<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>boB Rudis &#8211; Noise</title>
	<atom:link href="https://noise.getoto.net/author/bob-rudis/feed/" rel="self" type="application/rss+xml" />
	<link>https://noise.getoto.net</link>
	<description>The collective thoughts of the interwebz</description>
	<lastBuildDate>Tue, 15 Feb 2022 22:23:23 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.8.2</generator>
	<item>
		<title>Prudent Cybersecurity Preparation for the Potential Russia-Ukraine Conflict</title>
		<link>https://noise.getoto.net/2022/02/16/prudent-cybersecurity-preparation-for-the-potential-russia-ukraine-conflict/</link>
		
		<dc:creator><![CDATA[boB Rudis]]></dc:creator>
		<pubDate>Tue, 15 Feb 2022 22:23:23 +0000</pubDate>
				<category><![CDATA[Public Policy]]></category>
		<category><![CDATA[Rapid7 Perspective]]></category>
		<category><![CDATA[research]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=3334e96d687dda4ce7a96ede094d3094</guid>

					<description><![CDATA[Fending off an attack from a well-resourced nation state is a nightmare scenario for cybersecurity teams. Here are some steps your organization can take to bolster its defenses.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2022/02/cybersecurity-preparations.jpg" length="0" type="" />

			</item>
		<item>
		<title>The Everyperson’s Guide to Log4Shell (CVE-2021-44228)</title>
		<link>https://noise.getoto.net/2021/12/15/the-everypersons-guide-to-log4shell-cve-2021-44228/</link>
		
		<dc:creator><![CDATA[boB Rudis]]></dc:creator>
		<pubDate>Wed, 15 Dec 2021 19:44:42 +0000</pubDate>
				<category><![CDATA[exploits]]></category>
		<category><![CDATA[log4j]]></category>
		<category><![CDATA[log4shell]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=9cb105938bde92f573a2de68bc20cf46</guid>

					<description><![CDATA[This blog is for everyone who wants to understand what’s going on with the Log4Shell vulnerability in Log4j and why the internet seems to be on fire again.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2021/12/log4shell-faq.jpg" length="0" type="" />

			</item>
		<item>
		<title>Widespread Exploitation of Critical Remote Code Execution in Apache Log4j</title>
		<link>https://noise.getoto.net/2021/12/10/widespread-exploitation-of-critical-remote-code-execution-in-apache-log4j/</link>
		
		<dc:creator><![CDATA[boB Rudis]]></dc:creator>
		<pubDate>Fri, 10 Dec 2021 18:02:37 +0000</pubDate>
				<category><![CDATA[Emergent Threat Response]]></category>
		<category><![CDATA[Vulnerability Risk Management]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=18d49792276e208f17e7d64bce2fdef6</guid>

					<description><![CDATA[On December 10, 2021, Apache released version 2.15.0 of their Log4j framework, which included a fix for CVE-2021-44228, a critical RCE vulnerability that is being exploited in the wild.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2021/12/apache-log4j.jpg" length="0" type="" />

			</item>
		<item>
		<title>3 Strategies That Are More Productive Than Hack Back</title>
		<link>https://noise.getoto.net/2021/12/07/3-strategies-that-are-more-productive-than-hack-back/</link>
		
		<dc:creator><![CDATA[boB Rudis]]></dc:creator>
		<pubDate>Tue, 07 Dec 2021 16:07:15 +0000</pubDate>
				<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[Public Policy]]></category>
		<category><![CDATA[Security Strategy]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=268e0de816c9717cacb17c7b2ce331ec</guid>

					<description><![CDATA[Hack back, as used by non-government entities, is problematic for many reasons. Here are 3 alternative strategies to thwart the attackers.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2021/12/3-strategies-hack-back.jpg" length="0" type="" />

			</item>
		<item>
		<title>2022 Planning: Prioritizing Defense and Mitigation Through Left of Boom</title>
		<link>https://noise.getoto.net/2021/11/17/2022-planning-prioritizing-defense-and-mitigation-through-left-of-boom/</link>
		
		<dc:creator><![CDATA[boB Rudis]]></dc:creator>
		<pubDate>Wed, 17 Nov 2021 14:49:50 +0000</pubDate>
				<category><![CDATA[2022 Planning]]></category>
		<category><![CDATA[ransomware]]></category>
		<category><![CDATA[Security Strategy]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=f2746be666f8d87fcf0b584390bfe916</guid>

					<description><![CDATA[In this post, we'll use ransomware as an example for 3 areas where you can apply a left-of-boom approach in your defenses in the coming year.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2021/11/GettyImages-544458662.jpg" length="0" type="" />

			</item>
		<item>
		<title>Trojan Source CVE-2021-42572: No Panic Necessary</title>
		<link>https://noise.getoto.net/2021/11/04/trojan-source-cve-2021-42572-no-panic-necessary/</link>
		
		<dc:creator><![CDATA[boB Rudis]]></dc:creator>
		<pubDate>Thu, 04 Nov 2021 19:47:45 +0000</pubDate>
				<category><![CDATA[Emergent Threat Response]]></category>
		<category><![CDATA[Emerging Threats]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=9171bb636f16b6ac97b939c701abe971</guid>

