More than 400 SonicWall firewall instances remain vulnerable to attack
Dive Brief: More than 5,000 instances of an authentication bypass flaw in SonicWall firewalls are exposed to the internet and 460 were listed as vulnerable…
Dive Brief: More than 5,000 instances of an authentication bypass flaw in SonicWall firewalls are exposed to the internet and 460 were listed as vulnerable…
Dive Brief: GreyNoise researchers observed active exploitation of two Cisco vulnerabilities, CVE-2018-0171 and CVE-2023-20198, which reportedly have been used in recent attacks by the Chinese nation-state…
Dive Brief: Security researchers warn a critical vulnerability in SonicWall’s SonicOS is under active exploitation. The flaw, listed as CVE-2024-53704, is an improper authentication vulnerability…
Dive Brief: Horizon3.ai researchers on Wednesday released technical details and a proof-of-concept (PoC) exploit for four critical Ivanti vulnerabilities that were first disclosed and patched…
Dive Brief: Federal authorities on Wednesday warned that Ghost ransomware has compromised organizations as recently as January by exploiting older vulnerabilities to attack internet-facing services…
Dive Brief: The Securities and Exchange Commission on Thursday unveiled a revamped anti-fraud unit to protect retail investors in emerging technologies, reflecting the Trump…
Dive Brief: In research published Thursday on Salt Typhoon’s hacking campaign against telecom carriers, Cisco Talos said the Chinese state-sponsored threat group had gained access…
Dive Brief: Global tech spend will grow 5.6% this year to $4.9 trillion, driven by investments in cybersecurity, cloud and generative AI technologies, according to Forrester.…
CrowdStrike Holdings Inc. said Chief Security Officer Shawn Henry will retire from his current role at the company as of March 31, according to a…
The facts are stark: 65% of organizations have little-to-no control over the data being shared in GenAI apps, 98% of organizations said they had policy…
A zero-day vulnerability in Microsoft Power Pages has been exploited in the wild. The vulnerability, listed as CVE-2025-24989, is an improper access control flaw that…
Dive Brief: Palo Alto Networks warned that threat actors are working to exploit an authenticated file read vulnerability in its firewalls in an attack chain…