Tag: Cybersecurity Threat Advisory

Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Active exploitation of Microsoft vulnerabilities

Cybersecurity Threat Advisory: Active exploitation of Microsoft vulnerabilities

This Cybersecurity Threat Advisory highlights a new attack technique exploiting vulnerabilities in Microsoft Management Console (MMC). By creating malicious management saved console (MSC) files that appear legitimate, attackers can bypass traditional security measures and exploit the targeted MMC. Barracuda MSP...

/ June 26, 2024
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: VMware privilege escalation vulnerabilities

Cybersecurity Threat Advisory: VMware privilege escalation vulnerabilities

VMware has released patches to address critical vulnerabilities impacting Cloud Foundation, vCenter Server, and vSphere ESXi, which could be exploited to achieve privilege escalation and remote code execution. The flaws, identified as CVE-2024-37079, CVE-2024-37080, and CVE-2024-37081, have high CVSS scores....

/ June 21, 2024
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Critical ASUS vulnerability

Cybersecurity Threat Advisory: Critical ASUS vulnerability

ASUS released a product security advisory urging customers to update their firmware to address a critical authentication bypass vulnerability impacting multiple of its router models. Review this Cybersecurity Threat Advisory to learn which router models are impacted and how to...

/ June 21, 2024
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Atlassian Confluence RCE vulnerability

Cybersecurity Threat Advisory: Atlassian Confluence RCE vulnerability

A new high-severity remote code execution (RCE) vulnerability known as CVE-2024-21683 has been discovered in Atlassian’s Confluence Data Center and Server. This vulnerability permits an attacker with an account on the service to gain server control. Review this Cybersecurity Threat...

/ June 18, 2024
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: New Microsoft Outlook client vulnerability

Cybersecurity Threat Advisory: New Microsoft Outlook client vulnerability

A recent Microsoft Outlook client zero-click remote code execution (RCE) vulnerability, CVE-2024-30103, has a CVSS score of 8.8. Review this Cybersecurity Threat Advisory to limit the impact this vulnerability may have on your organization. What is the threat? CVE-2024-30103 allows...

/ June 14, 2024
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Critical PHP vulnerability enables remote code execution

Cybersecurity Threat Advisory: Critical PHP vulnerability enables remote code execution

A vulnerability known as CVE-2024-4577 is exploiting Apache’s handling of Unicode to ASCII conversion when using Hypertext Preprocessor (PHP) Common Gateway Interface (CGI) mode. This enables the execution of malicious code within the PHP executable. This presents a significant risk...

/ June 13, 2024
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: New typosquatting attack targeting Google users

Cybersecurity Threat Advisory: New typosquatting attack targeting Google users

Google users have been targeted with a typosquatted attack when searching Advanced IP Scanner. When searching for this free network scanner for Windows, users are served with an exploited version of Advanced IP Scanner that injects a CobaltStrike Beacon into...

/ June 13, 2024
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Critical VBEM vulnerability

Cybersecurity Threat Advisory: Critical VBEM vulnerability

A Veeam Backup Enterprise Manager (VBEM) security vulnerability, CVE-2024-29849, can pose serious risks for organizations. Users are advised to update their VBEM to the latest version immediately. Read this Cybersecurity Threat Advisory to learn about which actions to take to...

/ June 12, 2024
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: RedTail exploits PAN-OS vulnerability

Cybersecurity Threat Advisory: RedTail exploits PAN-OS vulnerability

Palo Alto Networks has recently disclosed a critical zero-day vulnerability, CVE-2024-3400, within its PAN-OS operating system. The flaw, found in the GlobalProtect Gateway, is currently under active exploitation. Additionally, the threat actors behind RedTail cryptocurrency mining malware have added this...

/ June 6, 2024
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: New ShrinkLocker ransomware strains

Cybersecurity Threat Advisory: New ShrinkLocker ransomware strains

ShrinkLocker is a recent ransomware strain that leverages a legitimate Windows encryption feature, BitLocker, to lock victims out of their devices. It shrinks the partition, increasing the impact of the attack. Review this Cybersecurity Threat Advisory in detail to prevent...

/ June 5, 2024