					<description><![CDATA[Researchers recently published a paper on an attack technique they call “Trojan Source.” How worried should you be?]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2021/11/emergent-threats-series-hero-background.jpg" length="0" type="" />

			</item>
		<item>
		<title>2022 Planning: Straight Talk on Zero Trust</title>
		<link>https://noise.getoto.net/2021/10/29/2022-planning-straight-talk-on-zero-trust/</link>
		
		<dc:creator><![CDATA[boB Rudis]]></dc:creator>
		<pubDate>Fri, 29 Oct 2021 14:02:07 +0000</pubDate>
				<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[Security Strategy]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=f7c363c7b5137eb6581c87f85c6bd9b0</guid>

					<description><![CDATA[What does zero trust really mean, and how can you assess if it has a practical place in your organization's cybersecurity strategy for 2022?]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2021/10/GettyImages-962094400.jpg" length="0" type="" />

			</item>
		<item>
		<title>The Rise of Disruptive Ransomware Attacks: A Call To Action</title>
		<link>https://noise.getoto.net/2021/09/10/the-rise-of-disruptive-ransomware-attacks-a-call-to-action/</link>
		
		<dc:creator><![CDATA[boB Rudis]]></dc:creator>
		<pubDate>Fri, 10 Sep 2021 13:30:00 +0000</pubDate>
				<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[ransomware]]></category>
		<category><![CDATA[research]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=80a71b96a347f6dd6a6eff432467bbeb</guid>

					<description><![CDATA[Ransomware attacks are on the rise. In this post, we examine the dynamics of this trend and where it might be headed.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2021/09/rise-of-ransomware.jpg" length="0" type="" />

			</item>
		<item>
		<title>Managed Service Providers Used in Coordinated, Mass Ransomware Attack Impacting Hundreds of Companies</title>
		<link>https://noise.getoto.net/2021/07/02/managed-service-providers-used-in-coordinated-mass-ransomware-attack-impacting-hundreds-of-companies/</link>
		
		<dc:creator><![CDATA[boB Rudis]]></dc:creator>
		<pubDate>Fri, 02 Jul 2021 20:54:39 +0000</pubDate>
				<category><![CDATA[Emergent Threat Response]]></category>
		<category><![CDATA[Emerging Threats]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=2cae6785586002c85c620cf61d6c68c2</guid>

					<description><![CDATA[Rapid7 is aware of and tracking all information surrounding a coordinated, mass ransomware attack that appears to be targeting Kaseya VSA patch management and monitoring software.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2021/07/rapid7-og--1-.jpg" length="0" type="" />

			</item>
		<item>
		<title>ForgeRock Access Manager/OpenAM Pre-Auth Remote Code Execution Vulnerability (CVE-2021-35464): What You Need To Know</title>
		<link>https://noise.getoto.net/2021/06/30/forgerock-access-manager-openam-pre-auth-remote-code-execution-vulnerability-cve-2021-35464-what-you-need-to-know/</link>
		
		<dc:creator><![CDATA[boB Rudis]]></dc:creator>
		<pubDate>Wed, 30 Jun 2021 15:26:49 +0000</pubDate>
				<category><![CDATA[Emergent Threat Response]]></category>
		<category><![CDATA[Vulnerability management]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=5223f0ed8d616db4ee860cf6b7770388</guid>

					<description><![CDATA[On June 29, 2021, researcher Michael Stepankin (@artsploit) posted details of a pre-auth remote code execution (RCE) vulnerability, CVE-2021-35464, in ForgeRock Access Manager identity and access management software that front-ends web applications and remote access solutions in many enterprises.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2021/06/hannah-gibbs-BINLgyrG_fI-unsplash.jpg" length="0" type="" />

			</item>
		<item>
		<title>Multiple Unauthenticated Remote Code Control and Execution Vulnerabilities in Multiple Cisco Products</title>
		<link>https://noise.getoto.net/2021/02/25/multiple-unauthenticated-remote-code-control-and-execution-vulnerabilities-in-multiple-cisco-products/</link>
		
		<dc:creator><![CDATA[boB Rudis]]></dc:creator>
		<pubDate>Thu, 25 Feb 2021 15:14:55 +0000</pubDate>
				<category><![CDATA[Emergent Threat Response]]></category>
		<category><![CDATA[news]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=ac940eebfeabe67ab6a61f6973357674</guid>

					<description><![CDATA[On Feb. 24, 20201, Cisco released many patches for multiple products, three of which require immediate attention by organizations if they are running affected systems and operating system/software configurations.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2021/02/cisco-1.jpg" length="0" type="" />

			</item>
		<item>
		<title>VMware vCenter Server CVE-2021-21972 Remote Code Execution Vulnerability: What You Need to Know</title>
		<link>https://noise.getoto.net/2021/02/25/vmware-vcenter-server-cve-2021-21972-remote-code-execution-vulnerability-what-you-need-to-know/</link>
		
