Daily Cyber Brief
Open-source tool scans AWS S3 buckets for secrets, Google issues emergency patch for Chrome zero-day, and Latvia's cyberspace faces new challenges amid Ukraine...

Today’s Cyber Brief is brought to you by Farnsworth Forensics.
Cybersecurity
A new open-source 'S3crets Scanner' scanner allows researchers and red-teamers to search for 'secrets' mistakenly stored in publicly exposed or company's Amazon AWS S3 storage buckets. Amazon S3 (Simple Storage Service) is a cloud storage service commonly used by companies…
Google Chrome has issued an urgent fix for an actively exploited zero-day bug in its browser. This is the seventh Chrome actively exploited zero-day flaw this year, underscoring how big of a target it has become for cyberattacks. As users scramble to patch, Google isn't releasing…
Russian cyberattacks may be a global threat, but Ukraine’s allies have been especially at risk. Among them is Latvia, which was one of the first to declare Russia a “state sponsor of terrorism” and stopped issuing entry visas to Russian citizens in August. Before Russia…
Raspberry Robin, a worm that spreads through Windows systems via USB drives, has rapidly evolved: now backdoor access is being sold or offered to infected machines so that ransomware, among other code, can be installed by cybercriminals. In a report on Thursday…
Washington policymakers have lamented for years that the mostly private critical infrastructure sectors need to do more to protect vital services from hackers, but whether newly issued guidance lives up to initial praise and finds widespread adoption is another question…
Thomson Reuters said it has notified a “small subset of customers” of a misconfigured server after researchers discovered 3 TB of data in an exposed cloud database. A spokesperson for the company told The Record the issue involved an ElasticSearch server used with their…
Microsoft has released out-of-band updates to address a known issue causing OneDrive and OneDrive for Business to crash after installing recent Windows 10 updates. The issue occurs when signing out or unlinking OneDrive accounts or sites and folders from Microsoft Teams…
Cloud computing was the lifeline that kept many companies running during the pandemic. But it was a classic case of medicine that comes with serious side effects. Having anywhere, anytime access to data and apps gives companies tremendous flexibility in a fast-changing…
New Zealand needs a dedicated cyber security minister, says an expert in the industry, on the back of a healthcare provider hack. A cyber attack siphoned data and patient information from Pinnacle Health network on September 28 and it was uploaded to the dark web…
ConnectWise has released security updates to address a critical vulnerability in the ConnectWise Recover and R1Soft Server Backup Manager (SBM) secure backup solutions. The security flaw is due to an injection weakness described by the company in an advisory…