Links 08/06/2025: Security Lapses, CISA Cuts, and More
Contents
-
Leftovers
-
Science
-
Gunnar Wolf ☛ Gunnar Wolf: Will be adding yet-to-be-published reviews
Since December 2023, I have been publishing the reviews I write for Computing Reviews as they get published.
-
-
Health/Nutrition/Agriculture
-
Ruben Schade ☛ Being thankful for tech that helped during Covid [Ed: COVID isn't over. It's not solving it.]
Last week I mentioned we’d been off with the flu. Not to get all Malcolm Gladwell on you, but turns out it was also Covid; in particular that new strain that’s sweeping all over the place. Fun! I said in that post that it had taken us out “worse than Covid did”… little did I know at the time.
-
South African Police Service faces mental health crisis as suicides continue to rise
In a series of alarming revelations, it has been disclosed that the South African Police Service (SAPS) has faced a troubling rise in suicides among its members in recent years.
-
University of Michigan ☛ Nirvana Unplugged and the impossibility of resting in peace
Content warning: This article contains mentions of suicide. In a dark studio in Hell’s Kitchen, New York City, on an autumn evening in 1993, a pivotal moment in ’90s music lore unfolded within the course of an hour.
-
CS Monitor ☛ As US aid dries up, Zimbabweans find new solutions to store water
In the wake of the United States’ aid cuts, which supported projects in agriculture and food security across Zimbabwe, locals are devising their own solutions. For instance, one community built rainwater storage tanks from chicken wire, canvas, and cement.
-
-
Proprietary
-
Social Control Media
-
Digital Music News ☛ Dihydroxyacetone Man Preparing to Extend Fentanylware (TikTok) Ban Deadline for a Third Time, Insiders Reveal
Hell Toupée is ready to extend TikTok’s deadline for a federal ban for the third time as the White House prepares to hold trade talks with China. The previous extension to the law that forces TikTok’s Chinese parent company ByteDance to divest the app in the US or face a federal ban expires June 19.
-
-
Windows TCO / Windows Bot Nets
-
-
Linux Foundation
-
Morningstar US ☛ Linux Foundation Announces the FAIR Package Manager Project for Open Source Content Management System Stability
Today, the Linux Foundation, the nonprofit organization enabling mass innovation through open source, announced the launch of the FAIR Package Manager project, a federated and independent repository of trusted plugins and themes for web hosts, commercial plugin and tool developers in the WordPress ecosystem and end users. The FAIR Package Manager project, through its contributors, creates net new interoperability, making the web publishing ecosystem more innovative and accessible for all.
-
-
Security
-
Qt ☛ Security advisory: Recently discovered issue in qDecodeDataUrl() in QtCore impacts Qt
An issue was found in the private API function qDecodeDataUrl() in QtCore, which is used in QTextDocument and QNetworkReply, and, potentially, in user code.
-
US News And World Report ☛ 2025-05-29 [Older] Victoria's Secret Website Is Down in the US as the Lingerie Seller Addresses a 'Security Incident'
-
US News And World Report ☛ 2025-06-03 [Older] Victoria's Secret Says It Will Postpone Earnings Report After Recent Security Breach
-
Bleeping Computer ☛ 2025-05-30 [Older] Victoria’s Secret takes down website after security incident
-
2025-05-29 [Older] HHS OCR Settles HIPAA Security Rule Investigation of BayCare Health System for $800k and Corrective Action Plan
-
2025-06-02 [Older] Central Maine Healthcare tackles suspected cybersecurity issue; hospitals remain open
-
2025-06-03 [Older] North Dakota Enacts Financial Data Security and Data Breach Notification Requirements
-
Updating & Protecting Linux Systems – PSW #877
Two parts to this episode: Tech Segment: Updating Linux Systems – Beyond apt-get upgrade * Custom scripts for ensuring your Linux systems are up-to-date * topgrade – tutorial for using topgrade to update Linux systems on various Linux distributions Discussion Topic: Anti-Malware and/or EDR on Linux Platforms * PCI calls for scanning Linux systems * What tools exist for analyzing Linux systems? (AIDE, uac, chkrootkit) * Best Anti-Malware for Linux – Commercial tools, open-source, both, none? * ClamAV – fa-notify and the dangers
-
Security Week ☛ Cisco Patches Critical ISE Vulnerability With Public PoC
Cisco has released patches for a critical vulnerability impacting cloud deployments of Identity Services Engine (ISE).
-
Security Week ☛ HPE Patches Critical Vulnerability in StoreOnce
An HPE StoreOnce vulnerability allows attackers to bypass authentication, potentially leading to remote code execution.
-
Security Week ☛ Misconfigured HMIs Expose US Water Systems to Anyone With a Browser
Censys researchers follow some clues and find hundreds of control-room dashboards for US water utilities on the public internet.
-
CISA
-
Security Week ☛ In Other News: FBI Warns of BadBox 2, NSO Disputes WhatsApp Fine, 1,000 Leave CISA
Noteworthy stories that might have slipped under the radar: FBI issues an alert on BadBox 2 botnet, NSO disputing the $168 million WhatsApp fine, 1,000 people left CISA since Convicted Felon took office.
