Take a Network Break! This week we warn of significant vulnerabilities in WhatsUp Gold and Cisco NX-OS. We also discuss US federal reaction to the penetration of US telco networks by Chinese state actors.
Arista Networks announces stackable switches to satisfy enterprise LAN operations practices, the Intel board forces CEO Pat Gelsinger to step down, and HPE posts a record revenue quarter.
Vulnerability Details: CVE-2024-46909 - CVE Details - https://www.cvedetails.com/cve/CVE-2024-46909/
WhatsUp Gold Security Bulletin– September 2024 - Progress Community - https://community.progress.com/s/article/WhatsUp-Gold-Security-Bulletin-September-2024
Verification Bypass Vulnerability - Cisco Systems - https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-nxos-image-sig-bypas-pQDRQvjL?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20NX-OS%20Software%20Image%20Verification%20Bypass%20Vulnerability%26vs_k=1
Bootloader Vulnerability Impacts Over 100 Cisco Switches - SecurityWeek - https://www.securityweek.com/bootloader-vulnerability-impacts-over-100-cisco-switches/
Enhanced Visibility and Hardening Guidance for Communications Infrastructure - CISA - https://www.cisa.gov/resources-tools/resources/enhanced-visibility-and-hardening-guidance-communications-infrastructure
Chinese hack of global telecom providers is ‘ongoing,’ officials warn - Politico - https://www.politico.com/news/2024/12/03/chinese-hack-global-telecom-ongoing-00192410
FBI Phone Hacking Warning—You Need To Change Your iPhone Settings - Forbes - https://www.forbes.com/sites/zakdoffman/2024/12/05/fbi-hacking-warning-change-2-settings-on-your-iphone/
U.S. officials urge Americans to use encrypted apps amid unprecedented cyberattack - NBC News - https://www.nbcnews.com/tech/security/us-officials-urge-americans-use-encrypted-apps-cyberattack-rcna182694
FCC, for first time, proposes cybersecurity rules tied to wiretapping law - Cyberscoop - https://cyberscoop.com/fcc-cybersecurity-rules-wiretapping-law-salt-typhoon/
Rosenworcel Proposed Requiring Telecom Carriers Secure Their Networks - FCC - https://www.fcc.gov/document/rosenworcel-proposed-requiring-telecom-carriers-secure-their-networks
FACT SHEET: IMPLICATIONS OF SALT TYPHOON ATTACK AND FCC RESPONSE - FCC (PDF) - https://www.google.com/url?q=https://docs.fcc.gov/public/attachments/DOC-408015A1.pdf&sa=D&source=docs&ust=1733767458935984&usg=AOvVaw2GjaLpG6V2ktM3zZJMQJy9
Government Guidance on Chinese Telco Hacking Highlights Threat to Cisco Devices - SecurityWeek - https://www.securityweek.com/government-guidance-on-chinese-telco-hack-highlights-threat-to-cisco-devices/
Enhanced Visibility and Hardening Guidance for Communications Infrastructure - CISA - https://www.cisa.gov/resources-tools/resources/enhanced-visibility-and-hardening-guidance-communications-infrastructure
Snowblind: The Invisible Hand of Secret Blizzard - Lumen - https://blog.lumen.com/snowblind-the-invisible-hand-of-secret-blizzard/
Bringing SWAG to Enterprise Campus Networking - Arista - https://blogs.arista.com/blog/swag
Arista Cognitive Campus Network - Arista Networks (PDF) - https://www.arista.com/assets/data/pdf/Whitepapers/Cognitive-Campus-WP.pdf
Arista Unveils Modern Stacking for Campus Networks - Arista Networks - https://www.arista.com/en/company/news/press-release/20693-pr-12032024
Arista adds intelligent switch stacking, management for campus networks - Network World - https://www.networkworld.com/article/3616443/arista-adds-intelligent-switch-stacking-management-for-campus-networks.html
Intel Announces Retirement of CEO Pat Gelsinger - Intel - https://www.intc.com/news-events/press-releases/detail/1719/intel-announces-retirement-of-ceo-pat-gelsinger
Intel CEO Pat Gelsinger out; board searches for new CEO - TechTarget - https://www.techtarget.com/searchcio/news/366616633/Intel-CEO-Pat-Gelsinger-out-board-searches-for-new-CEO
Intel CEO Forced Out by Board Frustrated With Slow Progress - Bloomberg - https://www.bloomberg.com/news/articles/2024-12-02/intel-ceo-pat-gelsinger-retires-amid-chipmaker-s-turnaround-plan?utm_source=website&utm_medium=share&utm_campaign=linkedin
Intel CEO Pat Gelsinger ousted by board after disastrous performance - CNBC - https://www.cnbc.com/2024/12/02/intel-ceo-pat-gelsinger-is-out.html
Hewlett Packard Enterprise reports fiscal 2024 fourth quarter results - HPE - https://www.hpe.com/us/en/newsroom/press-release/2024/12/hewlett-packard-enterprise-reports-fiscal-2024-fourth-quarter-results.html
Network Break is part of the Packet Pushers network. Visit our website to find more great networking and technology podcasts, along with tutorial videos, the Human Infrastructure newsletter, and loads more resources for building your IT career. https://packetpushers.net
Arista Networks announces stackable switches to satisfy enterprise LAN operations practices, the Intel board forces CEO Pat Gelsinger to step down, and HPE posts a record revenue quarter.
