Tag: Cybersecurity Threat Advisory

Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Numerous IOT Cameras Hacked

Cybersecurity Threat Advisory: Numerous IOT Cameras Hacked

Threat Update Verkada Inc, an organization providing IOT security cameras to public and private organizations across the globe, has reportedly had its camera systems compromised. Attackers claim to have breached the organization and accessed both live and archived camera feeds...

/ March 18, 2021
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: F5 Big IP Vulnerability

Cybersecurity Threat Advisory: F5 Big IP Vulnerability

Threat Update Network provider, F5 Networks, a leading networking provider for businesses everywhere, has announced the discovery of multiple remote code execution vulnerabilities. There are four of these RCE vulnerabilities, which effect most BIG-IP and BIG-IQ software versions. Successful exploitation...

/ March 17, 2021
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Mobile Security Threats

Cybersecurity Threat Advisory: Mobile Security Threats

Threat Update Multiple potential mobile threats have emerged recently, with T-Mobile disclosing a data breach caused by SIM swapping attacks, and news surfacing of the Android “SHAREit” app allowing attackers to steal user information. These vulnerabilities could potentially allow for...

/ March 9, 2021
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: HAFNIUM Targeting Exchange Servers with Zero-day Exploits

Cybersecurity Threat Advisory: HAFNIUM Targeting Exchange Servers with Zero-day Exploits

Threat Update Microsoft has released several security updates due to targeted attacks against vulnerabilities found in Microsoft Exchange Server (versions 2013, 2016, and 2019). Though the attacks are said to have been limited, Microsoft is urging the immediate updating of...

/ March 3, 2021
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Critical VMware Vulnerabilities

Cybersecurity Threat Advisory: Critical VMware Vulnerabilities

Threat Update VMware has released an advisory detailing newly discovered vulnerabilities across multiple products, namely ESXI, vCenter Server and Cloud Foundation. The severity of these vulnerabilities varies but included among them is a remote code execution vulnerability that has received...

/ February 25, 2021
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Oldsmar, Florida Water Treatment Facility Compromised

Cybersecurity Threat Advisory: Oldsmar, Florida Water Treatment Facility Compromised

Threat Update A water treatment facility in Oldsmar, Florida had their SCADA systems breached by an unidentified hacker. The hacker attempted to modify chemical levels to effectively poison the local water supply. The hacker’s intrusion was swiftly detected and contained...

/ February 12, 2021
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Critical VMWare ESXi Vulnerabilities Exploited

Cybersecurity Threat Advisory: Critical VMWare ESXi Vulnerabilities Exploited

Threat Update There are two critical remote code execution vulnerabilities (CVE-2019-5544 and CVE-2020-3992) within VMWare ESXi which allow attackers to effectively gain control of a virtual machine (VM), deploy ransomware, and encrypt ESXi virtual disk drives. These vulnerabilities are reported...

/ February 5, 2021
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Apple iOS Zero-Day Vulnerabilities Exploited in Wild

Cybersecurity Threat Advisory: Apple iOS Zero-Day Vulnerabilities Exploited in Wild

Threat Update Apple has announced that they have learned of three zero-day vulnerabilities affecting their iOS operating system. One of the vulnerabilities (CVE-2021-1782) affects the system kernel, allowing for privilege escalation; while the other two (CVE-2021-1870, CVE-2021-1871) are present within...

/ February 3, 2021
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Threat Actors Abusing Windows RDP Servers

Cybersecurity Threat Advisory: Threat Actors Abusing Windows RDP Servers

Threat Update The RDP service for Windows devices operating on UDP port 3389 can currently be used in an amplified attack resulting in the potential DDoS of a target. A system which is either involved in or the target of...

/ February 1, 2021
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Updates on Global Intrusion Campaign

Cybersecurity Threat Advisory: Updates on Global Intrusion Campaign

Threat Update Government and private sector organizations are constantly releasing updates on all manner of topics relating to the SolarWinds Orion compromise. In this article, we have detailed recently released information related to the incident. Technical Detail & Additional Information...

/ January 29, 2021