- InfoSecSam's Newsletter
- Posts
- iOS Patch, Record Breaking DDoS, FREE Beginner Courses + More
iOS Patch, Record Breaking DDoS, FREE Beginner Courses + More
This Week’s News
iOS Security Patch
Listen up Apple users. Apple’s latest iOS 18.0.1 update addresses security vulnerabilities, including a password exposure flaw and a bug that allowed unauthorised access to audio snippets.
One issue allowed audio messages in Messages to capture brief snippets of audio before the microphone indicator was activated. The second could potentially enable Voice Over to read aloud a user’s saved passwords!

Damn Big DDoS
A record-breaking Distributed Denial-of-Service (DDoS) attack recently peaked at 3.8 Tbps and 2.14 billion packets per second (PPS), but was mitigated by Cloudflare.
The campaign targeted customers in the financial services, telecoms, and internet sectors. The attacks came from systems around the world, including in Vietnam, Russia, Brazil, Spain and the United States, and they were powered by compromised web servers, DVRs, and routers.
This attack highlights the growing scale and sophistication of DDoS threats, stressing the need for enhanced defences to protect against future incidents of this magnitude.

Block Bots By Blockchain
Tools for Humanity (TfH) and Worldcoin are using a global, permissionless blockchain identity to combat deepfakes and bots by verifying unique human identities. TfH is a non-profit organization founded by OpenAI’s Sam Altman and Alex Blania in 2010.
The project aims to establish a reliable identity framework, allowing individuals to authenticate themselves securely in digital spaces. The solution is not a traditional identity system but instead it simply confirms that the person is a living person and not a bot.
Worldcoin's approach leverages biometric verification and decentralised technology, intending to improve online trust and reduce the influence of fake accounts and automated bots.
Could this be a useful real world use case for blockchain technology?

Other News
Ryanair Probed - The Irish Data Protection Commission (DPC) has initiated a probe into Ryanair over potential GDPR violations regarding their handling of customer data.
What a Spectacle - A pair of inventive Harvard undergraduates hacked Meta Ray-Bans and gave it the ability to dox anyone in sight- scary stuff. Check it out below.
Are we ready for a world where our data is exposed at a glance? @CaineArdayfio and I offer an answer to protect yourself here:
tinyurl.com/meet-ixray
— AnhPhu Nguyen (@AnhPhuNguyen1)
4:10 PM • Sep 30, 2024
Career Development
FREE Beginner EC-Council Courses
EC-Council are offering a number of free online cyber security courses. These courses include:
A Practical Introduction to Cloud Computing
Cybersecurity for Businesses – The Fundamental Edition
Introduction to Dark Web, Anonymity, and Cryptocurrency
and more!
Below you will find a link to the various online training as well as other free resources shared on my TikTok channel: