Security Bulletin
13 Aug 2024
Biztonsági szemle
CISA Adds Six Known Exploited Vulnerabilities to Catalog
CISA has added six new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. CVE-2024-38189 Microsoft Project Remote Code Execution Vulnerability CVE-2024-38178 Microsoft Windows Scripting Engine...
13 Aug 2024
Biztonsági szemle
Rockwell Automation ControlLogix, GuardLogix 5580, CompactLogix, Compact GuardLogix 5380
View CSAF 1. EXECUTIVE SUMMARY CVSS v4 8.7 ATTENTION: Exploitable remotely/low attack complexity Vendor: Rockwell Automation Equipment: ControlLogix, GuardLogix 5580, CompactLogix, Compact GuardLogix 5380 Vulnerability: Improper Input Validation 2...
13 Aug 2024
Biztonsági szemle
Microsoft Releases August 2024 Security Updates
Microsoft released security updates to address vulnerabilities in multiple products. A cyber threat actor could exploit some of these vulnerabilities to take control of an affected system. CISA encourages users and administrators to review the...
13 Aug 2024
Biztonsági szemle
Ivanti Releases Security Updates for Avalanche, Neurons for ITSM, and Virtual Traffic Manager
Ivanti released security updates to address multiple vulnerabilities in Ivanti Avalanche, Neurons for ITSM, and Virtual Traffic Manager (vTM). A cyber threat actor could exploit some of these vulnerabilities to take control of an affected system...

13 Aug 2024
Biztonsági szemle
Here’s why it's important to take CISA’s ‘Secure by Design Pledge’ seriously
There’s a reason more than half the goals in CISA’s pledge focus on vulnerability management.

13 Aug 2024
Biztonsági szemle
ISC Stormcast For Tuesday, August 13th, 2024 https://isc.sans.edu/podcastdetail/9094, (Tue, Aug 13th)
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.

12 Aug 2024
Biztonsági szemle
Google deactivates AdSense for Russian websites
Google has cut off business ties with Russian websites by deactivating AdSense accounts effective in August.

12 Aug 2024
Biztonsági szemle
CrowdStrike Tries to Patch Things Up With Cybersecurity Industry
CrowdStrike's president and CEO were both at Black Hat and DEF CON to face direct questions from customers and cybersecurity professionals.

12 Aug 2024
Biztonsági szemle
FreeBSD releases new patch for regreSSHion-related RCE flaw
The OpenSSH vulnerability in the operating system could enable remote code execution with root privileges.

12 Aug 2024
Biztonsági szemle
UN Approves Cybercrime Treaty Despite Major Tech, Privacy Concerns
The treaty would allow any country to request technology firms to aid in cybercrime investigations and preserve data about their users — potentially imperiling penetration testers and security researchers, among others.

12 Aug 2024
Biztonsági szemle
AMD Issues Updates for Silicon-Level 'SinkClose' Processor Flaw
The vulnerability has been around for nearly 20 years and gives sophisticated attackers a way to bury virtually undetectable bootkits on devices with EPYC and Ryzen microprocessors.
Pagination
- Previous page ‹‹
- Page 522
- Next page ››