Our news
-
Cyberattacks See Fundamental Changes, A Year into COVID-19
A year after COVID-19 was officially determined to be a pandemic, the methods and tactics used by cybercriminals have drastically changed.
-
Vulnerability Summary for the Week of March 8, 2021
Original release date: March 15, 2021 High Vulnerabilities Primary Vendor — Product Description Published CVSS Score Source & Patch Info arubanetworks — airwave A remote authenticated arbitrary command execution vulnerability was discovered in Aruba AirWave Management Platform version(s): Prior to 8.2.12.0. Vulnerabilities in the AirWave CLI could allow remote authenticated users to run arbitrary…
-
Google Warns Mac, Windows Users of Chrome Zero-Day Flaw
The use-after-free vulnerability is the third Google Chrome zero-day flaw to be disclosed in three months.
-
Critical Security Hole Can Knock Smart Meters Offline
Unpatched Schneider Electric PowerLogic ION/PM smart meters are open to dangerous attacks.
-
Updates on Microsoft Exchange Server Vulnerabilities
Original release date: March 13, 2021 CISA has added seven Malware Analysis Reports (MARs) to Alert AA21-062A: Mitigate Microsoft Exchange Server Vulnerabilities. Each MAR identifies a webshell associated with exploitation of the vulnerabilities in Microsoft Exchange Server products. After successful exploiting a Microsoft Exchange Server vulnerability for initial accesses, a malicious cyber actors can upload…
-
Molson Coors Cracks Open a Cyberattack Investigation
The multinational brewing company did not say what type of incident caused a ‘systems outage,’ but it’s investigating and working to get networks back online.
-
Microsoft Exchange Servers Face APT Attack Tsunami
At least 10 nation-state-backed groups are using the ProxyLogon exploit chain to compromise email servers, as compromises mount.
-
TrickBot Takes Over, After Cops Kneecap Emotet
TrickBot rises to top threat in February, overtaking Emotet in Check Point’s new index.
-
SAP Stomps Out Critical RCE Flaw in Manufacturing Software
The remote code execution flaw could allow attackers to deploy malware, modify network configurations and view databases.
-
Cyberattackers Exploiting Critical WordPress Plugin Bug
The security hole in the Plus Addons for Elementor plugin was used in active zero-day attacks prior to a patch being issued.