Security Bulletin

6 Sep 2024
Biztonsági szemle
Building a New Service Offering around Cisco ThousandEyes: A Guide for Managed Service Providers
Discover how MSPs can leverage Cisco ThousandEyes to create tiered services, enhance DXA, and deliver proactive solutions for optimal network performance and customer satisfaction. Transform your offerings and drive success.

6 Sep 2024
Biztonsági szemle
FreeBSD Gets €686,400 to Boost Security Features
The funds from Germany's Sovereign Tech Fund will be used to integrate zero-trust capabilities, tools for software bill of materials, and other security features.

6 Sep 2024
Biztonsági szemle
Using Transparency & Sharing to Defend Critical Infrastructure
No organization can single-handedly defend against sophisticated attacks. Governments and private sector entities need to collaborate, share information, and develop defenses against cyber threats

6 Sep 2024
Biztonsági szemle
New cyber hiring sprint aims to address workforce gap
Ongoing gaps in the U.S. cybersecurity workforce that have left nearly half a million jobs unfilled have prompted the Office of the National Cyber Director to introduce the new Service for America cyber hiring sprint that would link jobseekers to...

6 Sep 2024
Biztonsági szemle
Zero-trust adoption almost completed by most federal agencies
Zero-trust implementation has been 87% completed across federal agencies on average ahead of the September 30 deadline.

6 Sep 2024
Biztonsági szemle
Critical Apache OFBiz flaw patched
Such a vulnerability evades fixes issued for previous OFBiz bugs, tracked as CVE-2024-38856, CVE-2024-36104, and CVE-2024-32113, all of which have resulted from a fragmentation issue within the controller-view map that could allow unauthenticated...

6 Sep 2024
Biztonsági szemle
Widespread WordPress site takeovers likely with critical LiteSpeed Cache bug
Exploitation of the flaw, which stems from LiteSpeed Cache's debug logging functionality, could be conducted by attackers with '/wp-content/debug.log' file access to exfiltrate users' session cookies, spoof admin users, and takeover websites.

6 Sep 2024
Biztonsági szemle
Misconfigured Elasticsearch database exposes 762K Chinese car owners
Individuals' full names, birthdates, phone numbers, ID numbers, email addresses, home addresses, vehicle identification numbers, car brands and models, engine numbers, and vehicle colors were leaked by the unsecured Elasticsearch instance.

6 Sep 2024
Biztonsági szemle
Multiple Cisco product vulnerabilities addressed
Threat actors could leverage CVE-2024-20439 via static credentials to facilitate the compromise of targeted systems with administrative privileges while intrusions involving CVE-2024-20440 could enable the acquisition of log files with credentials...

6 Sep 2024
Biztonsági szemle
Penpie loses over $27M from crypto heist
Immediate withdrawal and deposit takedowns, as well as notifications to the FBI's Internet Crime Complaint Center and the Singaporean police have been conducted by Penpie following the theft on Tuesday.

6 Sep 2024
Biztonsági szemle
Chinese APT sets sights on Middle East government orgs
As part of its latest attacks discovered in June, Tropic Tropper exploited several known Microsoft Exchange Server and Adobe ColdFusion vulnerabilities to distribute an updated China Chopper web shell on a server hosting the Umbraco open-source...

6 Sep 2024
Biztonsági szemle
Novel KTLVdoor malware leveraged by Earth Lusca operation
More than 50 Alibaba-hosted command-and-control servers have been leveraged to facilitate the distribution of the backdoor, which impersonates the Java, bash, sshd, SQLite, and edr-agent utilities.
Pagination
- Previous page ‹‹
- Page 529
- Next page ››