Category: SecurityWeek

Patch Tuesday: Critical Flaws in Adobe Commerce Software
20
Jul
2023

P2PInfect: New Peer-to-Peer Worm Targeting Redis Servers

A newly discovered peer-to-peer (P2P) worm is targeting Redis servers that are vulnerable to a year-old Lua sandbox escape bug,…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
20
Jul
2023

Adobe Releases New Patches for Exploited ColdFusion Vulnerabilities

Adobe has released a second round of patches for some recently disclosed ColdFusion vulnerabilities, including flaws that appear to have…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
20
Jul
2023

Famed Hacker Kevin Mitnick Dead at 59

Kevin Mitnick, a hacker who famously served time in prison for various computer and communications-related crimes, has died after a…

Storm-1359 DDoS attacks on Microsoft
19
Jul
2023

Microsoft Bows to Pressure to Free Up Cloud Security Logs

Facing intense pressure to free up access to cloud security logs, Microsoft on Wednesday said it would expand logging defaults…

Virtual Event Today: 2023 Cloud & Data Security Summit
19
Jul
2023

Virtual Event Today: 2023 Cloud & Data Security Summit

SecurityWeek’s 2023 Cloud & Data Security Summit kicks off today! This fully immersive 3D virtual event will take place on Wednesday,…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
19
Jul
2023

Recycling Giant Tomra Takes Systems Offline Following Cyberattack

Norwegian recycling giant Tomra has taken some of its systems offline after falling victim to what it describes as “an…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
19
Jul
2023

Two Jira Plugin Vulnerabilities in Attacker Crosshairs

Attackers are apparently trying to exploit two path traversal vulnerabilities in the ‘Stagil navigation for Jira – Menus & Themes’…

Recently Patched GE Cimplicity Vulnerabilities Reminiscent of Russian ICS Attacks
19
Jul
2023

Recently Patched GE Cimplicity Vulnerabilities Reminiscent of Russian ICS Attacks

Over a dozen vulnerabilities patched recently by GE in its Cimplicity product are reminiscent of industrial control system (ICS) attacks…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
19
Jul
2023

Chrome 115 Patches 20 Vulnerabilities

Google on Tuesday announced the release of Chrome 115 to the stable channel, with patches for 20 vulnerabilities, including 11…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
19
Jul
2023

Oracle Releases 508 New Security Patches With July 2023 CPU

Oracle on Tuesday announced the release of 508 new security patches as part of the July 2023 CPU, including more…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
19
Jul
2023

Exploitation of New Citrix Zero-Day Likely to Increase, Organizations Warned

Citrix on Tuesday announced patches for three vulnerabilities, including an actively exploited zero-day that allows remote code execution. The zero-day,…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
18
Jul
2023

US Gov Mercenary Spyware Clampdown Hits Cytrox, Intellexa

The U.S. government’s clampdown on commercial spyware and mercenary hacking companies ramped up this week with the addition of Cytrox…