Threat Landscape Briefing – December 2024
In this month’s briefing we explore:
- Unpatched Mazda Connect Bugs Let Hackers Install Persistent Malware (00:54)
- Recent findings from Trend Micro's Zero Day Initiative (ZDI) have highlighted significant security vulnerabilities within the Mazda Connect infotainment systems.
- Five Eyes Issues Warning on Zero-Days (03:48)
- The Five Eyes intelligence network published their annual list of the most frequently exploited CVEs, noting for the first time the majority of vulnerabilities were zero-days.
- Learn more about how to Implement Risk-Based Vulnerability Management.
- Threat Actors Target Windows Users Through Evasive ZIP Techniques (06:40)
- Threat actors have been targeting Windows users through a ZIP concatenation technique that evades detection.
- See how we can help your organization Build Resilience Against Ransomware Attacks.
- Voice-Enabled AI Agents Used to Perform Common Scams (09:00)
- Researchers have shown that OpenAI’s real-time voice API for ChatGPT 4.0, an advanced chatbot, can be abused to carry out various attacks.
- Learn how Info-Tech can help you Develop and Implement a Security Incident Management Program.
If you have a question or would like to receive these monthly briefings via email, submit a request here.