Attackers are leveraging Cisco Smart Licensing Utility static admin credentials (CVE-2024-20439)

CVE-2024-20439, a static credential vulnerability in the Cisco Smart Licensing Utility, is being exploited by attackers in the wild, CISA has confirmed on Monday by adding the flaw to its Known Exploited Vulnerabilities catalog. Cisco has followed up w… Continue reading Attackers are leveraging Cisco Smart Licensing Utility static admin credentials (CVE-2024-20439)

Independent tests show why orgs should use third-party cloud security services

AWS, Microsoft Azure and Google Cloud Platform each scored 0% security effectiveness in CyberRatings.org’s evaluation of cloud network firewall vendors’ ability to prevent exploits and evasions.

The post Independent tests show why orgs should use third-party cloud security services appeared first on CyberScoop.

Continue reading Independent tests show why orgs should use third-party cloud security services

Identity lapses ensnared organizations at scale in 2024

Cisco Talos observed identity-based attacks in 60% of the incidents it responded to last year.

The post Identity lapses ensnared organizations at scale in 2024 appeared first on CyberScoop.

Continue reading Identity lapses ensnared organizations at scale in 2024

Will Cisco’s Free Tech Training for 1.5M People Help Close EU’s Skills Gap?

Cisco’s training through its Networking Academy will help “build a resilient and skilled workforce ready to meet Europe’s digital transformation and AI objectives.” Continue reading Will Cisco’s Free Tech Training for 1.5M People Help Close EU’s Skills Gap?

Cisco Details ‘Salt Typhoon’ Network Hopping, Credential Theft Tactics

Cisco Talos observed Chinese hackers pivoting from a compromised device operated by one telecom to target a device in another telecom.
The post Cisco Details ‘Salt Typhoon’ Network Hopping, Credential Theft Tactics appeared first on SecurityWeek.
Continue reading Cisco Details ‘Salt Typhoon’ Network Hopping, Credential Theft Tactics