Author: DEFENDEDGE
-
Ransomware Risk in Unpatched, EOL SonicWall SRA and SMA 8.x Products
Original release date: July 15, 2021 CISA is aware of threat actors actively targeting a known, previously patched, vulnerability in SonicWall Secure Mobile Access (SMA) 100 series and Secure Remote Access (SRA) products running unpatched and end-of-life (EOL) 8.x firmware. Threat actors can exploit this vulnerability to initiate a targeted ransomware attack. CISA encourages users… Read more
-
Juniper Networks Releases Security Updates for Multiple Products
Original release date: July 15, 2021 Juniper Networks has released security updates to address vulnerabilities affecting multiple products. An attacker could exploit some of these vulnerabilities to take control of an affected system. CISA encourages users and administrators to review the Juniper Networks security advisories page and apply the necessary updates. This product is provided subject… Read more
-
SonicWall Warns Firewall Hardware Bugs Under Attack
SonicWall issued an urgent security alert warning customers that some of its current and legacy firewall appliances were under active attack. Read more
-
Safari Zero-Day Used in Malicious LinkedIn Campaign
Researchers shed light on how attackers exploited Apple web browser vulnerabilities to target government officials in Western Europe. Read more
-
Apps Built Better: Why DevSecOps is Your Security Team’s Silver Bullet
Phil Richards, vice president and CSO at Ivanti, explains how organizations can design DevOps processes and systems to thwart cyberattacks. Read more
-
New StopRansomware.gov website – The U.S. Government’s One-Stop Location to Stop Ransomware
Original release date: July 15, 2021 The U.S. Government launched a new website to help public and private organizations defend against the rise in ransomware cases. StopRansomware.gov is a whole-of-government approach that gives one central location for ransomware resources and alerts. We encourage organizations to use this new website to understand the threat of ransomware,… Read more
-
CISA Insights: Guidance for MSPs and Small- and Mid-sized Businesses
Original release date: July 14, 2021 CISA has released CISA Insights: Guidance for Managed Service Providers (MSPs) and Small- and Mid-sized Businesses, which provides mitigation and hardening guidance to help these organizations strengthen their defenses against cyberattacks. Many small- and mid-sized businesses use MSPs to manage IT systems, store data, or support sensitive processes, making… Read more
-
Microsoft Crushes 116 Bugs, Three Actively Exploited
Microsoft tackles 12 critical bugs, part of its July 2021 Patch Tuesday roundup, capping a ‘PrintNightmare’ month of headaches for system admins. Read more
-
Windows Hello Bypass Fools Biometrics Safeguards in PCs
A Windows security bug would allow an attacker to fool a USB camera used in the biometric facial-recognition aspect of the system. Read more
-
Citrix Releases Security Updates for Virtual Apps and Desktops
Original release date: July 13, 2021 Citrix has released security updates to address a vulnerability in multiple versions of Virtual Apps and Desktops. An attacker could exploit this vulnerability to take control of an affected system. CISA encourages users and administrators to review Citrix Security Update CTX319750 and apply the necessary updates. This product is… Read more