CISA, FBI Urge Organizations to Eliminate XSS Vulnerabilities

CISA and the FBI have released an alert on XSS vulnerabilities, urging organizations to adopt a secure by design approach and eliminate them.
The post CISA, FBI Urge Organizations to Eliminate XSS Vulnerabilities appeared first on SecurityWeek.
Continue reading CISA, FBI Urge Organizations to Eliminate XSS Vulnerabilities

CISA confirms that SonicWall vulnerability is getting exploited (CVE-2024-40766)

The US Cybersecurity and Infrastructure Security Agency (CISA) has added CVE-2024-40766 – a recently fixed improper access control vulnerability affecting SonicWall’s firewalls – to its Known Exploited Vulnerabilities catalog, thus co… Continue reading CISA confirms that SonicWall vulnerability is getting exploited (CVE-2024-40766)

Exposed: Russian military Unit 29155 does digital sabotage, espionage

The US Department of Justice has named five Russian computer hackers as members of Unit 29155 – i.e., the 161st Specialist Training Center of the Russian General Staff Main Intelligence Directorate (GRU) – which they deem resposible for the… Continue reading Exposed: Russian military Unit 29155 does digital sabotage, espionage

White House publishes latest plan to protect a key component of the internet

The roadmap for enhancing internet routing security follows action from the FCC and others.

The post White House publishes latest plan to protect a key component of the internet appeared first on CyberScoop.

Continue reading White House publishes latest plan to protect a key component of the internet

Who would be the cyber pros in a second Trump term?

If elected again, the former president might draw both on returning officials and yet-untapped pockets of talent.

The post Who would be the cyber pros in a second Trump term? appeared first on CyberScoop.

Continue reading Who would be the cyber pros in a second Trump term?

Pioneer Kitten: Iranian hackers partnering with ransomware affiliates

A group of Iranian hackers – dubbed Pioneer Kitten by cybersecurity researchers – is straddling the line between state-contracted cyber espionage group and initial access provider (and partner in crime) for affiliates of several ransomware … Continue reading Pioneer Kitten: Iranian hackers partnering with ransomware affiliates