|
You are here |
www.schneier.com | ||
| | | | |
sparklekitten.net
|
|
| | | | | [AI summary] The post reviews May's threat intelligence landscape, highlighting the 3CX supply chain attack by North Korean actors, the targeting of ESXi servers by ransomware, the active exploitation of VEEAM backup vulnerabilities by FIN7, and a newly critical Cisco zero-day, alongside advice on mitigation strategies. | |
| | | | |
blog.knowbe4.com
|
|
| | | | | Researchers at CYFIRMA warn that the Bahamut threat actor is using a malicious Android app to deliver malware. | |
| | | | |
thehackernews.com
|
|
| | | | | A critical vulnerability (CVE-2024-3400) in Palo Alto Networks PAN-OS is being actively exploited by threat actors. | |
| | | | |
www.imperva.com
|
|
| | | Recently, a critical vulnerability in the widely used Apache OFBiz framework was disclosed, designated CVE-2024-45195. This vulnerability allows for unauthenticated remote code execution (RCE), making it an especially dangerous flaw for organizations using OFBiz in their business operations. An attacker without valid credentials can exploit missing view authorization checks in the web application, bypassing previous [...] | ||