Organizations have been warned by the Cybersecurity and Infrastructure Security Agency regarding ongoing intrusions targeting SolarWinds Web Help Desk instances vulnerable to the critical Java deserialization flaw, tracked as CVE-2024-28986.
All Microsoft admin portals subjected to mandatory MFA
While admins could defer MFA enforcement until April 2025 as long as they request to do so between Aug. 15 and Oct. 15, Microsoft warned that such postponement would open admin portals to increased cybersecurity risks.