Unpatched Fortinet FortiWeb vulnerability allows remote OS command injection

An unpatched vulnerability in the management interface for FortiWeb, Fortinet’s web application firewall, could allow a remote, authenticated attacker to execute arbitrary commands on the system, Rapid7 researcher William Vu has discovered. Tod B… Continue reading Unpatched Fortinet FortiWeb vulnerability allows remote OS command injection

Tigera addresses growing demand for security of containers, Kubernetes, and microservices

Tigera launched a worldwide partner program to meet demand from the growing adoption of containers, Kubernetes, and microservices, which has created security and observability challenges for enterprises. Tigera’s Calico Cloud and Calico Enterprise prov… Continue reading Tigera addresses growing demand for security of containers, Kubernetes, and microservices

Fortinet plugs RCE hole in FortiManager and FortiAnalyzer (CVE-2021-32589)

A vulnerability (CVE-2021-32589) in FortiManager and FortiAnalyzer could be exploited by remote, non-authenticated attackers to execute unauthorized / malicious code as root, Fortinet has warned. The vulnerability affects the solutions’ fgfmsd da… Continue reading Fortinet plugs RCE hole in FortiManager and FortiAnalyzer (CVE-2021-32589)

Netskope raises $300M to expand both its platform and go-to market

Netskope announced that the company has closed a new $300 million investment round led by existing investor ICONIQ Growth. Also participating in this latest funding round were all other major existing Netskope investors, including Lightspeed Venture Pa… Continue reading Netskope raises $300M to expand both its platform and go-to market

VPN attacks up nearly 2000% as companies embrace a hybrid workplace

Nuspire released a report which outlines new cybercriminal activity and tactics, techniques and procedures (TTPs) with additional insight from Recorded Future. “As companies return to a hybrid workplace, it’s crucial that they are aware of the evolving… Continue reading VPN attacks up nearly 2000% as companies embrace a hybrid workplace

Toby Buschini joins Ermetic as VP of worldwide sales

Ermetic announced the appointment of Toby Buschini as vice president of worldwide sales. He will oversee a major global expansion of Ermetic’s sales team and open new customer support offices in Boston and the California Bay Area. Toby has 25 years of … Continue reading Toby Buschini joins Ermetic as VP of worldwide sales

Ignition partners with Siemplify to bring SOAR technology to MSSPs across the UK

Ignition Technology announced a partnership with Siemplify as its exclusive distributor to bring the leading independent provider of security orchestration, automation and response (SOAR) technology to a growing MSSP community across the UK. Siemplify … Continue reading Ignition partners with Siemplify to bring SOAR technology to MSSPs across the UK

Virsec expands executive team to further drive business acceleration

Virsec reported significant momentum in the first half of 2021 with solid revenue growth, strategic customer validation and testing, and prominent industry acceptance of its non-traditional approach to reducing cyber threats. To further drive business … Continue reading Virsec expands executive team to further drive business acceleration

Unpatched vulnerable VPN servers hit by Cring ransomware

By Deeba Ahmed
According to Kaspersky’s researchers, Cring ransomware operators are targeting vulnerable Fortinet VPN devices/servers.
This is a post from HackRead.com Read the original post: Unpatched vulnerable VPN servers hit by Cring ransomware
Continue reading Unpatched vulnerable VPN servers hit by Cring ransomware