Security Bulletin
23 Apr 2024
Biztonsági szemle
Teetering on the Edge: VPNs, Firewalls' Nonexistent Telemetry Lures APTs
State-sponsored groups are targeting critical vulnerabilities in virtual private network (VPN) gateways, firewall appliances, and other edge devices to make life difficult for incident responders, who rarely have visibility into the devices.
23 Apr 2024
Biztonsági szemle
Navigating the ethical frontiers of our digital ecosystem
Security pros must always remember that we are custodians of the digital realm and it’s our job to keep people safe.
23 Apr 2024
Biztonsági szemle
ISC Stormcast For Tuesday, April 23rd, 2024 https://isc.sans.edu/podcastdetail/8950, (Tue, Apr 23rd)
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
23 Apr 2024
Biztonsági szemle
Licensed to Bill? Nations Mandate Certification & Licensure of Cybersecurity Pros
Malaysia, Singapore, and Ghana are among the first countries to pass laws that require cybersecurity firms — and in some cases, individual consultants — to obtain licenses to do business, but concerns remain.
23 Apr 2024
Biztonsági szemle
New Cisco Defense Orchestrator (CDO) API
Cisco Defense Orchestrator (CDO) provides a powerful REST API to automate and simplify security management tasks. Learn how to get started, and about integrations with Ansible and Terraform.
22 Apr 2024
Biztonsági szemle
ToddyCat APT Is Stealing Data on 'Industrial Scale'
The threat actor is deploying multiple connections into victim environments to maintain persistence and steal data.
22 Apr 2024
Biztonsági szemle
Bogged down by SIEM data ingest fees? 3 strategies to keep costs in check
Solutions exist that let organizations adjust the volume of data being processed by their SIEM system.
22 Apr 2024
Biztonsági szemle
6.2K Palo Alto firewalls still at risk as exploits increase
Proof-of-concept exploits for CVE-2024-3400 are now publicly available.
22 Apr 2024
Biztonsági szemle
Nespresso Domain Serves Up Steamy Cup of Phish, No Cream or Sugar
An open direct vulnerability in the Nespresso Web domain lets attackers bypass detection as they attempt to steal victims' Microsoft credentials.
22 Apr 2024
Biztonsági szemle
MITRE research and prototyping network breached via Ivanti zero-days
Security pros say while the target was an unclassified network, the research it manages on emerging technologies could be of interest to adversaries.
22 Apr 2024
Biztonsági szemle
MITRE ATT&CKED: InfoSec's Most Trusted Name Falls to Ivanti Bugs
The irony is lost on few, as a nation-state threat actor used eight MITRE techniques to breach MITRE itself — including exploiting the Ivanti bugs that attackers have been swarming on for months.
22 Apr 2024
Biztonsági szemle
Zero Trust Takes Over: 63% of Orgs Implementing Globally
Though organizations are increasingly incorporating zero-trust strategies, for many, these strategies fail to address the entirety of an operation, according to Gartner.
Pagination
- Previous page ‹‹
- Page 884
- Next page ››