194Articles
9Categories
2023-11-14Date
🚨
CISA Adds Three Known Exploited Vulnerabilities to CatalogCISA has added three new vulnerabilities to its Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2023-36033 Microsoft Windows Desktop Window Manager (DWM) Core Library Privilege Escalation Vulnerability CVE-2023-36025 Microsoft Windows Smart…
KEV
🚨
#StopRansomware: Rhysida RansomwareSUMMARY Note: This joint Cybersecurity Advisory (CSA) is part of an ongoing #StopRansomware effort to publish advisories for network defenders detailing various ransomware variants and ransomware threat actors. These #StopRansomware advisories include recently and historically ob…
KEV
πŸ›
CVE Watcher: Hunting Down CVEs Before the Patch Drops
πŸ›
CVE-2021-1730 Microsoft Exchange Server Spoofing Vulnerability
πŸ›
CVE-2023-38151 Microsoft Host Integration Server 2020 Remote Code Execution Vulnerability
πŸ›
CVE-2023-36719 Microsoft Speech Application Programming Interface (SAPI) Elevation of Privilege Vulnerability
πŸ›
CVE-2023-36705 Windows Installer Elevation of Privilege Vulnerability
πŸ›
CVE-2023-36560 ASP.NET Security Feature Bypass Vulnerability
πŸ›
CVE-2023-36437 Azure DevOps Server Remote Code Execution Vulnerability
πŸ›
CVE-2023-36428 Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability
πŸ›
CVE-2023-36427 Windows Hyper-V Elevation of Privilege Vulnerability
πŸ›
CVE-2023-36425 Windows Distributed File System (DFS) Remote Code Execution Vulnerability
πŸ›
CVE-2023-36424 Windows Common Log File System Driver Elevation of Privilege Vulnerability
πŸ›
CVE-2023-36423 Microsoft Remote Registry Service Remote Code Execution Vulnerability
πŸ›
CVE-2023-36422 Microsoft Windows Defender Elevation of Privilege Vulnerability
πŸ›
CVE-2023-36413 Microsoft Office Security Feature Bypass Vulnerability
πŸ›
CVE-2023-36410 Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
πŸ›
CVE-2023-36052 Azure CLI REST Command Information Disclosure Vulnerability
πŸ›
CVE-2023-36043 Open Management Infrastructure Information Disclosure Vulnerability
πŸ›
CVE-2023-36036 Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
πŸ›
CVE-2023-36017 Windows Scripting Engine Memory Corruption Vulnerability
πŸ›
CVE-2023-36007 Microsoft Send Customer Voice survey from Dynamics 365 Spoofing Vulnerability
πŸ›
CVE-2023-38177 Microsoft SharePoint Server Remote Code Execution Vulnerability
πŸ›
CVE-2023-36558 ASP.NET Core - Security Feature Bypass Vulnerability
πŸ›
CVE-2023-36439 Microsoft Exchange Server Remote Code Execution Vulnerability
πŸ›
CVE-2023-36408 Windows Hyper-V Elevation of Privilege Vulnerability
πŸ›
CVE-2023-36407 Windows Hyper-V Elevation of Privilege Vulnerability
πŸ›
CVE-2023-36406 Windows Hyper-V Information Disclosure Vulnerability
πŸ›
CVE-2023-36405 Windows Kernel Elevation of Privilege Vulnerability
πŸ›
CVE-2023-36404 Windows Kernel Information Disclosure Vulnerability
πŸ›
CVE-2023-36403 Windows Kernel Elevation of Privilege Vulnerability
πŸ›
CVE-2023-36402 Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
πŸ›
CVE-2023-36401 Microsoft Remote Registry Service Remote Code Execution Vulnerability
πŸ›
CVE-2023-36400 Windows HMAC Key Derivation Elevation of Privilege Vulnerability
πŸ›
CVE-2023-36399 Windows Storage Elevation of Privilege Vulnerability
πŸ›
CVE-2023-36398 Windows NTFS Information Disclosure Vulnerability
πŸ›
CVE-2023-36397 Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability
πŸ›