		<dc:creator><![CDATA[boB Rudis]]></dc:creator>
		<pubDate>Wed, 24 Feb 2021 22:22:14 +0000</pubDate>
				<category><![CDATA[Emergent Threat Response]]></category>
		<category><![CDATA[news]]></category>
		<category><![CDATA[Vulnerability management]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=7f5516eb3d3811bae47d74129049d93f</guid>

					<description><![CDATA[On Feb. 23, 2021, VMware published an advisory describing three weaknesses affecting VMware ESXi, VMware vCenter Server, and VMware Cloud Foundation.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2021/02/vmware.jpg" length="0" type="" />

			</item>
		<item>
		<title>Cisco Patches Recently Disclosed &#8220;sudo&#8221; Vulnerability (CVE-2021-3156) in Multiple Products</title>
		<link>https://noise.getoto.net/2021/02/04/cisco-patches-recently-disclosed-sudo-vulnerability-cve-2021-3156-in-multiple-products/</link>
		
		<dc:creator><![CDATA[boB Rudis]]></dc:creator>
		<pubDate>Thu, 04 Feb 2021 21:04:49 +0000</pubDate>
				<category><![CDATA[news]]></category>
		<category><![CDATA[Vulnerability management]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=b7bff90df2218c3cfb5abb1cfe63700e</guid>

					<description><![CDATA[Cisco has released security updates to address vulnerabilities in most of their product portfolio.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2021/02/cisco.jpg" length="0" type="" />

			</item>
		<item>
		<title>SonicWall SNWLID-2021-0001 Zero-Day and SolarWinds’ 2021 CVE Trifecta: What You Need to Know</title>
		<link>https://noise.getoto.net/2021/02/04/sonicwall-snwlid-2021-0001-zero-day-and-solarwinds-2021-cve-trifecta-what-you-need-to-know/</link>
		
		<dc:creator><![CDATA[boB Rudis]]></dc:creator>
		<pubDate>Wed, 03 Feb 2021 23:33:40 +0000</pubDate>
				<category><![CDATA[Emergent Threat Response]]></category>
		<category><![CDATA[news]]></category>
		<category><![CDATA[Project Heisenberg]]></category>
		<category><![CDATA[Vulnerability management]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=9d9afd21093a2baea68bd964595f69a3</guid>

					<description><![CDATA[2021 continues to deliver with an unpatched zero-day exposure in some SonicWall appliances and three moderate-to-critical CVEs in SolarWinds software.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2021/02/sonic-1.jpg" length="0" type="" />

			</item>
		<item>
		<title>State-Sponsored Threat Actors Target Security Researchers</title>
		<link>https://noise.getoto.net/2021/01/26/state-sponsored-threat-actors-target-security-researchers/</link>
		
		<dc:creator><![CDATA[boB Rudis]]></dc:creator>
		<pubDate>Tue, 26 Jan 2021 15:01:33 +0000</pubDate>
				<category><![CDATA[google]]></category>
		<category><![CDATA[Labs]]></category>
		<category><![CDATA[news]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=be902c7628d3f969596f8be1dd0207c1</guid>

					<description><![CDATA[On Monday, Google’s Threat Analysis Group published a blog on a widespread social engineering campaign that targeted security researchers working on vulnerability research and development.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2021/01/lock.jpg" length="0" type="" />

			</item>
		<item>
		<title>Update on SolarWinds Supply-Chain Attack: SUNSPOT and New Malware Family Associations</title>
		<link>https://noise.getoto.net/2021/01/12/update-on-solarwinds-supply-chain-attack-sunspot-and-new-malware-family-associations/</link>
		
		<dc:creator><![CDATA[boB Rudis]]></dc:creator>
		<pubDate>Tue, 12 Jan 2021 19:35:18 +0000</pubDate>
				<category><![CDATA[news]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=af789507624dbde7dec71862f359b5b9</guid>

					<description><![CDATA[New research has been published that expands the security community’s understanding of the breadth and depth of the SolarWinds attack.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2021/01/sunspot.jpg" length="0" type="" />

			</item>
		<item>
		<title>Rapid7 Labs’ 2020 Naughty List Summary Report to Santa</title>
		<link>https://noise.getoto.net/2020/12/25/rapid7-labs-2020-naughty-list-summary-report-to-santa/</link>
		
		<dc:creator><![CDATA[boB Rudis]]></dc:creator>
		<pubDate>Fri, 25 Dec 2020 14:00:00 +0000</pubDate>
				<category><![CDATA[Haxmas]]></category>
		<category><![CDATA[research]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=2a0323ed02fee17033c3fd0c413a003c</guid>

					<description><![CDATA[Your dutiful elves here at Rapid7 Labs have compiled a list of the naughty country networks being used to launch cyberattacks across the globe.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2020/12/Rapid7-Labs--2020-Naughty-List-Summary-Report-to-Santa.jpg" length="0" type="" />

			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/

Object Caching 20/246 objects using Memcached
Page Caching using Disk: Enhanced 
Lazy Loading (feed)
Database Caching using Memcached (Request-wide modification query)

Served from: noise.getoto.net @ 2026-02-25 02:13:15 by W3 Total Cache
-->