Week in review: vBulletin 0-day, open source projects under attack, critical security updates galore

Here’s an overview of some of last week’s most interesting news and articles: Intel, SAP, and Citrix release critical security updates August 2020 Patch Tuesday was expectedly observed by Microsoft and Adobe, but many other software firms d… Continue reading Week in review: vBulletin 0-day, open source projects under attack, critical security updates galore

Week in review: Free security tools, TeamViewer flaw, Patch Tuesday forecast

Here’s an overview of some of last week’s most interesting news and articles: August 2020 Patch Tuesday forecast: Planning for the end? There doesn’t seem to be an end in sight to the COVID-19 crisis, but there are some important end-of-lif… Continue reading Week in review: Free security tools, TeamViewer flaw, Patch Tuesday forecast

Week in review: BootHole, RCEs in industrial VPNs, the cybersecurity profession crisis

Here’s an overview of some of last week’s most interesting news, articles, interviews and reviews: Attackers are exploiting Cisco ASA/FTD flaw in search for sensitive data An unauthenticated file read vulnerability (CVE-2020-3452) affecting… Continue reading Week in review: BootHole, RCEs in industrial VPNs, the cybersecurity profession crisis

Week in review: PoC for wormable SharePoint RCE released, how to select a DMARC solution

Here’s an overview of some of last week’s most interesting news and articles: Attackers exploit Twilio’s misconfigured cloud storage, inject malicious code into SDK Twilio has confirmed that, for 8 or so hours on July 19, a malicious versio… Continue reading Week in review: PoC for wormable SharePoint RCE released, how to select a DMARC solution

Week in review: Counterfeit Cisco switches, hijacked Twitter accounts, vulnerable SAP applications

Here’s an overview of some of last week’s most interesting news and articles: New wave of attacks aiming to rope home routers into IoT botnets A Trend Micro research is warning consumers of a major new wave of attacks attempting to compromi… Continue reading Week in review: Counterfeit Cisco switches, hijacked Twitter accounts, vulnerable SAP applications

Week in review: MongoDB attacks, hackers hitting F5 BIG-IP, Citrix devices, Patch Tuesday forecast

Here’s an overview of some of last week’s most interesting news, articles and reviews: Attackers are probing Citrix controllers and gateways through recently patched flaws SANS ISC’s Dr. Johannes Ullrich spotted attackers attempting to expl… Continue reading Week in review: MongoDB attacks, hackers hitting F5 BIG-IP, Citrix devices, Patch Tuesday forecast

Week in review: MacOS ransomware, attackers bypassing WAFs, how to select a SIEM solution

Here’s an overview of some of last week’s most interesting news, articles and reviews: Critical flaw opens Palo Alto Networks firewalls and VPN appliances to attack, patch ASAP! Palo Alto Networks has patched a critical and easily exploitab… Continue reading Week in review: MacOS ransomware, attackers bypassing WAFs, how to select a SIEM solution

Week in review: The economics of security research, SOC teams battle with burnout

Here’s an overview of some of last week’s most interesting news and articles: SOC team members battle with burnout, overload and chaos While some organizations have increased security operations center (SOC) funding, the overall gains have … Continue reading Week in review: The economics of security research, SOC teams battle with burnout

Week in review: DDoS attack trends, WannaCry lessons, new issue of (IN)SECURE

Here’s an overview of some of last week’s most interesting news and articles: Zero-day flaws in widespread TCP/IP library open millions of IoT devices to remote attack 19 vulnerabilities – some of them allowing remote code execution – have … Continue reading Week in review: DDoS attack trends, WannaCry lessons, new issue of (IN)SECURE

Week in review: SMBGhost exploit, OneDrive security, PCI compliance misconceptions

Here’s an overview of some of last week’s most interesting news, articles and podcasts: Organizations are creating the perfect storm by not implementing security basics European organizations have a false sense of security when it comes to … Continue reading Week in review: SMBGhost exploit, OneDrive security, PCI compliance misconceptions