Blumira Briefings

๐Ÿฆ” Blumira Briefings Ep. 10: Critical Chrome Release, Identity-Based Attacks, Cookie Security Risks

โ€ข Blumira

๐Ÿ”” Welcome to Blumira Briefings! This week, we're joined by Michael Kellar, Chris Furner, and Justin Kikani to break down the week's most important security headlines with expert context you can actually use. ๐Ÿ””

What We Cover This Week:

๐Ÿ”„ NEW FORMAT! Instead of our usual top trends, we're highlighting the rarest findings in our environments - with insights on what makes these unusual detections worth your attention

๐ŸŒ Critical Chrome vulnerabilities with active exploits in the wild - what makes use-after-free and out-of-bounds write bugs so dangerous
 ๐Ÿ› ๏ธ ConnectWise ScreenConnect and other vulnerabilities added to CISA's Known Exploited Vulnerabilities list 
๐ŸชŸ OneDrive File Picker flaw giving third-party apps broader permissions than users expect 
๐Ÿช NordVPN's alarming research on 94 billion stolen cookies for sale on dark web marketplaces 
๐ŸŽญ Deep dive into Scattered Spider's sophisticated help desk social engineering tactics

๐Ÿ’ก Quick tip of the week: Consider conducting periodic, scheduled reboots for your organization's devices - this helps clear browser sessions, refresh security policies, and force application updates like Chrome to install critical patches.

Plus, Expert Insights On:

- Why auditing third-party app permissions is crucial for cloud security
- Why infostealer attacks are on the rise
- Practical strategies for protecting help desk teams from social engineering
- The rising trend of identity-focused attacks vs. traditional device targeting
- How to implement proper controls for remote workers using home network equipment

๐Ÿ”— LINKS:

Prowler - Cloud security assessment tool: https://github.com/prowler-cloud/prowler 
SilentPush research on Scattered Spider: https://www.silentpush.com/blog/scattered-spider-2025/ 
Blumira blog on SocGholish:  https://www.blumira.com/blog/socgholish-malware-recent-trends-and-effective-detection-strategies

๐Ÿ“ฐ SOURCES:

Chrome Zero-Day Vulnerability: https://www.securityweek.com/google-researchers-find-new-chrome-zero-day/
ConnectWise and CISA KEV Update: https://www.bleepingcomputer.com/news/security/cisa-warns-of-connectwise-screenconnect-bug-exploited-in-attacks/ 
OneDrive File Picker Vulnerability: https://hackread.com/onedrive-file-picker-apps-full-access-user-drives/ 
Stolen Cookies Research: https://www.theregister.com/2025/05/29/billions_of_cookies_available 
Scattered Spider Analysis: https://thehackernews.com/2025/06/scattered-spider-understanding-help.html