High Sierra, NSA, WordPress, and HP – Paul’s Security Weekly #538

 More secure WordPress updates, paying attention to SD-WAN security, NSA’s “Red Disk” data leak, why gets you root, HP bloatware, and more security news! Paul’s Stories Pay Attention to SD-WAN Security WordPress 4.9.1 Debuts wi… Continue reading High Sierra, NSA, WordPress, and HP – Paul’s Security Weekly #538

Apple Fixes MacOS High Sierra Root Access Vulnerability

Apple has released an emergency fix for an embarrassing vulnerability that allowed people to access the highest privileges account on Mac computers without a password. The vulnerability was disclosed by a user Tuesday on Twitter. He noticed that when p… Continue reading Apple Fixes MacOS High Sierra Root Access Vulnerability

Leaky AWS Storage Bucket Spills Military Secrets, Again

For the second time in ten days, researchers at UpGuard released sensitive data belonging to the United States Defense Department that was stored insecurely online. Continue reading Leaky AWS Storage Bucket Spills Military Secrets, Again

Top secret Army, NSA data found on public internet due to misconfigured AWS server

A misconfigured Amazon Web Services server operated by the U.S. Army’s Intelligence and Security Command was publicly available on the open internet, according to findings by UpGuard researcher Chris Vickery. The hard drive’s content, which included classified material belonging to the National Security Agency, was stored on a unprotected, unlisted server, containing information about an outdated Army intelligence sharing project codenamed “Red Disk.” Red Disk represents a defunct project that was previously spearheaded by INSCOM in order to improve one of the Army’s legacy platforms known as the distributed common ground system (DCGS). Red Disk was meant to act as a customizable cloud system for soldiers and other operators in field to access, organize and share active reports regarding military activities, including information gathering efforts. The publicly accessible files provide an overview of how Red Disk functioned and could have been deployed. Other confidential information stored on the disk image included a […]

The post Top secret Army, NSA data found on public internet due to misconfigured AWS server appeared first on Cyberscoop.

Continue reading Top secret Army, NSA data found on public internet due to misconfigured AWS server