Nov. 8, 2023, 3:02 a.m. | Security Now

Security Now www.youtube.com

• Microsoft announced storing their Azure keys in an HSM after previously losing control of a private signing key
• A quartet of new 0-day vulnerabilities in Exchange Server that Microsoft declined to fix
• Apache ActiveMQ servers under attack exploiting a 0-day, with over half of publicly exposed servers vulnerable
• Update on the Citrix Bleed vulnerability with evidence of hackers gaining access and post-exploitation activity
• CVSS version 4 released with new metrics for better granularity and clarity …

ace ace hardware activemq apache apache activemq article attack azure bitwarden citrix citrix bleed control cyberattack exchange exchange server exploiting fix hardware hsm key keys losing control microsoft passkeys private server servers signing signing key under update vulnerabilities

Social Engineer For Reverse Engineering Exploit Study

@ Independent study | Remote

Information Security Specialist, Sr. (Container Hardening)

@ Rackner | San Antonio, TX

Principal Security Researcher (Advanced Threat Prevention)

@ Palo Alto Networks | Santa Clara, CA, United States

EWT Infosec | IAM Technical Security Consultant - Manager

@ KPMG India | Bengaluru, Karnataka, India

Security Engineering Operations Manager

@ Gusto | San Francisco, CA; Denver, CO; Remote

Network Threat Detection Engineer

@ Meta | Denver, CO | Reston, VA | Menlo Park, CA | Washington, DC