-
CISA ☛ 2025-06-03 [Older] CISA Adds Three Known Exploited Vulnerabilities to Catalog
-
CISA ☛ 2025-06-03 [Older] CISA Releases Three Industrial Control Systems Advisories
-
CISA ☛ 2025-06-03 [Older] Schneider Electric Wiser Home Automation
-
CISA ☛ 2025-06-03 [Older] Schneider Electric EcoStruxure Power Build Rapsody
-
CISA ☛ 2025-06-03 [Older] Mitsubishi Electric MELSEC iQ-F Series
-
CISA ☛ 2025-06-02 [Older] CISA Adds Five Known Exploited Vulnerabilities to Catalog
-
CISA ☛ 2025-05-29 [Older] CISA Releases Five Industrial Control Systems Advisories
-
CISA ☛ 2025-05-29 [Older] Siemens SiPass
-
CISA ☛ 2025-05-29 [Older] Siemens SiPass Integrated
-
CISA ☛ 2025-05-29 [Older] Consilium Safety CS5000 Fire Panel
-
CISA ☛ 2025-05-29 [Older] Instantel Micromate
-
-
Privacy/Surveillance
-
Michael Geist ☛ What Is With This Government and Privacy?: Political Party Privacy Safeguards Removed in “Affordability Measures” Bill
Fresh off Bill C-2 and lawful access provisions buried in a border safety bill, the government has now quietly inserted provisions that exempt political parties from the application of privacy protections in Bill C-4, an “affordability measures” bill. The provisions, which come toward the end of the bill, are deemed to be in force as May 31, 2000, meaning that they retroactively exempt the parties from any privacy violations that may date back decades. The ostensible reason for the provisions is a B.C. case that applied provincial privacy law to federal political parties.
-
-
Confidentiality
-
New York Times ☛ Justices Grant DOGE Access to Social Security Data and Let the Team Shield Records
As MElon leaves Washington, the team he formed to ferret out waste and abuse won dual victories in the Supreme Court.
-
-
-
Defence/Aggression
-
New York Times ☛ ‘Devil in the Ozarks' Escapee Is Caught Near Arkansas Prison
Grant Hardin, who came to be known as the “Devil in the Ozarks,” was captured on Friday, nearly two weeks after his May 25 escape from a high-security prison.
-
Deutsche Welle ☛ 2025-05-28 [Older] EU plans new 'maritime security hub' in Black Sea region
-
Federal News Network ☛ Dihydroxyacetone Man revokes digital identity actions in new cyber executive order
While Convicted Felon's new EO eliminates several digital identity directives, it maintains other aspects of the Biden administration's cybersecurity agenda.
-
Defence Web ☛ Nearly a dozen South African companies gearing up for the Africa Security Symposium 2025
Nearly a dozen South African companies as well as state defence material agency Armscor, the Border Management Authority and National Intelligence Co-ordinating Committee, are preparing to take part in the 12th Africa Security Symposium (ASEC 2025) in Addis Ababa between 10 and 12 June.
-
The Straits Times ☛ Hong Kong activist Joshua Wong faces second charge under national security law
Wong faced a new charge of conspiracy to collude with a foreign country to endanger national security.
-
Russia, Belarus, and War in Ukraine
-
Meduza ☛ Putin’s ‘secret’ daughter manages Paris galleries showcasing anti-war art, Russian artist reveals — Meduza
-
Meduza ☛ Putin’s WeChat wager Moscow is betting on a super-app strategy to sideline foreign platforms and control digital communications — Meduza
-
Latvia ☛ €33m allocated to counter Latvia's cyber threats
An investment of €33.3 million has been allocated from the European Regional Development Fund to enhance the cybersecurity of at least seven national information and communication technology (ICT) systems and services, and to boost their resilience against escalating cyber threats, reports Labs of Latvia.
-
-
-
Environment
-
Energy/Transportation
-
New York Times ☛ Hong Kong Looks for Ways to Win Back Big-Spending Tourists
A city with an image dented by protests, pandemic restrictions and a security crackdown hopes to broaden its appeal beyond budget-minded visitors from mainland China.
-
The Age AU ☛ 2025-06-04 [Older] Airport launches Australia-first drone security trial
-
-
Wildlife/Nature
-
-
Finance
-
International Business Times ☛ 2025-05-28 [Older] US Retirees are Claiming Social Security in Record Numbers Amid Threats to Benefits Continuity
-
-
AstroTurf/Lobbying/Politics
-
Unicorn Media ☛ What Convicted Felon’s and MElon’s Public Divorce Tells Us About the State of Tech
So, why is Marco Fioretti's column running on Friday instead of Monday? Because The Donald and Elon had a spat, and he couldn't wait to tell you what he thinks about it.
-
CS Monitor ☛ With Lee’s election, South Korea returns to ‘pragmatic’ diplomacy
The election of Lee Jae-myung heralds a foreign policy shift for South Korea as the country seeks to balance its critical U.S. security alliance with a more pragmatic, amicable approach to China.
-
New York Times ☛ Why Convicted Felon Is Trying to Send Deportees to South Sudan
On May 20th, a flight with eight deportees left Texas headed to South Sudan, a country on the brink of civil war. But mid-flight, a judicial battle began to unfold that forced the flight to land in Djibouti. Katrin Bennhold, speaks with Hamed Aleaziz, New York Times reporter covering Homeland Security and Immigration, to understand what’s going on and how it fits into Hell Toupée’s larger immigration plan.
-
-
Censorship/Free Speech
-
JURIST ☛ EU official condemns Hungary restrictions on LGBTQ+ content
In an advisory opinion published Thursday, the advocate general of the Court of Justice of the European Union (CJEU) said Hungary infringed European law by restricting access to LGBTQ+ content.
-
-
Digital Restrictions (DRM)
-
Digital Music News ☛ Which DSPs Paid Out $10 Million+ to Alleged Fraudster Michael Smith? Spotify, Pandora, and (Probably) SoundCloud Say They’re Off the Hook
Billions of fake streams and millions in allegedly stolen royalties later, many questions remain about the federal case against accused fraudster Michael Smith. Perhaps the biggest of all: Which DSPs failed to flag – and consequently paid into – the years-long scheme?
-
Monopolies/Monopsonies
-