Vulnerability Details: CVE-2024-46909 - CVE Details - https://www.cvedetails.com/cve/CVE-2024-46909/
WhatsUp Gold Security Bulletin– September 2024 - Progress Community - https://community.progress.com/s/article/WhatsUp-Gold-Security-Bulletin-September-2024
Verification Bypass Vulnerability - Cisco Systems - https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-nxos-image-sig-bypas-pQDRQvjL?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20NX-OS%20Software%20Image%20Verification%20Bypass%20Vulnerability%26vs_k=1
Bootloader Vulnerability Impacts Over 100 Cisco Switches - SecurityWeek - https://www.securityweek.com/bootloader-vulnerability-impacts-over-100-cisco-switches/
Enhanced Visibility and Hardening Guidance for Communications Infrastructure - CISA - https://www.cisa.gov/resources-tools/resources/enhanced-visibility-and-hardening-guidance-communications-infrastructure
Chinese hack of global telecom providers is ‘ongoing,’ officials warn - Politico - https://www.politico.com/news/2024/12/03/chinese-hack-global-telecom-ongoing-00192410
FBI Phone Hacking Warning—You Need To Change Your iPhone Settings - Forbes - https://www.forbes.com/sites/zakdoffman/2024/12/05/fbi-hacking-warning-change-2-settings-on-your-iphone/
U.S. officials urge Americans to use encrypted apps amid unprecedented cyberattack - NBC News - https://www.nbcnews.com/tech/security/us-officials-urge-americans-use-encrypted-apps-cyberattack-rcna182694
FCC, for first time, proposes cybersecurity rules tied to wiretapping law - Cyberscoop - https://cyberscoop.com/fcc-cybersecurity-rules-wiretapping-law-salt-typhoon/
Rosenworcel Proposed Requiring Telecom Carriers Secure Their Networks - FCC - https://www.fcc.gov/document/rosenworcel-proposed-requiring-telecom-carriers-secure-their-networks
FACT SHEET: IMPLICATIONS OF SALT TYPHOON ATTACK AND FCC RESPONSE - FCC (PDF) - https://www.google.com/url?q=https://docs.fcc.gov/public/attachments/DOC-408015A1.pdf&sa=D&source=docs&ust=1733767458935984&usg=AOvVaw2GjaLpG6V2ktM3zZJMQJy9
Government Guidance on Chinese Telco Hacking Highlights Threat to Cisco Devices - SecurityWeek - https://www.securityweek.com/government-guidance-on-chinese-telco-hack-highlights-threat-to-cisco-devices/
Enhanced Visibility and Hardening Guidance for Communications Infrastructure - CISA - https://www.cisa.gov/resources-tools/resources/enhanced-visibility-and-hardening-guidance-communications-infrastructure
Snowblind: The Invisible Hand of Secret Blizzard - Lumen - https://blog.lumen.com/snowblind-the-invisible-hand-of-secret-blizzard/
Bringing SWAG to Enterprise Campus Networking - Arista - https://blogs.arista.com/blog/swag
Arista Cognitive Campus Network - Arista Networks (PDF) - https://www.arista.com/assets/data/pdf/Whitepapers/Cognitive-Campus-WP.pdf
Arista Unveils Modern Stacking for Campus Networks - Arista Networks - https://www.arista.com/en/company/news/press-release/20693-pr-12032024
Arista adds intelligent switch stacking, management for campus networks - Network World - https://www.networkworld.com/article/3616443/arista-adds-intelligent-switch-stacking-management-for-campus-networks.html
Intel Announces Retirement of CEO Pat Gelsinger - Intel - https://www.intc.com/news-events/press-releases/detail/1719/intel-announces-retirement-of-ceo-pat-gelsinger
Intel CEO Pat Gelsinger out; board searches for new CEO - TechTarget - https://www.techtarget.com/searchcio/news/366616633/Intel-CEO-Pat-Gelsinger-out-board-searches-for-new-CEO
Intel CEO Forced Out by Board Frustrated With Slow Progress - Bloomberg - https://www.bloomberg.com/news/articles/2024-12-02/intel-ceo-pat-gelsinger-retires-amid-chipmaker-s-turnaround-plan?utm_source=website&utm_medium=share&utm_campaign=linkedin
Intel CEO Pat Gelsinger ousted by board after disastrous performance - CNBC - https://www.cnbc.com/2024/12/02/intel-ceo-pat-gelsinger-is-out.html
Hewlett Packard Enterprise reports fiscal 2024 fourth quarter results - HPE - https://www.hpe.com/us/en/newsroom/press-release/2024/12/hewlett-packard-enterprise-reports-fiscal-2024-fourth-quarter-results.html
Network Break is part of the Packet Pushers network. Visit our website to find more great networking and technology podcasts, along with tutorial videos, the Human Infrastructure newsletter, and loads more resources for building your IT career. https://packetpushers.net
- Category
- Johnny Cash
- Tags
- Arista, CVE, hacking
Commenting disabled.