Common Vulnerabilities and Exposures (CVE) stories - Page 5
Critical needrestart vulnerabilities found in Ubuntu Servers
Wed, 20th Nov 2024
#
malware
#
cybersecurity
#
ubuntu
The Qualys Threat Research Unit has identified five critical vulnerabilities in needrestart used by Ubuntu Servers, risking unauthorized root access for users.
Tenable discloses vulnerability in Open Policy Agent OPA
Tue, 19th Nov 2024
#
iam
#
cybersecurity
#
software development
Tenable has disclosed a medium-severity SMB force-authentication vulnerability in all Windows versions of Open Policy Agent before version 0.68.0.
Cybersecurity advisory highlights top vulnerabilities of 2023
Tue, 19th Nov 2024
#
advanced persistent threat protection
#
risk & compliance
#
cybersecurity
Leading cybersecurity agencies have issued an advisory identifying frequently exploited vulnerabilities in 2023, urging enhanced security measures across sectors.
November Patch Tuesday reveals 90 vulnerabilities
Wed, 13th Nov 2024
#
cybersecurity
#
microsoft
#
internet explorer
Microsoft is rolling out patches for 90 vulnerabilities this November, including critical remote code execution flaws and several in-the-wild exploits.
Lazarus APT group targets crypto investors with AI tactics
Wed, 30th Oct 2024
#
crypto
#
blockchain
#
advanced persistent threat protection
Kaspersky has uncovered a sophisticated campaign by the Lazarus group targeting cryptocurrency investors, employing social engineering and zero-day exploits.
Tenable reveals vulnerability in Open Policy Agent for Windows
Tue, 29th Oct 2024
#
risk & compliance
#
cybersecurity
#
software development
Tenable has revealed a medium-severity vulnerability in Open Policy Agent for Windows that exposes user credentials, urging updates to version 0.68.0.
Memory safety vulnerabilities continue to plague ICS: Here's what to do about it
Thu, 24th Oct 2024
#
cybersecurity
#
nsa
#
opinion
Memory safety vulnerabilities are surging in industrial control systems, with over 3,000 reported in 2022, prompting urgent calls for enhanced security measures.
Cybersecurity warning issued over Iranian infrastructure threats
Thu, 24th Oct 2024
#
mfa
#
phishing
#
email security
A coalition of global agencies warns of Iranian cyber threats targeting critical infrastructure, highlighting emerging tactics and unresolved vulnerabilities.
How to implement exposure management in complex cyber-physical systems
Wed, 23rd Oct 2024
#
digital transformation
#
advanced persistent threat protection
#
physical security
As digital transformation heightens cyber-physical connectivity, organisations must adopt effective exposure management strategies to safeguard critical systems.
October Patch Tuesday has revealed 118 Vulnerabilities
Wed, 9th Oct 2024
#
open source
#
cybersecurity
#
microsoft
Microsoft has addressed 118 vulnerabilities in its October 2024 Patch Tuesday, including five with evidence of exploitation, amid ongoing security concerns.
Tenable report reveals widespread cloud security risks
Wed, 9th Oct 2024
#
virtualisation
#
hyperscale
#
cloud security
Tenable's 2024 Cloud Risk Report reveals 74% of global organisations have publicly exposed storage assets, heightening their ransomware risk.
Microsoft, Adobe issue critical patches to fix Zero-day flaws
Fri, 13th Sep 2024
#
martech
#
microsoft
#
adobe
Microsoft and Adobe have rolled out urgent security updates, tackling critical Zero-day vulnerabilities in Windows and key applications this month.
September Patch Tuesday has revealed 79 vulnerabilities
Wed, 11th Sep 2024
#
cybersecurity
#
microsoft
#
sharepoint
Microsoft's September Patch Tuesday addresses 79 vulnerabilities, including four critical RCEs and bugs with in-the-wild exploitation. Surprisingly, no browser patches yet.
Forescout's 2024 H1 Threat Review reveals surge in cyber threats
Fri, 6th Sep 2024
#
virtualisation
#
firewalls
#
network infrastructure
Report reveals a 43% surge in vulnerabilities and a 6% rise in ransomware attacks in H1 2024, with VPNs and network infrastructure under significant threat.
GoWit launches self-service retail media setup in 15 minutes
Thu, 29th Aug 2024
#
linkedin
#
funding
#
capital raising
GoWit unveils a self-service solution, enabling retailers to set up retail media advertising in just 15 minutes at no cost, after securing USD $1.3 million.
It's more than culture: Addressing the root cause of common security frustrations
Thu, 22nd Aug 2024
#
uc
#
application security
#
devsecops
GitLab's annual survey exposes deep-rooted security frustrations, from prioritisation issues to excessive false positives. Here's how to tackle the core problems.
Fastly report shows 91% of cyberattacks target multiple firms
Thu, 22nd Aug 2024
#
threat intelligence
#
cyber attacks
#
fastly
Fastly's latest report reveals a staggering 91% of cyberattacks targeted multiple customers this quarter, up from 69% in 2023, indicating a rise in mass scanning techniques.
FBI's Qakbot takedown reshapes 2024 malware loader landscape
Fri, 16th Aug 2024
#
malware
#
cybersecurity
#
fbi
The dismantling of Qakbot malware by the FBI has reshaped the malware loader landscape, with SocGholish now leading and security tactics evolving rapidly.
Microsoft tackles 88 vulnerabilities in latest Patch Tuesday update
Thu, 15th Aug 2024
#
martech
#
advanced persistent threat protection
#
agentic ai
Microsoft patched 88 security flaws in October's Patch Tuesday, including seven critical and ten zero-day vulnerabilities.
August Patch Tuesday revealed 88 vulnerabilities
Thu, 15th Aug 2024
#
cybersecurity
#
microsoft
#
opinion
Microsoft's August Patch Tuesday fixes 88 vulnerabilities, with evidence of in-the-wild exploitation and public disclosure for 10 of them.