CVE-2023-36396 Windows Compressed Folder Remote Code Execution Vulnerability
πŸ›
CVE-2023-36395 Windows Deployment Services Denial of Service Vulnerability
πŸ›
CVE-2023-36394 Windows Search Service Elevation of Privilege Vulnerability
πŸ›
CVE-2023-36393 Windows User Interface Application Core Remote Code Execution Vulnerability
πŸ›
CVE-2023-36392 DHCP Server Service Denial of Service Vulnerability
πŸ›
CVE-2023-36046 Windows Authentication Denial of Service Vulnerability
πŸ›
CVE-2023-36047 Windows Authentication Elevation of Privilege Vulnerability
πŸ›
CVE-2023-36049 .NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability
πŸ›
CVE-2023-24023 Mitre: CVE-2023-24023 Bluetooth Vulnerability
πŸ›
CVE-2023-36050 Microsoft Exchange Server Spoofing Vulnerability
πŸ›
CVE-2023-36039 Microsoft Exchange Server Spoofing Vulnerability
πŸ›
CVE-2023-36041 Microsoft Excel Remote Code Execution Vulnerability
πŸ›
CVE-2023-36042 Visual Studio Denial of Service Vulnerability
πŸ›
CVE-2023-36045 Microsoft Office Graphics Remote Code Execution Vulnerability
πŸ›
CVE-2023-36037 Microsoft Excel Security Feature Bypass Vulnerability
πŸ›
CVE-2023-36038 ASP.NET Core Denial of Service Vulnerability
πŸ›
CVE-2023-36035 Microsoft Exchange Server Spoofing Vulnerability
πŸ›
CVE-2023-36028 Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability
πŸ›
CVE-2023-36030 Microsoft Dynamics 365 Sales Spoofing Vulnerability
πŸ›
CVE-2023-36031 Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
πŸ›
CVE-2023-36033 Windows DWM Core Library Elevation of Privilege Vulnerability
πŸ›
CVE-2023-36021 Microsoft On-Prem Data Gateway Security Feature Bypass Vulnerability
πŸ›
CVE-2023-36025 Windows SmartScreen Security Feature Bypass Vulnerability
πŸ›
CVE-2023-36016 Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
πŸ›
CVE-2023-36018 Visual Studio Code Jupyter Extension Spoofing Vulnerability
πŸ›
LockBit ransomware exploits Citrix Bleed in attacks, 10K servers exposed
πŸ›
Microsoft Warns of Critical Bugs Being Exploited in the Wild
KEV
πŸ›
Fortinet Releases Security Updates for FortiClient and FortiGate
πŸ›
VMware Releases Security Update for Cloud Director Appliance
⚠️
ACSC and CISA launch step-by-step business continuity instructions for SMBs
⚠️
CISA Sets a Deadline - Patch Juniper Junos OS Flaws Before November 17
KEV
⚠️
CISA Sets a Deadline - Patch Juniper Junos OS Flaws Before November 17
⚠️
Hackers Selling Exploits for Critical Vulnerabilities on the Dark Web
⚠️
Avito - 2,721,835 breached accounts
⚠️
Open Source Security Podcast Episode 401 - Security skills shortage -
⚠️
Passive SSH Server Private Key Leakage is Real but Limited
⚠️
As perimeter defenses fall, the identify-first approach steps into the breach
⚠️
Python Malware Poses DDoS Threat via Docker API Misconfiguration
⚠️
22 Energy Firms Hacked in Largest Coordinated Attack on Denmark’s Critical Infrastructure
⚠️
Alert: OracleIV DDoS Botnet Targets Public Docker Engine APIs to Hijack Containers
⚠️
Ethereum Feature Abused to Steal $60 Million From 99,000 Victims
⚠️
Redefine IR with the Unit 42 Incident Response Retainer for No Cost
⚠️
Hackers Exploiting Create2 to Bypass Wallet Security Alerts
⚠️
Nothing new, still broken, insecure by default since then: Python's e-mail libraries and certificate verification and how it affected open source projects
⚠️
Denmark Hit With Largest Cyberattack on Record by Exploiting Firewall Vulnerabilities
⚠️
[Holiday Resource Kit] The Holiday Season is Here. How Are You Staying Cyber Safe?
