Biztonsági szemle

2024. szep. 6.
Biztonsági szemle
Using Transparency & Sharing to Defend Critical Infrastructure
No organization can single-handedly defend against sophisticated attacks. Governments and private sector entities need to collaborate, share information, and develop defenses against cyber threats

2024. szep. 6.
Biztonsági szemle
New cyber hiring sprint aims to address workforce gap
Ongoing gaps in the U.S. cybersecurity workforce that have left nearly half a million jobs unfilled have prompted the Office of the National Cyber Director to introduce the new Service for America cyber hiring sprint that would link jobseekers to...

2024. szep. 6.
Biztonsági szemle
Zero-trust adoption almost completed by most federal agencies
Zero-trust implementation has been 87% completed across federal agencies on average ahead of the September 30 deadline.

2024. szep. 6.
Biztonsági szemle
Critical Apache OFBiz flaw patched
Such a vulnerability evades fixes issued for previous OFBiz bugs, tracked as CVE-2024-38856, CVE-2024-36104, and CVE-2024-32113, all of which have resulted from a fragmentation issue within the controller-view map that could allow unauthenticated...

2024. szep. 6.
Biztonsági szemle
Widespread WordPress site takeovers likely with critical LiteSpeed Cache bug
Exploitation of the flaw, which stems from LiteSpeed Cache's debug logging functionality, could be conducted by attackers with '/wp-content/debug.log' file access to exfiltrate users' session cookies, spoof admin users, and takeover websites.

2024. szep. 6.
Biztonsági szemle
Misconfigured Elasticsearch database exposes 762K Chinese car owners
Individuals' full names, birthdates, phone numbers, ID numbers, email addresses, home addresses, vehicle identification numbers, car brands and models, engine numbers, and vehicle colors were leaked by the unsecured Elasticsearch instance.

2024. szep. 6.
Biztonsági szemle
Multiple Cisco product vulnerabilities addressed
Threat actors could leverage CVE-2024-20439 via static credentials to facilitate the compromise of targeted systems with administrative privileges while intrusions involving CVE-2024-20440 could enable the acquisition of log files with credentials...

2024. szep. 6.
Biztonsági szemle
Penpie loses over $27M from crypto heist
Immediate withdrawal and deposit takedowns, as well as notifications to the FBI's Internet Crime Complaint Center and the Singaporean police have been conducted by Penpie following the theft on Tuesday.

2024. szep. 6.
Biztonsági szemle
Chinese APT sets sights on Middle East government orgs
As part of its latest attacks discovered in June, Tropic Tropper exploited several known Microsoft Exchange Server and Adobe ColdFusion vulnerabilities to distribute an updated China Chopper web shell on a server hosting the Umbraco open-source...

2024. szep. 6.
Biztonsági szemle
Novel KTLVdoor malware leveraged by Earth Lusca operation
More than 50 Alibaba-hosted command-and-control servers have been leveraged to facilitate the distribution of the backdoor, which impersonates the Java, bash, sshd, SQLite, and edr-agent utilities.

2024. szep. 6.
Biztonsági szemle
US sanctions fail to deter Predator spyware utilization
Angola and the Democratic Republic of Congo, which is a new Intellexa client, may have leveraged new Predator infrastructure to enable spyware staging and exploitation, according to an analysis from Recorded Future's Insikt Group.

2024. szep. 6.
Biztonsági szemle
Okta releases how-to guide for tackling admin sprawl: Key takeaways
The relentless creep of administrative privileges threatens the security of every organization. Here’s how to keep the sprawl in check.
Oldalszámozás
- Előző oldal ‹‹
- 367. oldal
- Következő oldal ››