The Coalition to Reduce Cyber Risk (CR2) announced this week that it has been joined by 37 organizations across eight countries in signing a pledge to improve cyber resilience and combat threats such as ransomware.
Vulnerabilities in HID Mercury Access Controllers Allow Hackers to Unlock Doors
Access control products using HID Mercury controllers are affected by critical vulnerabilities that can be exploited by hackers to remotely unlock doors.
Chinese Cyberspy Group ‘Aoqin Dragon’ Targeting Southeast Asia, Australia Since 2013
SentinelOne security researchers have analyzed the operations of a Chinese cyberespionage group that has been actively targeting education, government, and telecommunication organizations in Australia and Southeast Asia since at least 2013.
Chrome 102 Update Patches High-Severity Vulnerabilities
Google this week announced the release of a Chrome browser update that resolves seven vulnerabilities, including four issues reported by external researchers.
InfiRay Thermal Camera Flaws Can Allow Hackers to Tamper With Industrial Processes
InfiRay thermal cameras are affected by vulnerabilities that could allow malicious hackers to tamper with industrial processes, including to disrupt production or to make modifications that result in lower quality products.
Highly-Evasive Linux Malware ‘Symbiote’ Infects All Running Processes
Security researchers with BlackBerry and Intezer have shared details on a new Linux malware that “parasitically” infects all running processes on a target machine.
‘Follina’ Vulnerability Exploited to Deliver Qbot, AsyncRAT, Other Malware
Several malware families are being delivered using the recently disclosed Windows vulnerability identified as Follina and CVE-2022-30190, which remains without an official patch.
US Details Chinese Attacks Against Telecoms Providers
Several US government agencies have issued a joint cybersecurity advisory to provide information on the techniques and tactics that China-linked threat actors have been using to compromise telecom companies and network services providers.
RSA Conference 2022 – Announcements Summary (Day 3)

Hundreds of companies are showcasing their products and services this week at the 2022 edition of the RSA Conference in San Francisco.
Threat Actors Start Exploiting Meeting Owl Pro Vulnerability Days After Disclosure
Threat actors have already started exploiting a severe vulnerability that Owl Labs addressed in its video conferencing devices earlier this week.