⚠️
Building a People-Centric Security Program - Cathy Olsen - CSP #148
⚠️
Code-to-cloud: Achieving complete cloud security
⚠️
"In a first, cryptographic keys protecting SSH connections stolen in new attack"
⚠️
CISA Releases Two Industrial Control Systems Advisories
⚠️
Fuzzing Strategies, Responding to CISA's Open Source Security RFI, 35 Year Old Worm - ASW #263
⚠️
CISA Releases Roadmap for Artificial Intelligence Adoption
⚠️
Microsoft guidance regarding credentials leaked to GitHub Actions Logs through Azure CLI
⚠️
Microsoft fixes critical Azure CLI flaw that leaked credentials in logs
⚠️
Royal Ransomware Rebrands as BlackSuit - Warn FBI and CISA
⚠️
Microsoft November 2023 Patch Tuesday fixes 5 zero-days, 58 flaws
⚠️
Microsoft Patch Tuesday November 2023, (Tue, Nov 14th)
⚠️
1 Out of Every 34 Organizations Worldwide Have Experienced an Attempted Ransomware Attack
⚠️
Critical Patches Issued for Microsoft Products, November 14, 2023
⚠️
Researchers Uncover Info-Stealing Campaign Targeting Gaming Community
⚠️
Misconfigured Docker API endpoints allow attackers to deliver DDoS botnet agent
⚠️
Hackers are exploiting β€˜CitrixBleed’ bug in the latest wave of mass cyberattacks
⚠️
New CacheWarp AMD CPU attack lets hackers gain root in Linux VMs
⚠️
Microsoft Releases October 2023 Security Updates
⚠️
Adobe Releases Security Updates for Multiple Products
⚠️
Critical Authentication Bypass Flaw in VMware Cloud Director Appliance
⚠️
VMWare discloses critical VCD Appliance auth bypass with no patch
⚠️
Intel Out-Of-Band Patch Addresses Privilege Escalation Flaw
⚠️
Microsoft Patch Tuesday, November 2023 Edition
⚠️
New Reptar CPU flaw impacts Intel desktop and server systems
⚠️
WP Fastest Cache plugin bug exposes 600K WordPress sites to attacks
πŸ“‹
ICS Patch Tuesday: 90 Vulnerabilities Addressed by Siemens and Schneider Electric
πŸ“‹
Windows 11 KB5032190 update enables Moment 4 features for everyone
πŸ“‹
Adobe Patch Tuesday: Critical Bugs in Acrobat, Reader, ColdFusion
πŸ“’
Royal Ransomware Possibly Rebranding After Targeting 350 Organizations Worldwide
πŸ“’
Ubuntu security advisory (AV23-686)
πŸ“’
Dell security advisory (AV23-687)
πŸ“’
IBM security advisory (AV23-688)
πŸ“’
Android security advisory – November 2023 Monthly Rollup (AV23-689)
πŸ“’
Ivanti security advisory (AV23-690)
πŸ“’
[Control systems] Siemens security advisory (AV23-692)
πŸ“’
[Control systems] Schneider Electric security advisory (AV23-693)
πŸ“’
SAP security advisory – October 2023 monthly rollup (AV23-691)
πŸ“’
Adobe security advisory (AV23-694)
πŸ“’
Fortinet security advisory (AV23-696)
πŸ“’
Intel security advisory (AV23-698)
πŸ“’
[Control systems] AVEVA security advisory (AV23-697)
πŸ“’
[Control systems] Rockwell Automation security advisory (AV23-695)
πŸ“’
New CISA AI Road Map Charts Course for Responsible Adoption
πŸ“’
Google Chrome security advisory (AV23-699)
πŸ“’
1touch.io Snags Ex-Bugcrowd CEO Ashish Gupta to Add Products
πŸ”₯
Lockbit Ransomware Cripples Australian Ports, Chinese Bank
πŸ”₯
Against the Clock: Cyber Incident Response Plan
πŸ”₯
Upskill to Combat the Ransomware Threat
πŸ”₯
Update: Henry Schein Says Customer Data Breached in Cyber Incident
πŸ”₯
Dragos Says No Evidence of Breach After Ransomware Gang Claims Hack via Third Party
πŸ”₯
US Agencies Warn Royal Ransomware Gang May Rebrand as β€˜BlackSuit’
πŸ”₯
Ransomware Attack on Ohio City Impacts Multiple Services
πŸ”₯
The Importance of Continuous Security Monitoring for a Robust Cybersecurity Strategy
πŸ”₯
DP World Cyberattack Blocks Thousands of Containers in Australian Ports
πŸ”₯
The evolution of ransomware: Lessons for the future
πŸ”₯
Canadian Banking Tech Giant Moneris Says It Prevented Ransomware Attack
πŸ”₯
From Malicious Actors to Unauthorized Access: 5 Doors You Can't Afford to Lock
πŸ”₯
Vietnamese Hackers Using New Delphi-Powered Malware to Target Indian Marketers
πŸ”₯
