cybersecurity (TWiC) #3

June 18 – July 1, 2023

Recent News

  • Apple released security updates to address vulnerabilities in multiple products. New and old version are receiving updates. CISA encourages users and administrators to review the advisories and apply the necessary updates. The products receiving updates are: watchOS 8.8.1, macOS Big Sur 11.7.8, macOS Monterey 12.6.7, iOS 15.7.7 and iPadOS 15.7.7, watchOS 9.5.2, macOS Ventura 13.4.1, iOS 16.5.1 and iPadOS 16.5.1.
  • A critical security flaw was found in “Abandoned Cart Lite for WooCommerce” WordPress plugin that is installed on more than 30,000 websites. The vulnerability lets an attacker access user accounts with abandoned carts. WordPress is estimated to run 43% of websites, making it frequently targeted. Companies running WordPress are strongly encouraged to always keep the software up to date.
Continue reading “TWiC #3 – 6/18/23 – 7/1/23”

NIST 800-171 Revision 2, Part 3 of 6

NIST 800-171 Rev. 2, Part 3/6 Cyber Defense Coach Audiobooks

Audiobook of the NIST 800-171 Revision 2 publication.

NIST 800-171 Revision 2 Part 2 of 6

NIST 800-171 Rev. 2, Part 2/6 Cyber Defense Coach Audiobooks

Audiobook of the NIST 800-171 Revision 2 publication.

TWiC #2 – 6/4/23 – 6/17/23

Two Weeks in Cybersecurity (TWiC) #2

June 4 – June 17, 2023

Recent News

  • Mozilla has released security updates to address vulnerabilities for Firefox and Firefox ESR. An attacker could exploit these vulnerabilities to take control of an affected system. Firefox, Chrome, and Edge updates require users to close and restart the programs in order to automatically install. It is a step that usually delays update installations by weeks because closing all your tabs is the most feared computer action, second only to rebooting.  
Continue reading “TWiC #2 – 6/4/23 – 6/17/23”

NIST 800-171 Revision 2, Part 1 of 6

NIST 800-171 Rev. 2, Part 1/6 Cyber Defense Coach Audiobooks

Audiobook of the NIST 800-171 Revision 2 publication.

TWiC #1 – 5/21/23 – 6/3/23

Two Weeks in Cybersecurity (TWiC) #1

May 21 – June 3, 2023

Welcome to the first issue of Two Weeks in Cybersecurity. This infrequent message will hit your inbox once a fortnight sharing news you should use. Not intended to be a throwaway, we only plan to share information that ought to get action. Expect to read about recent security updates that need to be applied, cybersecurity compromises that might affect you, and knowledge bombs to steadily grow your own cybersecurity vocabulary and competency. Every two weeks, you will learn a little more about how to make yourself a harder target.

Continue reading “TWiC #1 – 5/21/23 – 6/3/23”

Cybersecurity Resources for Small Business

As cybersecurity attacks are now a recurring theme in the news, resources to educate businesses are popping up all over the web. To help you and your business navigate the soup of Top 10 tips, I have curated a small list of websites for you.

Continue reading “Cybersecurity Resources for Small Business”

Cyber Basics: Start Here

Cyber Defense Coach is a place where tech nerds send their family members and colleagues for kind and respectful information about computer security. The material here is written with my father in mind. He owns a small business in California. You should expect jargon-free talk, easy to understand explanations, simple instructions, and nothing expected in return. That’s right, this is a service, not a business.

Continue reading “Cyber Basics: Start Here”

How to get rid of your tablets and computers

You don’t just want to throw away your old phones, tablets, and computers. There is also a better way to get rid of old hard drives, thumb drives, and CDs. Motherboard wrote a nice article about securely disposing of media and electronics so that you inadvertently don’t share too much.

https://motherboard.vice.com/en_us/article/bjex48/how-to-securely-get-rid-of-your-devices