Common Vulnerabilities and Exposures (CVE) stories - Page 6
Endor Labs warns of critical vulnerabilities in CocoaPods
Wed, 10th Jul 2024
#
malware
#
supply chain
#
cybersecurity
Endor Labs reveals major security flaws in CocoaPods, threatening apps like Instagram and Uber. Critical CVEs could impact Swift and Objective-C supply chains.
Bitdefender & Netgear report reveals major IoT vulnerabilities
Fri, 28th Jun 2024
#
malware
#
data protection
#
phishing
Bitdefender and Netgear's new report reveals that 99.3% of IoT attacks exploit known vulnerabilities, highlighting the urgent need for timely updates and robust security measures.
BlackBerry cyber report reveals 3.1 million attacks in Q1 2024
Wed, 26th Jun 2024
#
malware
#
ransomware
#
advanced persistent threat protection
BlackBerry's latest report reveals alarming rise in malware, with 3.1 million cyberattacks thwarted from Jan to Mar 2024—critical infrastructure, especially finance, severely hit.
Trend Micro leads in global vulnerability identification for 2023
Wed, 26th Jun 2024
#
advanced persistent threat protection
#
xdr
#
cybersecurity
Trend Micro identified 60% of the world's vulnerabilities in 2023, playing a crucial role in global cybersecurity, according to Omdia study.
Action1 launches inaugural software vulnerability report for 2024
Thu, 20th Jun 2024
#
virtualisation
#
edge security
#
microsoft
Action1's 2024 Software Vulnerability Ratings Report provides CISOs and CIOs with key insights amid NVD delays, highlighting rising exploit rates and the critical need for timely data sharing.
Patch Tuesday has revealed 51 vulnerabilities
Wed, 12th Jun 2024
#
cybersecurity
#
microsoft
#
windows
Microsoft addresses 51 vulnerabilities in June 2024 Patch Tuesday, with one critical RCE for Windows, alongside patches for Office and SharePoint flaws.
WatchGuard report reveals surge in endpoint malware
Fri, 7th Jun 2024
#
malware
#
firewalls
#
ransomware
WatchGuard Technologies' latest report reveals a stark contrast in malware trends: network detections halve, while endpoint attacks soar.
RedTail cryptomining malware exploits new Palo Alto flaw
Mon, 3rd Jun 2024
#
crypto
#
blockchain
#
cybersecurity
Hackers exploiting newly found vulnerability in Palo Alto's PAN-OS are using RedTail malware to enhance cryptomining operations, raising cybersecurity alarms.
GitHub flaw raises alarm over supply chain security risks
Fri, 24th May 2024
#
supply chain
#
cybersecurity
#
software development
A new vulnerability in GitHub Enterprise Server allowing attackers to bypass authentication has raised alarms over supply chain attacks, urging immediate software updates.
Rapid7's 2024 report reveals surge in zero-day exploits
Wed, 22nd May 2024
#
mfa
#
advanced persistent threat protection
#
exploits
Rapid7's 2024 Attack Intelligence Report highlights a sharp rise in zero-day vulnerabilities causing mass breaches and underscores the necessity for faster patching and robust MFA protocols.
Microsoft addresses 59 CVEs including critical zero-day flaws
Thu, 16th May 2024
#
cybersecurity
#
microsoft
#
zero day malware
Microsoft's Patch Tuesday addresses 59 CVEs, including one critical and three zero-days, with notable exploits in DWM Core and MSHTML surfaces.
Patch Tuesday has revealed 61 vulnerabilities
Wed, 15th May 2024
#
software development
#
microsoft
#
sharepoint
Microsoft's May 2024 Patch Tuesday addresses 61 vulnerabilities, including three zero-days. Two critical RCE flaws and browser patches are also highlighted.
Cato Networks reveals insecure protocols widespread in inaugural SASE report
Wed, 15th May 2024
#
firewalls
#
network security
#
casb
Cato Networks exposes systemic cybersecurity gaps in inaugural threat report, revealing insecure protocols employed across WAN by all examined organisations.
ForAllSecure unveils AI-powered SBOM tool Mayhem to target real threats
Wed, 8th May 2024
#
application security
#
advanced persistent threat protection
#
supply chain
ForAllSecure reveals new AI-powered tool, Mayhem, a dynamic software bill of materials tool that proactively battles exploitable application vulnerabilities.
The remote desktop tools most targeted by attackers in the last year
Thu, 2nd May 2024
#
malware
#
virtualisation
#
uc
Virtual Network Computing (VNC) was the most targeted remote desktop tool in the past year, clouds over a new Barracuda data report.
Azul extends Intelligence Cloud to Oracle JDK & all OpenJDK JVMs
Wed, 1st May 2024
#
devops
#
martech
#
application security
Azul broadens its Intelligence Cloud to all OpenJDK JVMs and Oracle JDK, utilising production Java data to enhance developer productivity and identify vulnerabilities.
Sevco Security drives resolution of enterprise vulnerabilities
Wed, 1st May 2024
#
it automation
#
risk & compliance
#
security vulnerabilities
Sevco Security further evolves asset protection by prioritising, automating and validating exposure issues resolution with its upgraded platform, aiding cyber risk management for businesses.
BeyondTrust's 2024 report reveals top Microsoft vulnerabilities
Tue, 23rd Apr 2024
#
advanced persistent threat protection
#
microsoft
#
cloud services
BeyondTrust's 2024 Microsoft Vulnerabilities Report shows Elevation of Privilege (EoP) dominating the vulnerability class for a fourth year.
Cado Security unmasks Cerber ransomware threat to Confluence servers
Wed, 17th Apr 2024
#
ransomware
#
encryption
#
cybersecurity
Cyber security firm, Cado Security, uncovers revelations about a Linux variant of Cerber ransomware exploiting vulnerabilities in Confluence servers using the CVE-2023-22518 exploit.
Darktrace shifts to proactive AI strategy to combat rising cyber threats
Tue, 9th Apr 2024
#
uc
#
email security
#
ai security
In response to rising AI-driven cyber threats, Darktrace is repositioning to a platform-based strategy aimed at better equipping businesses to anticipate and counter these advanced cyber attacks.