SecurityBrief Australia - Technology news for CISOs & cybersecurity decision-makers

Common Vulnerabilities and Exposures (CVE) stories - Page 5

Story image
Patch Tuesday has revealed 139 vulnerabilities
Wed, 10th Jul 2024
#
cybersecurity
#
microsoft
#
sharepoint
Microsoft's July 2024 Patch Tuesday reveals 139 vulnerabilities, including two zero-days under active exploitation: Hyper-V's EoP and MSHTML Spoofing.
Story image
Qualys launches report to tackle tech debt & cyber risks
Wed, 10th Jul 2024
#
advanced persistent threat protection
#
cto
#
cyber threats
Qualys has launched a no-cost Tech Debt Report to help organisations identify and mitigate cyber risks from outdated technology.
Story image
Endor Labs warns of critical vulnerabilities in CocoaPods
Wed, 10th Jul 2024
#
malware
#
cybersecurity
#
instagram
Endor Labs reveals major security flaws in CocoaPods, threatening apps like Instagram and Uber. Critical CVEs could impact Swift and Objective-C supply chains.
Story image
Bitdefender & Netgear report reveals major IoT vulnerabilities
Fri, 28th Jun 2024
#
malware
#
data protection
#
phishing
Bitdefender and Netgear’s new report reveals that 99.3% of IoT attacks exploit known vulnerabilities, highlighting the urgent need for timely updates and robust security measures.
Story image
Progress Software patch highlights security vulnerabilities of critical infrastructure
Fri, 28th Jun 2024
#
ransomware
#
advanced persistent threat protection
#
risk & compliance
Progress Software has addressed a critical authentication flaw in its MOVEit Transfer solution, raising concerns over security in essential infrastructure.
Story image
BlackBerry cyber report reveals 3.1 million attacks in Q1 2024
Wed, 26th Jun 2024
#
smartphones
#
malware
#
ransomware
BlackBerry's latest report reveals alarming rise in malware, with 3.1 million cyberattacks thwarted from Jan to Mar 2024—critical infrastructure, especially finance, severely hit.
Story image
BlackBerry thwarts 3.1 million cyberattacks in early 2024 report
Wed, 26th Jun 2024
#
smartphones
#
malware
#
ransomware
BlackBerry's Q1 2024 report reveals unprecedented cyber threats, detecting 3.1 million attacks and a 40% rise in new malware, spotlighting surging global cybersecurity tensions.
Story image
Trend Micro leads in global vulnerability identification for 2023
Wed, 26th Jun 2024
#
advanced persistent threat protection
#
xdr
#
cybersecurity
Trend Micro identified 60% of the world's vulnerabilities in 2023, playing a crucial role in global cybersecurity, according to Omdia study.
Story image
Action1 launches inaugural software vulnerability report for 2024
Thu, 20th Jun 2024
#
virtualisation
#
edge security
#
personal computing devices
Action1's 2024 Software Vulnerability Ratings Report provides CISOs and CIOs with key insights amid NVD delays, highlighting rising exploit rates and the critical need for timely data sharing.
Story image
Sevco Security forms partnership with GuidePoint Security
Wed, 19th Jun 2024
#
cybersecurity
#
visibility
#
remediation
Sevco Security and GuidePoint Security have inked a strategic partnership to enhance IT network security with Sevco's Asset Intelligence Platform.
Story image
Patch Tuesday has revealed 51 vulnerabilities
Wed, 12th Jun 2024
#
cybersecurity
#
microsoft
#
windows
Microsoft addresses 51 vulnerabilities in June 2024 Patch Tuesday, with one critical RCE for Windows, alongside patches for Office and SharePoint flaws.
Story image
WatchGuard report reveals surge in endpoint malware
Fri, 7th Jun 2024
#
malware
#
firewalls
#
ransomware
WatchGuard Technologies' latest report reveals a stark contrast in malware trends: network detections halve, while endpoint attacks soar.
Story image
RedTail cryptomining malware exploits new Palo Alto flaw
Mon, 3rd Jun 2024
#
blockchain
#
cybersecurity
#
akamai
Hackers exploiting newly found vulnerability in Palo Alto’s PAN-OS are using RedTail malware to enhance cryptomining operations, raising cybersecurity alarms.
Story image
GitHub flaw raises alarm over supply chain security risks
Fri, 24th May 2024
#
supply chain & logistics
#
cybersecurity
#
software development
A new vulnerability in GitHub Enterprise Server allowing attackers to bypass authentication has raised alarms over supply chain attacks, urging immediate software updates.
Story image
Notes on ThroughTek Kalay Vulnerabilities and Their Impact on the IoT Ecosystem
Thu, 23rd May 2024
#
iot
#
cybersecurity
#
bitdefender
ThroughTek Kalay's platform vulnerabilities affect over 100 million IoT devices, exposing them to potential attacks. Vendors race to patch issues.
Story image
Rapid7's 2024 report reveals surge in zero-day exploits
Wed, 22nd May 2024
#
mfa
#
advanced persistent threat protection
#
exploits
Rapid7’s 2024 Attack Intelligence Report highlights a sharp rise in zero-day vulnerabilities causing mass breaches and underscores the necessity for faster patching and robust MFA protocols.
Story image
Microsoft addresses 59 CVEs including critical zero-day flaws
Thu, 16th May 2024
#
cybersecurity
#
microsoft
#
zero day malware
Microsoft's Patch Tuesday addresses 59 CVEs, including one critical and three zero-days, with notable exploits in DWM Core and MSHTML surfaces.
Story image
Patch Tuesday has revealed 61 vulnerabilities
Wed, 15th May 2024
#
software development
#
microsoft
#
developers
Microsoft's May 2024 Patch Tuesday addresses 61 vulnerabilities, including three zero-days. Two critical RCE flaws and browser patches are also highlighted.
Story image
Cato Networks reveals insecure protocols widespread in inaugural SASE report
Wed, 15th May 2024
#
firewalls
#
network security
#
casb
Cato Networks exposes systemic cybersecurity gaps in inaugural threat report, revealing insecure protocols employed across WAN by all examined organisations.
Story image
ForAllSecure unveils AI-powered SBOM tool Mayhem to target real threats
Wed, 8th May 2024
#
application security
#
advanced persistent threat protection
#
supply chain & logistics
ForAllSecure reveals new AI-powered tool, Mayhem, a dynamic software bill of materials tool that proactively battles exploitable application vulnerabilities.