The code injection flaw is similar to a prior vulnerability that was immediately flagged in January.
Related Articles
All CyberSecurityDive →Initial access brokers involved in more attacks, including on critical infrastructure
Listen to the article 4 min This audio is auto-generated. Please let us know if you have feedback. Dive Brief: The market for initial access…
CISA audit sparks debate about cybersecurity pay incentives
Listen to the article 4 min This audio is auto-generated. Please let us know if you have feedback. An audit that castigated the Cybersecurity and…
Credential harvesting campaign targets ScreenConnect cloud administrators
A sophisticated credential-harvesting campaign has been targeting ScreenConnect cloud administrators for years and may be opening the door to ransomware attacks, researchers at Mimecast said…
CISA launches new wave of job cuts
The Cybersecurity and Infrastructure Security Agency is in the process of a major push to eliminate jobs, starting with a voluntary resignation program, part of…
Stryker attack raises concerns about role of device management tool
A suspected wiper attack against medtech giant Stryker has led much of the security community to examine the role of Microsoft Intune. Stryker, a Portage,…
Senior NSC official said US needs to embrace offensive cyber
WASHINGTON—The senior cybersecurity official on the National Security Council said Tuesday the U.S. needs to embrace more offensive cyber capabilities as a tool to deter…

