Black Hat and DEF CON Roundup 2024: CrowdStrike Accepts ‘Epic Fail’ Award
ID: 877854b2-3abb-5b82-8cce-5149100e0080
STIX ID: report--877854b2-3abb-5b82-8cce-5149100e0080
Feed Name: TechRepublic Security
Black Hat USA 2024 and DEF CON 32 coverage highlights multiple high-impact security research findings and disclosures: CrowdStrike’s outage earned a Pwnie; researchers demonstrated Sonos kernel exploits enabling remote wiretaps; Aqua Security disclosed an AWS S3 naming vulnerability affecting six services (fixed by AWS); Wiz showed AI-as-a-service lateral moves and backdoors against Hugging Face and Replicate enabling potential supply-chain attacks; Microsoft Copilot was shown susceptible to prompt-injection and RAG poisoning leading to RCE; and ransomware groups’ coercion tactics and new security product updates were also reported.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
