Security Bulletin

13 Sep 2024
Biztonsági szemle
Oracle WebLogic servers subjected to novel Hadooken malware attacks
After achieving initial server access via weak passwords, threat actors proceeded to launch a pair of scripts to retrieve the Hadooken malware, which features not only a cryptocurrency miner but also the Tsunami distributed denial-of-service botnet.

13 Sep 2024
Biztonsági szemle
Fortinet breach confirmed after massive leak
Major cybersecurity firm Fortinet has disclosed having information from fewer than 0.3% of its customers compromised following a cyberattack against its Microsoft Azure SharePoint server by the threat actor Fortibitch, which claimed to have stolen...

13 Sep 2024
Biztonsági szemle
Infinite perimeter: How modern consolidated security protects the cloud
A consolidated security platform that bundles together distributed networking and cloud-native security tools can cut costs and speed implementation as you modernize your systems.
13 Sep 2024
Biztonsági szemle
CISA Releases Analysis of FY23 Risk and Vulnerability Assessments
CISA has released an analysis and infographic detailing the findings from the 143 Risk and Vulnerability Assessments (RVAs) conducted across multiple critical infrastructure sectors in fiscal year 2023 (FY23). The analysis details a sample attack...
13 Sep 2024
Biztonsági szemle
Ivanti Releases Security Update for Cloud Services Appliance
Ivanti has released a security update addressing an OS command injection vulnerability (CVE-2024-8190) affecting Ivanti Cloud Services Appliance (CSA) 4.6 (all versions before patch 519). A cyber threat actor could exploit this vulnerability to take...
13 Sep 2024
Biztonsági szemle
CISA Adds One Known Exploited Vulnerability to Catalog
CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. CVE-2024-8190 Ivanti Cloud Services Appliance OS Command Injection Vulnerability These types of vulnerabilities are...

13 Sep 2024
Biztonsági szemle
Five ways to prepare for the post-quantum computing era
The quantum computing era will arrive in a few short years – now’s the time to plan for it.

13 Sep 2024
Biztonsági szemle
Sajtószemle – 2024. 37. hét
A 2024. 37. hetére vonatkozó hírválogatás, amely az NBSZ NKI által 2024.09.06. és 2024.09.12. között kezelt incidensek statisztikai adatait is tartalmazza.

13 Sep 2024
Biztonsági szemle
ISC Stormcast For Friday, September 13th, 2024 https://isc.sans.edu/podcastdetail/9136, (Fri, Sep 13th)
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.

13 Sep 2024
Biztonsági szemle
Microsoft VS Code Undermined in Asian Spy Attack
A technique to abuse Microsoft's built-in source code editor has finally made it into the wild, thanks to China's Mustang Panda APT.

13 Sep 2024
Biztonsági szemle
Stability concerns holding back patching practices
The stability cost of patching a bug can prevent many developers from remedying a known flaw in their own software.

13 Sep 2024
Biztonsági szemle
Old WHOIS domain could have issued countless fraudulent TLS/SSL certificates
Researchers bought an expired WHOIS server domain for $20 and quickly received millions of WHOIS queries.
Pagination
- Previous page ‹‹
- Page 474
- Next page ››