Category: SecurityWeek

Patch Tuesday: Critical Flaws in Adobe Commerce Software
17
Aug
2023

Malicious QR Codes Used in Phishing Attack Targeting US Energy Company

A widespread phishing campaign ongoing since May 2023 has been targeting organizations in various industries, including a major US energy…

Ransomware Decryption
17
Aug
2023

Rapid7 Says ROI for Ransomware Remains High; Zero-Day Usage Expands

The Rapid7 mid-year review of the threat landscape is not reassuring. Ransomware remains high, basic security defenses are not being…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
17
Aug
2023

Cisco Patches High-Severity Vulnerabilities in Enterprise Applications

Cisco on Wednesday announced security updates for several enterprise applications to patch high-severity vulnerabilities leading to privilege escalation, SQL injection,…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
17
Aug
2023

Thousands of Systems Turned Into Proxy Exit Nodes via Malware

Threat actors are leveraging access to malware-infected Windows and macOS systems to deploy a proxy application, AT&T’s Alien Labs reports….

Patch Tuesday: Critical Flaws in Adobe Commerce Software
17
Aug
2023

CISA Releases Cyber Defense Plan to Reduce RMM Software Risks

The Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday announced the release of a strategic plan to help critical infrastructure…

M&A cybersecurity
17
Aug
2023

Cybersecurity M&A Roundup for August 1-15, 2023

Twenty-five cybersecurity-related merger and acquisition (M&A) deals were announced in the first half of August 2023. The number of transactions…

Citrix CVE-2023-3519 exploited
17
Aug
2023

Exploitation of Citrix ShareFile Vulnerability Spikes as CISA Issues Warning 

Exploitation attempts targeting a remote code execution flaw in Citrix’s ShareFile product have spiked just as the US Cybersecurity and…

Google Releases Security Key Implementation Resilient to Quantum Attacks
16
Aug
2023

Google Releases Security Key Implementation Resilient to Quantum Attacks

Google on Tuesday released what it described as the first FIDO2 security key implementation that should be resistant to quantum…

Ivanti zero-day CVE-2023-35078 exploited
16
Aug
2023

Ivanti Patches Critical Vulnerability in Avalanche Enterprise MDM Solution

Ivanti has released patches for seven critical- and high-severity vulnerabilities in Avalanche, its enterprise mobile device management (MDM) solution. The…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
16
Aug
2023

Cleaning Products Giant Clorox Takes Systems Offline Following Cyberattack

Cleaning products manufacturer and marketer Clorox Company says it has taken certain systems offline in response to a cyberattack. “The…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
16
Aug
2023

GitHub Paid Out $1.5 Million in Bug Bounties in 2022

Microsoft-owned code hosting platform GitHub on Tuesday announced that it paid out more than $1.57 million in rewards through its…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
16
Aug
2023

Chrome 116 Patches 26 Vulnerabilities

Google on Tuesday announced the release of Chrome 116 to the stable channel with patches for 26 vulnerabilities, including 21…