Tag CISA

Critical Ivanti Cloud Appliance Vulnerability Actively Exploited in Cyberattacks

Ivanti has disclosed a critical security vulnerability impacting its Cloud Service Appliance (CSA), which has been detected as actively exploited in the wild. The vulnerability, designated as CVE-2024-8963, holds a high CVSS score of 9.4 out of 10, indicating its severity. It was inadvertently addressed in CSA versions 4.6 Patch…

Read MoreCritical Ivanti Cloud Appliance Vulnerability Actively Exploited in Cyberattacks

Ransomware Attack Forces Shutdown of America’s Largest Fuel Pipeline

Ransomware Attack Halts Colonial Pipeline Operations, Highlighting Cybersecurity Vulnerabilities On Saturday, Colonial Pipeline, a crucial provider transporting approximately 45% of the fuel consumed on the U.S. East Coast, officially announced it has suspended operations due to a ransomware attack. This incident underscores the susceptibility of critical infrastructure to cyber threats.…

Read MoreRansomware Attack Forces Shutdown of America’s Largest Fuel Pipeline

U.S. Issues Emergency Declaration Across 17 States Following Fuel Pipeline Cyber Attack

In a significant cybersecurity incident, the Colonial Pipeline, a crucial fuel pipeline operator in the United States, fell victim to a ransomware attack that has led to a regional emergency declaration from the U.S. Federal Motor Carrier Safety Administration (FMCSA). This declaration affects 17 states and the District of Columbia,…

Read MoreU.S. Issues Emergency Declaration Across 17 States Following Fuel Pipeline Cyber Attack

Researchers Caution About Ongoing Attacks Targeting Critical Zimbra Postjournal Vulnerability

Cybersecurity experts have issued alerts regarding ongoing exploitation attempts surrounding a recently identified vulnerability in Synacor’s Zimbra Collaboration software. Enterprise security firm Proofpoint detected malicious activity linked to this flaw beginning on September 28, 2024. The targeted vulnerability, tracked as CVE-2024-45519, is a critical security issue within Zimbra’s postjournal service,…

Read MoreResearchers Caution About Ongoing Attacks Targeting Critical Zimbra Postjournal Vulnerability

CISA Alerts on Threat Actors Using F5 BIG-IP Cookies for Network Reconnaissance

The Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning regarding malicious actors exploiting unencrypted persistent cookies from the F5 BIG-IP Local Traffic Manager (LTM) module for reconnaissance within target networks. This technique enables attackers to identify additional non-internet-facing devices, raising significant concerns about potential vulnerabilities in those systems.…

Read MoreCISA Alerts on Threat Actors Using F5 BIG-IP Cookies for Network Reconnaissance

Nation-State Hackers Target Ivanti CSA Vulnerabilities for Network Breaches

A suspected nation-state actor has been detected exploiting three critical vulnerabilities in the Ivanti Cloud Service Appliance (CSA), leveraging these zero-day flaws to conduct a series of targeted cyberattacks. According to Fortinet’s FortiGuard Labs, these vulnerabilities allowed attackers to gain unauthorized access to the CSA, enumerate users, and access their…

Read MoreNation-State Hackers Target Ivanti CSA Vulnerabilities for Network Breaches

CISA Issues Alert on Ongoing Exploitation of Vulnerability in SolarWinds Help Desk Software

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) announced on Tuesday the addition of a serious vulnerability affecting SolarWinds Web Help Desk (WHD) software to its Known Exploited Vulnerabilities (KEV) catalog. This decision comes amid indications of active exploitation of the flaw. Identified as CVE-2024-28987, this vulnerability has been assigned…

Read MoreCISA Issues Alert on Ongoing Exploitation of Vulnerability in SolarWinds Help Desk Software