Tag: vulnerability

Here you will find all the articles with the tag: vulnerability.

Researchers warn of critical vulnerability in Fortinet firewalls

Researchers warn of critical vulnerability in Fortinet firewalls

Security researchers warn that hundreds of thousands of Fortinet firewalls are vulnerable to cyber attacks. The firewalls have not yet been patched after a critical vulnerability was discovered in June. According to Bishop Fox, 490,000 affected devices are open to the Internet, some 69% of which... Read more

date10 months ago
MITRE: access management vulnerabilities pose increasing threat

MITRE: access management vulnerabilities pose increasing threat

Memory-related bugs are still the most dangerous software vulnerabilities, MITRE concludes. The annual top 25 also shows that in the year 2023, we must increasingly watch out for bugs relating to authentication and authorization steps. The top three remain unchanged in MITRE's CWE Top 25 Most Da... Read more

date10 months ago
Research shows Millions of GitHub repos vulnerable to RepoJacking

Research shows Millions of GitHub repos vulnerable to RepoJacking

A vulnerability in GitHub repos allows attackers to deploy supply chain attacks that could impact a large number of users, according to researchers. New research by Aqua Security shows that 9 million of GitHub repositories are potentially vulnerable to an attack dubbed "RepoJacking". The researc... Read more

date10 months ago
VMware warns of exploited vRealize vulnerability

VMware warns of exploited vRealize vulnerability

VMware has confirmed that threat actors have exploited a vRealize vulnerability. CVE-2023-20887 had been discovered "in the wild" by cybersecurity firm GreyNoise. It had brought this out via a blog post last week. VMware's vRealize Suite is a software platform that helps IT admins set up hybrid ... Read more

date10 months ago
Mandiant: ‘China deployed Barracuda vulnerability as spy tool’

Mandiant: ‘China deployed Barracuda vulnerability as spy tool’

According to Mandiant, Chinese state-sponsored hackers exploited the vulnerability in Barracuda ESG devices. The hackers created victims in at least 16 countries and a high number of government agencies were affected. Mandiant was put in charge of investigating vulnerability CVE-2023-2868. Firs... Read more

date11 months ago
Critical vulnerability in file transfer service MOVEit

Critical vulnerability in file transfer service MOVEit

A vulnerability in Progress' managed file transfer service MOVEit is currently being actively exploited. U.S. cybersecurity regulator CISA is calling for patching as soon as possible. MOVEit is specifically designed to provide compliant file-sharing with sensitive data. To do this, the service c... Read more

date11 months ago
Barracuda leaves Email Security Gateway undiscovered for months

Barracuda leaves Email Security Gateway undiscovered for months

Barracuda Networks recently discovered a vulnerability in its Email Security Gateway. The vulnerability has been open for the last eight months without a patch being released, according to its own research. Barracuda's Email Security Gateway (ESG) has not been as secure as it should have been fo... Read more

date11 months ago
Rezilion helps customers be less vulnerable through Smart Fix

Rezilion helps customers be less vulnerable through Smart Fix

The Smart Fix tool for the Rezilion platform helps companies more easily follow the right strategy for understanding and fixing vulnerabilities in software components. The tool also helps make this happen completely automatically. Rezilion is a startup in the field of automation tooling for DevS... Read more

date11 months ago
1 5 6 7 8 9 18