CyberWire Daily

Critical GoAnywhere bug exposed.

22 snips
Sep 25, 2025
Michele Kellerman, a cybersecurity engineer at Johns Hopkins University, dives into the privacy storm surrounding women’s health and period-tracking apps. She highlights how HIPAA protections often don’t cover these apps, leaving users vulnerable. Following the Dobbs decision, privacy concerns have intensified, as data from these apps could potentially be misused in legal contexts. Kellerman also explores ongoing legislative efforts to protect reproductive health data amidst a patchwork of state laws.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
ADVICE

Patch And Lock Down GoAnywhere

  • Upgrade GoAnywhere MFT immediately to patched versions to close the critical CVSS 10 flaw.
  • Restrict public admin console access and monitor logs for suspicious activity.
ADVICE

Patch Cisco SNMP And Restrict Access

  • Apply Cisco's SNMP patches without delay because no full workarounds exist.
  • Mitigate exposure by restricting SNMP access and disabling risky object IDs until patched.
INSIGHT

Packet Floods Break More Than Bandwidth

  • Massive volumetric DDoS attacks can overwhelm networking gear even with ample bandwidth.
  • The 22.2 Tbps, 11.6 Bpps attack shows packet floods remain devastating to firewalls and routers.
Get the Snipd Podcast app to discover more snips from this episode
Get the app