Juniper Networks patches series of critical vulnerabilities
Juniper Networks patched a large number of critical vulnerabilities in various networking and controller solutions.
The most important patches apply to Junos Space, Contrail Networking and NorthStar Controller solutions. These have been labelled as critical by US security supervisor CISA. Some ... Read more
Microsoft advises Mac users to patch
An exploit in macOS could allow hackers to bypass sandbox securities and execute code. Microsoft urges users to patch as soon as possible.
Microsoft researchers identified a flaw in macOS. The flaw allows hackers to bypass macOS' Sandbox App and execute code on targeted systems. According to Ap... Read more
CyberArk Secrets Hub streamlines AWS secret management
Security provider CyberArk unveiled a new security solution for AWS and several improvements to its current product line.
The new solution, CyberArk Secrets Hub, allows developers to access AWS secrets with a straightforward method using AWS Secrets Manager. Using existing procedures and infrast... Read more
Survey says endpoints are a growing security problem
A new survey on edge computing says remote working is leading to increased vulnerability.
A survey released this week says that nearly half of the endpoint devices corporations manage are at risk. The endpoints in question are unmonitored or outdated.
Endpoint management firm Adaptiva issued... Read more
New Spectre variant hits Intel and AMD processors
Older Intel and AMD processors are vulnerable to Rettbleed, a new Spectre variant. The vulnerability was discovered by a research team from the Technical University of Zurich. Meanwhile, the first security patches for Linux have been announced.
The Spectre variant was discovered by Swiss researc... Read more
Patch Tuesday brings 84 new Microsoft fixes
Microsoft's latest Patch Tuesday produced no less than 84 fixes, including four critical vulnerabilities and one that's actively abused in the wild.
One of the fixes tackles a vulnerability that's actively abused by cybercriminals (CVE-2022-22047). Attackers are exploiting a privilege vulnerabi... Read more
Microsoft Defender for IoT is generally available
Microsoft launches the first public release of Defender for IoT. The software secures IoT and OT devices like smart cameras and sensors.
The solution is agentless. Protection starts with an overview of all IoT and OT devices in an environment. Next, the solution points out misconfigurations and ... Read more
Ransomware groups develop search engines to pressure victims
Ransomware groups ALPHV/BlackCat, LockBit and Karakurt adopted a new way of extorting victims. The data of breached companies are searchable on leak websites.
Ransomware groups frequently implement new blackmailing methods. ALPHV/BlackCat, LockBit and Karakurt recently started allowing website ... Read more
Open-source security platform Paladin Cloud is now available
Paladin Cloud is now available. The platform recognizes and secures all data sources in a cloud environment, including repositories, API gateways and Kubernetes clusters.
Cloud security is challenging. APIs and integrations are used at scale, which can reduce visibility into individual systems. ... Read more
Microsoft faces criticism for reactivating VBA macros in Office
Microsoft's decision to unblock VBA macros in Office 365 has not been to everyone's liking. Security experts consider the move to be a big mistake.
Microsoft recently decided to enable Visual Basic Application (VBA) macros in Office 365 by default. VBA macros allow end users of Office 365 to add... Read more