Common Vulnerabilities and Exposures (CVE) stories
Hackers increasingly target zero-day vulnerabilities and supply chain networks for maximum impact, according to a report by Ivanti.
Supply chain attacks on SAP software distribution process allow internal attackers to intervene undetected, says SecurityBridge. A patch has been released.
Ransomware had a monumental impact on organisations in 2021, responsible for approximately 38% of all breaches, and 31% of breaches in APAC.
SonicWall and Australia's ACSC are urging all businesses using SonicWall SMA 100 Series appliances to patch the devices as soon as possible.
WordPress vulnerabilities have more than doubled in 2021, with 77% of them being exploitable, according to Risk Based Security.
Ransom DDoS attacks increased by 29% YoY and 175% QoQ in the last quarter 2021, according to new research from Cloudfare.
Sophos has released details of a novel exploit that bypasses a patch for a critical vulnerability affecting the Microsoft Office file format.
Flaws in smartphone chip used in 37% of world's smartphones could enable eavesdropping or hiding malicious code, says Check Point Research.
Vulnerability in Cisco ASA and Cisco FTD firewalls discovered by Positive Technologies researcher, could lead to denial of service. Install updates.
Team82 and JFrog discover 14 vulnerabilities in the latest version of BusyBox, affecting OT and IoT devices running on Linux.
Microsoft Defender vulnerability poses significant threat, warns Virsec. With 55 vulnerabilities in total, it is deemed the most concerning by experts.
The COVID-19 pandemic has heightened risk for the construction industry, making software solutions crucial for reducing disputes.
ExtraHop has expanded decryption support for Microsoft authentication and application protocols, providing high fidelity detection of malicious activity.
BlackBerry has announced a new technology integration between Okta's Identity Cloud and BlackBerry Spark unified endpoint management.
Imperva launches free cloud data security assessment for Amazon RDS databases, allowing teams to quickly identify compliance issues.
Vulnerabilities in Wincor Cineo ATMs allow attackers to bypass encryption and make cash withdrawals, according to researchers.
CPR observed a concerning increase of various malware impacting New Zealanders, with 16 additional malware families tied at tenth place for the month.
Kaspersky uncovers zero-day exploit for Windows OS, used in attacks by IronHusky group. Patched by Microsoft on October 12.
The partnership will address the increasing complexity and growing cybersecurity threats among multi-tiered software supply chains.
Over 90% of malware arrived through encrypted connections in Q2 2021, highlighting the need for strong endpoint protection, says WatchGuard.