LockBit hackers publish 43GB of stolen Boeing data following cyber attack
πŸ”₯
Pharmacy provider Truepill data breach hits 2.3 million customers
πŸ”₯
UK Cybersecurity Center Says β€˜Deepfakes’ and Other AI Tools Pose a Threat to the Next Election
πŸ”₯
Truepill Mail-Order Pharmacy Hack Affects Nearly 2.4 Million
πŸ”₯
UK NSCS Highlights Risks to Critical Infrastructure
πŸ•΅οΈ
ISC Stormcast For Tuesday, November 14th, 2023 https://isc.sans.edu/podcastdetail/8744, (Tue, Nov 14th)
πŸ•΅οΈ
Vietnamese Hackers Using New Delphi-Powered Malware to Target Indian Marketers
πŸ•΅οΈ
Hacking CI/CD Pipelines: Some Use Cases For Hacking CI/CD Orchestrators - Mauricio Cano - WASP Netherlands - 36 minutes
πŸ•΅οΈ
New Campaign Targets Middle East Governments with IronWind Malware
πŸ•΅οΈ
How .tk Became a TLD for Scammers
πŸ•΅οΈ
PyPI Packages Found to Expose Thousands of Secrets
πŸ•΅οΈ
Hacker Conversations: Chris Wysopal, AKA Weld Pond
πŸ•΅οΈ
Google Suing Cybercriminals Who Delivered Malware via Fake Bard Downloads
πŸ•΅οΈ
Webinar Today: Using Governance and Privilege to Gain Control Over Third-Party Access
πŸ•΅οΈ
Top 10 API Security Threats for Q3 2023
πŸ•΅οΈ
Training Tuesday - Discussions for certs, training and learning-at-home
πŸ•΅οΈ
CyberheistNews Vol 13 #46 [Heads Up] Cybersecurity Expert: AI Lends Phishing Plausibility for Bad Actors
πŸ•΅οΈ
LogShield: A New Framework that Detects the APT Attack Patterns
πŸ•΅οΈ
Radiant Snags $15 Million for AI-Powered SOC Technology
πŸ•΅οΈ
What Does PCI DSS 4.0 Mean for API?
πŸ•΅οΈ
Meet the Unique New "Hacking" Group: AlphaLock
πŸ•΅οΈ
MySQL Servers, Docker Hosts Infected With DDoS Malware
πŸ•΅οΈ
Cybertruck, Solarwinds, Bitcoin, Docker, Ducktail, Experian, More News and Jason Wood – SWN #342
πŸ•΅οΈ
How 2023 Changed Application Security and What’s to Come in 2024 - Karl Triebes - ASW #263
πŸ•΅οΈ
Upcoming Speaking Engagements
πŸ•΅οΈ
Cybertruck, Solarwinds, Bitcoin, Docker, Ducktail, Experian, More News and Jason Wood - SWN #342
πŸ•΅οΈ
Protected Virtual Machines Exposed to New β€˜CacheWarp’ AMD CPU Attack
πŸ•΅οΈ
Zip Raises $7.7 Million to Expand SMB Cybersecurity Business
πŸ•΅οΈ
Online Scammer Poses as Skype, Swindles Victims Through Cryptocurrency Scam
πŸ•΅οΈ
News alert: 1touch.io names former Bugcrowd chief Ashish Gupta as CEO and President
πŸ•΅οΈ
News alert: Vaultinum rolls out β€˜Timestamping’ solution to enhance promotional price transparency
🌐
A Closer Look at ChatGPT's Role in Automated Malware Creation
🌐
Update: Israel Warns of BiBi Wiper Attacks Targeting Linux and Windows
🌐
Region 3 in Action
🌐
On Point: Bridging the Gap Between TSPs and Tech Providers
🌐
IPStorm botnet with 23,000 proxies for malicious traffic dismantled
πŸ“‘
Noticing command and control channels by reviewing DNS protocols, (Mon, Nov 13th)
πŸ“‘
Crooks Leverage Google Quiz Messages as Part of Crypto Scam
πŸ“‘
Intel Faces 'Downfall' Bug Lawsuit
πŸ“‘
The Song Remains the Same: The 2023 Active Adversary Report for Security Practitioners
πŸ“‘
New Active Adversary Defense capabilities with Sophos Firewall, Sophos XDR, and Sophos NDR
πŸ“‘
CI/CD Risks: Protecting Your Software Development Pipelines
πŸ“‘
Live Webinar | Generative AI: Myths, Realities and Practical Use Cases
πŸ“‘
TA402 Uses Complex IronWind Infection Chains to Target Middle East-Based Government Entities
πŸ“‘
DHS Cybersecurity and Infrastructure Security Agency Releases Roadmap for Artificial Intelligence
πŸ“‘
Windows 10 KB5032189Β update released with 11 improvements
πŸ“‘
100 Quarters of Profitability: Insights from a Trender
πŸ“‘
Where Cybersecurity Starts in Region 2
πŸ“‘
Millions Of Old Bitcoin Wallets Have Critical Security Flaws, Experts Say
πŸ“‘
TETRA Encryption Algorithms To Enter Public Domain
πŸ“‘
Protected Virtual Machines Exposed To New CacheWarp AMD CPU Attack
πŸ“‘
OracleIV Emerges As A Dockerized DDoS Bot Agent
πŸ“‘
Level up! These games will make learning about cybersecurity fun