DORA compliance | Intigriti
17
Jan
2025

DORA compliance | Intigriti

Today, January 17, 2025, marks a pivotal moment for the EU financial sector as the Digital Operational Resilience Act (DORA)…

Researchers Warn of NTLMv1 Bypass in Active Directory Policy
17
Jan
2025

Researchers Warn of NTLMv1 Bypass in Active Directory Policy

Silverfort has discovered that a misconfiguration can bypass an Active Directory Group Policy designed to disable NTLMv1, allowing NTLMv1 authentications…

A guide to DORA compliance
17
Jan
2025

A guide to DORA compliance

The Digital Operational Resilience Act (DORA) came into force on 16 January 2023. Following a two-year implementation period, from 17…

Archana Venugopal Named Senior VP & CISO At NCDEX
17
Jan
2025

Archana Venugopal Named Senior VP & CISO At NCDEX

Archana Venugopal has taken to LinkedIn to announce her appointment as Senior Vice President & Chief Information Security Officer (CISO)…

Post Office’s military culture and the “infallible computers illusion” destroyed lives
17
Jan
2025

Post Office’s military culture and the “infallible computers illusion” destroyed lives

Problems experienced by users of the Post Office’s Horizon system are well known today, but the system’s predecessor, Capture, also…

PoC Exploit Released for Ivanti Connect Secure RCE Vulnerability
17
Jan
2025

PoC Exploit Released for Ivanti Connect Secure RCE Vulnerability

A serious security flaw has been identified in Ivanti Connect Secure, designated as CVE-2025-0282, which enables remote unauthenticated attackers to execute…

New PoC Released For Ivanti Connect Secure RCE Vulnerability (CVE-2025-0282)
17
Jan
2025

New PoC Released For Ivanti Connect Secure RCE Vulnerability (CVE-2025-0282)

Security researchers have unveiled a proof-of-concept (PoC) exploit for a critical remote code execution vulnerability in Ivanti Connect Secure, Policy…

$40,000 Reward for Escalating Limited Path Traversal to RCE
17
Jan
2025

$40,000 Reward for Escalating Limited Path Traversal to RCE

As a dedicated bug bounty hunter with an enviable track record on BugCrowd, Abdullah Nawaf, Full full-time bug Bounty Hunter, thrives…

Let’s Encrypt Unveils Six-Day Certificate and IP Address Options for 2025
17
Jan
2025

Let’s Encrypt Unveils Six-Day Certificate and IP Address Options for 2025

Let’s Encrypt has announced plans to introduce six-day certificate options and support for IP address certificates in 2025. This initiative…

Let's Encrypt Announces 6-day Validity Certificates
17
Jan
2025

Let’s Encrypt Announces 6-day Validity Certificates

Let’s Encrypt, the non-profit certificate authority, has introduced six-day validity certificates, commonly referred to as short-lived certificates. This new offering,…

CISA Warns of Aviatrix Controllers OS Command Injection Vulnerability Exploited in Wild
17
Jan
2025

CISA Warns of Aviatrix Controllers OS Command Injection Vulnerability Exploited in Wild

The Cybersecurity and Infrastructure Security Agency (CISA) has issued a critical alert regarding a significant OS command injection vulnerability in…

Naveen Goud
17
Jan
2025

NSA issues warning to iPhone users on data security

National Security Agency (NSA) of the United States has issued a global advisory for iPhone users regarding a device setting…