english

Singapore urges ‘vigilance’ over critical software bug

Singapore’s Cyber Security Agency (CSA) has raised the country’s alertness level on the Log4j software flaw, joining a growing list of governments and industry experts to sound the alarm over the critical vulnerability.

The CSA said on Friday that it had held two emergency meetings over the past week with government agencies in charge of the country’s 11 critical information infrastructure (CII) sectors, including telecommunications, transport, banking, and finance.

In a Facebook post, Minister for Communications and Information Josephine Teo said both the CSA and the Government Technology Agency were patching official systems “thoroughly,” but warned CII firms to “stay vigilant” as the flaw’s “ease of attack” makes it “too attractive for bad actors.”

Read more

FILE PHOTO. ©Panorama Images via Global Look Press
Software fix for ‘worst vulnerability in decade’ contains exploits

Noting that the “situation is evolving rapidly,” the CSA said it had detected “ongoing attempts by threat actors” to “scan and attack vulnerable systems.” The agency added that it had not received reports of breaches relating to the bug, which stems from the Apache Software Foundation’s widely-used open-source Java logging utility, Log4j.

Described by the security company Tenable as the “single biggest, most critical vulnerability of the last decade,” the flaw allows hackers to easily overpower systems running the tool and mount ransomware attacks by stealing, deleting, and locking data. Some estimates have pegged the number of attacks that have exploited the bug over the past week at more than 1.2 million.

Several US government officials and agencies have issued warnings about the bug’s seriousness. Homeland Security Secretary Alejandro Mayorkas reportedly told the German Marshall Fund of the US on Thursday that the problem was “uppermost in our action plans.”

The challenge it presents is its prevalence, because they attacked a software that is omnipresent, and then there’s a vulnerability that has been exposed and others can jump in in the exploitation of that vulnerability and really multiply the harm.

Meanwhile, a senior Biden administration official revealed that a number of federal government systems have been affected by the flaw. Speaking to Bloomberg Television on Thursday, Deputy National Security Advisor for Cyber and Emerging Technology Anne Neuberger said she expects the number of systems affected by the vulnerability “to grow.” The US Patent and Trademark Office was thought to be among those affected.

source: RT




Împotriva articolelor redacției noastre, persoanele nemulțumite pot formula Contestație în termen de 10 zile de la publicarea articolului, la judecătoria Orășenească nr. 1 München Bayern Deutschland, in conformitate cu Legea federală Germană. Considerăm că nu se pot formula acțiuni la instanțele din România deoarece nici o persoană care activează în trustul nostru nu poate fi extrasă de sub jurisdicția federală germană. Considerăm că redacția noastră nu răspunde în fața autorităților din România ci doar celor federale sau civile germane. deoarece legea română nu are efecte de extraneitate asupra redacției chiar dacă subiectul știrilor face obiectul unor evenimente sau persoane din România și sunt scrise în limba română. Limba română nu este izvor de extraneitate a legii.

(Visited 11 times, 1 visits today)
Avatar
Marius Leontiuc
absolvent WEB DESIGN Academia Britanică de Comunicare Iasi - absolvent COMUNICARE IN AFACERI Academia Britanica de Afaceri si Comunicare -absolvent JURNALISM EDITORIAL - London School University - 2019 inscris la echivalare diploma la Universitatea Politehnica Timisoara - absolvent studii de Drept Universitatea Europeană Drăgan, cursuri in Drept la Universitatea de Vest Timisoara, absolvent studii de proiectare, pastor coordonator in Biserica Protestanta Evanghelica, Android Developer pe Google Play și plugin developer la Oxwall, creator de teme Wordpress și Oxwall, operator Wordpress, Drupal, Oxwall, Osclass, Moodle, tehnologii HTML și PHP
http://www.leontiucmarius.wordpress.com/cv

Lasă un răspuns

Adresa ta de email nu va fi publicată. Câmpurile obligatorii sunt marcate cu *