VMware Has a Severe Vulnerability, Microsoft Open Sources Their Malicious Code Hunter, and Yet Another Reason To Leave LastPass! All that coming up now on ThreatWire.
 #threatwire #hak5

Links:
Weekly security and privacy news, brought to you by Shannon Morse. ThreatWire is a weekly news journalism show covering security and privacy topics for network admins and users.

Watch this on youtube: https://youtu.be/qvZX5AuBxxo 

Shop ThreatWire Merch Directly! - https://snubsie.com/shop

Shop ThreatWire Merch on Teespring! - https://teespring.com/stores/morsecode 

Support ThreatWire!  https://www.patreon.com/threatwire 

Links:
0:00 Welcome!

https://threatpost.com/vmware-patches-critical-rce-flaw-in-vcenter-server/164240/
https://www.vmware.com/security/advisories/VMSA-2021-0002.html
http://noahblog.360.cn/vcenter-6-5-7-0-rce-lou-dong-fen-xi/
https://github.com/QmF0c3UK/CVE-2021-21972-vCenter-6.5-7.0-RCE-POC
https://www.zdnet.com/article/more-than-6700-vmware-servers-exposed-online-and-vulnerable-to-major-new-bug/
https://arstechnica.com/information-technology/2021/02/armed-with-exploits-hackers-on-the-prowl-for-a-critical-vmware-vulnerability/
https://swarm.ptsecurity.com/unauth-rce-vmware/

https://www.cyberscoop.com/solarwinds-fireeye-microsoft-crowdstrike-senate-ssci/
https://www.washingtonpost.com/national-security/biden-russia-sanctions-solarwinds-hacks/2021/02/23/b77039d6-71fa-11eb-85fa-e0ccb3660358_story.html
https://www.cyberscoop.com/solarwinds-sudhakar-ramakrishna-ceo-hack/
https://www.bleepingcomputer.com/news/security/nasa-and-the-faa-were-also-breached-by-the-solarwinds-hackers/
https://www.bleepingcomputer.com/news/microsoft/microsoft-solarwinds-hackers-downloaded-some-azure-exchange-source-code/
https://www.microsoft.com/security/blog/2021/02/25/microsoft-open-sources-codeql-queries-used-to-hunt-for-solorigate-activity/
https://www.cyberscoop.com/microsoft-solarwinds-breach-compromise-open-source-codeql/
https://www.bleepingcomputer.com/news/security/microsoft-shares-codeql-queries-to-scan-code-for-solarwinds-like-implants/

https://www.kuketz-blog.de/lastpass-android-drittanbieter-ueberwachen-jeden-schritt/
https://reports.exodus-privacy.eu.org/en/reports/165465/
https://www.theverge.com/2021/2/26/22302709/lastpass-android-app-trackers-security-research-privacy
https://www.theregister.com/2021/02/25/lastpass_android_trackers_found/
https://www.theregister.com/2021/02/16/lastpass_pricing_changes/ 


Photo credit:
https://blog.lastpass.com/wp-content/uploads/sites/20/2020/04/android-blog-tips-2.png 

 

-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆
Our Site → https://www.hak5.org
Shop →  http://hakshop.myshopify.com/
Subscribe → https://www.youtube.com/user/Hak5Darren?sub_confirmation=1
Support → https://www.patreon.com/threatwire
Contact Us → http://www.twitter.com/hak5
Threat Wire RSS → https://shannonmorse.podbean.com/feed/
Threat Wire iTunes → https://itunes.apple.com/us/podcast/threat-wire/id1197048999

Host: Shannon Morse → https://www.twitter.com/snubs
Host: Darren Kitchen → https://www.twitter.com/hak5darren
Host: Mubix → http://www.twitter.com/mubix
-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆

Twitter Mentions