Security Bulletin
Pinned
28 Nov 2024
Biztonsági szemle
Riasztás állami szervezetek megszemélyesítésével történő adathalász kísérletekről
Tisztelt Ügyfelünk! A Nemzetbiztonsági Szakszolgálat Nemzeti Kibervédelmi Intézet (NBSZ NKI) riasztást ad ki állami szervezetek nevével való visszaéléssel elkövetett adathalász üzenetekről. A riasztás megjelenésének idején a Nemzeti...
29 Jan 2025
Biztonsági szemle
Minutes are miles: Why automatic rollbacks are too slow to protect you
When it comes to cyber threats, protection is better than response.
29 Jan 2025
Biztonsági szemle
The CISO Role Elevates, Boosts, Rises, and Evolves - BSW #380
29 Jan 2025
Biztonsági szemle
Researchers Uncover Lazarus Group Admin Layer for C2 Servers
The threat actor is using a sophisticated network of VPNs and proxies to centrally manage command-and-control servers from Pyongyang.
29 Jan 2025
Biztonsági szemle
Unpatched Zyxel CPE Zero-Day Pummeled by Cyberattackers
VulnCheck initially disclosed the critical command-injection vulnerability (CVE-2024-40891) six months ago, but Zyxel has yet to mention its existence or offer users a patch to mitigate threats.
29 Jan 2025
Biztonsági szemle
Mirai Variant 'Aquabot' Exploits Mitel Device Flaws
Yet another spinoff of the infamous DDoS botnet is exploiting a known vulnerability in active attacks, while its threat actors are promoting it on Telegram for other attackers to use as well, in a DDoS-as-a-service model.
29 Jan 2025
Biztonsági szemle
US indicts five in North Korean IT worker scheme
The accused include North Korean citizens Jin Sung-Il and Pak Jin-Song, Mexican national Pedro Ernesto Alonso De Los Reyes, and US citizens Erick Ntekereze Prince and Emanuel Ashtor.
29 Jan 2025
Biztonsági szemle
US appeals court overturns lenient sentence for BreachForums founder
The US Court of Appeals has vacated the original sentence of Conor Brian Fitzpatrick, also known as Pompompurin, who is the founder of the BreachForums cybercrime marketplace.
29 Jan 2025
Biztonsági szemle
Microsoft urges updates to outdated Exchange servers
"A new certificate has already been deployed in OCS, and any server that is updated to any Exchange Server Cumulative Update or Security Update newer than March 2023 will continue to be able to check for new EEMS mitigations," the Exchange Team said.
29 Jan 2025
Biztonsági szemle
Patch coming for reported firmware bugs in Palo Alto firewalls
Eclypsium, the enterprise firmware and hardware security firm that discovered the flaws, analyzed three firewall models: PA-3260, PA-1410, and PA-415, and reported that all were affected by the BootHole vulnerability, a GRUB2 bootloader flaw that...
29 Jan 2025
Biztonsági szemle
AMD acknowledges microcode vulnerability
The issue was described as a microcode signature verification vulnerability and could potentially allow unauthorized microcode to bypass verification mechanisms and be loaded into affected CPUs.
29 Jan 2025
Biztonsági szemle
Barracuda launches account takeover protection capabilities
The tool's latest features focus on proactive prevention of account compromise and enhanced threat response capabilities, as well ways to make these capabilities available to a broader range of customers.
Pagination
- Page 1
- Next page ››