Category: HelpnetSecurity

MSSqlPwner: Open-source tool for pentesting MSSQL servers
17
Jan
2025

MSSqlPwner: Open-source tool for pentesting MSSQL servers

MSSqlPwner is an open-source pentesting tool tailored to interact with and exploit MSSQL servers. Built on Impacket, it enables users…

EU takes decisive action on healthcare cybersecurity
17
Jan
2025

EU takes decisive action on healthcare cybersecurity

The Commission has presented an EU action plan aimed at strengthening the cybersecurity of hospitals and healthcare providers. The initiative…

New infosec products of the week: January 17, 2025
17
Jan
2025

New infosec products of the week: January 17, 2025

Here’s a look at the most interesting products from the past week, featuring releases from Atsign, Cisco, Commvault, and IT-Harvest….

Critical SimpleHelp vulnerabilities fixed, update your server instances!
16
Jan
2025

Critical SimpleHelp vulnerabilities fixed, update your server instances!

If you’re an organization using SimpleHelp for your remote IT support/access needs, you should update or patch your server installation…

HarvestIQ.ai provides actionable insights for cybersecurity professionals
16
Jan
2025

HarvestIQ.ai provides actionable insights for cybersecurity professionals

IT-Harvest launched HarvestIQ.ai, a platform featuring two AI assistants designed to redefine how professionals navigate the cybersecurity landscape. The Analyst…

Configuration files for 15,000 Fortinet firewalls leaked. Are yours among them?
16
Jan
2025

Configuration files for 15,000 Fortinet firewalls leaked. Are yours among them?

A threat actor has leaked configuration files (aka configs) for over 15,000 Fortinet Fortigate firewalls and associated admin and user…

New UEFI Secure Boot bypass vulnerability discovered (CVE-2024-7344)
16
Jan
2025

New UEFI Secure Boot bypass vulnerability discovered (CVE-2024-7344)

ESET researchers have identified a vulnerability (CVE-2024-7344) impacting most UEFI-based systems, which allows attackers to bypass UEFI Secure Boot. The…

Cisco AI Defense safeguards against the misuse of AI tools
16
Jan
2025

Cisco AI Defense safeguards against the misuse of AI tools

Cisco announced Cisco AI Defense, a pioneering solution to enable and safeguard AI transformation within enterprises. As AI technology advances,…

Webinar: Amplifying SIEM with AI-driven NDR for IT/OT convergence
16
Jan
2025

Webinar: Amplifying SIEM with AI-driven NDR for IT/OT convergence

Join cybersecurity leader Erwin Eimers from Sumitomo Chemicals Americas to explore how AI-driven Network Detection and Response (NDR) enhances SIEM…

How CISOs can elevate cybersecurity in boardroom discussions
16
Jan
2025

How CISOs can elevate cybersecurity in boardroom discussions

Ross Young is the CISO in residence at Team8 and the creator of the OWASP Threat and Safeguard Matrix (TaSM)….

Critical vulnerabilities remain unresolved due to prioritization gaps
16
Jan
2025

Critical vulnerabilities remain unresolved due to prioritization gaps

Fragmented data from multiple scanners, siloed risk scoring and poor cross-team collaboration are leaving organizations increasingly exposed to breaches, compliance…

Rsync vulnerabilities allow remote code execution on servers, patch quickly!
15
Jan
2025

Rsync vulnerabilities allow remote code execution on servers, patch quickly!

Six vulnerabilities have been fixed in the newest versions of Rsync (v3.4.0), two of which could be exploited by a…