My name is Rich and I talk about technology and other nerdy things. Husband, Father, Tech Guy, CCIE 49450. #CiscoChampion

United States
A short clip from my IP subnetting video talking about how 16 million IP addresses were allocated. See the full video here: piped.video/7hIbzlxbebc
1
2
9
1,628
Mandiant: ShinyHunters renewed mass exploitation of Oracle PeopleSoft CVE-2026-35273 by encoding /PSEMHUB/ to bypass literal WAF path rules, then dropping web shells + SIDEEYE. Patch, disable EMHub where possible, hunt MeshAgent/Neo-reGeorg. thehackernews.com/2026/09/at…
53
IPv4 is exhausted—and we’re still dual-stacking everything. New video: IPv6 addressing, subnetting, SLAAC vs DHCPv6, NDP, dual-stack ops, and why IPv4 won’t die. piped.video/uiX_o0Phbds
52
We ran out of IPv4 years ago. So why is it still everywhere? Full IPv6 breakdown (addressing, subnetting, protocols, adoption reality): piped.video/uiX_o0Phbds
1
2
67
Microsoft + partners disrupted EvilTokens: AI-assisted device-code phishing PaaS tied to 12k+ Microsoft inbox compromises. Seizures and UK arrests. Device-code/OAuth flows + session revocation still core controls—password reset alone is not enough. blogs.microsoft.com/on-the-i…
38
ShinyHunters claims FBI access via alleged Oracle PeopleSoft 0-day on recruitment infra, lateral to GovCloud, agent/applicant PII. FBI investigating FBIjobs.gov activity; root cause not publicly confirmed. HR/ERP internet exposure remains a high-value path. techcrunch.com/2026/09/22/ha…
45
Check Point: active exploitation of Management pre-auth path traversal (CVE-2026-93616) and Spark/gateway cert RCE path (CVE-2026-85102). Handful of Mgmt hits confirmed; Spark probes global. Emergency fixes live; CISA KEV due Sep 25. Restrict Mgmt to trusted IPs. helpnetsecurity.com/2026/09/…
50
Arista: actively exploited CVSS 10.0 on VeloCloud Orchestrator on-prem (CVE-2026-93952). Improper input validation → privileged internal functions; Edge cert auth path. Patch 5.2.3.16+ / 6.4.2.8+; CISA KEV due Sep 25. Lock down VCO UI, review IOCs. bleepingcomputer.com/news/se…
1
1
2
102
F5 confirms active exploitation of CVE-2026-94127: unauth RCE on BIG-IP APM when APM + OAuth profile act as OAuth Authorization Server (data plane). Hotfixes out; CISA KEV due Sep 25. Inventory OAuth AS configs, apply iRule if delayed, hunt OAuth fails + TMM SIGABRT. bleepingcomputer.com/news/se…
1
48
Arctic Wolf: active exploitation of Veeam Agent LPE CVE-2026-32996 (local → SYSTEM via session UID on named pipe). Patch Agent/B&R stacks; review backup-agent privilege and log permissions. thehackernews.com/2026/09/zy…
63
CISA KEV: three Linux kernel bugs under active exploitation—CVE-2025-39682 (TLS path, 9.8), CVE-2026-53266 (ebtables SNAT), CVE-2025-39964 (AF_ALG race). Federal due date Sep 21 under BOD 26-04. Prioritize distro kernel updates and triage exposed hosts. thehackernews.com/2026/09/ci…
2
1
109
Check Point CVE-2026-91843: unauth stack overflow on Security Management/Log Server login → root RCE (CVSS 9.8). No confirmed exploitation yet. Apply LivePatch sk1000155; restrict Trusted Clients; watch “Username too long” auth failures. bleepingcomputer.com/news/se…
72
Covering a big topic for my next video, but also having fun filming it.
1
40
Fix your DNS servers. BIND 9.20.29/9.21.26: 14 flaws incl. unauth DoH crash. Unbound ≤1.26.0: critical DNSSEC heap issues (possible RCE)—upgrade to 1.26.1. No known in-wild exploit yet; DNS is high-value infrastructure. thehackernews.com/2026/09/bi…
42
FBI/RCMP seize NightmareStresser DDoS-for-hire domains under Operation PowerOFF—service linked to hundreds of thousands of attacks since 2022. Booter disruption continues; DDoS resilience still required. bleepingcomputer.com/news/se…
1
38
ESET: FamousSparrow (China-aligned) fielding SparroWocky modular backdoor vs LatAm governments—commands, in-memory BOFs, anti-analysis; SparrowDoor largely replaced. Watch Exchange/edge → implant patterns. bleepingcomputer.com/news/se…
34
Windows 11 Sep updates (e.g. KB5124008): domain trust/logon failures linked to Machine Identity Isolation enforcement. MS workaround: set isolation to 0, reboot, repair secure channel. Pause broad rollout if seeing 4625/ERROR_NO_TRUST_LSA_SECRET. bleepingcomputer.com/news/mi…
58
Running Cisco ISE? Read this and get it patched. Review access.log and check for suspicious or unknown user names.
‼️ WARNING - New Cisco ISE flaw CVE-2026-76460 is under active exploitation. The CVSS 10.0 auth bypass has no workaround, and successful exploitation may lead to root-level command execution. Affected versions, fixes, and compromise checks: thehackernews.com/2026/09/ci…
1
51