Tag Cisco

Microsoft Reports Possible Breach of SolarWinds by a Second Hacker Group

The investigation into the SolarWinds supply chain attack continues to reveal significant findings, including the emergence of a new malware strain. Recent digital forensic analysis suggests that a different group of threat actors may be exploiting SolarWinds’ Orion software to deploy a similar persistent backdoor on compromised systems. According to…

Read MoreMicrosoft Reports Possible Breach of SolarWinds by a Second Hacker Group

Attackers Exploit Citrix NetScaler Devices for Amplified DDoS Attacks

Citrix has issued an urgent warning to its clientele regarding a pressing security breach affecting its NetScaler application delivery controller (ADC) devices. The vulnerability is being exploited by malicious actors to orchestrate amplified distributed denial-of-service (DDoS) assaults against various targets across the globe. The company stated that attackers, potentially including…

Read MoreAttackers Exploit Citrix NetScaler Devices for Amplified DDoS Attacks

Fortinet Alerts Users to Critical FortiOS SSL VPN Vulnerability Possibly Being Actively Exploited

Fortinet has recently uncovered a significant security vulnerability in its FortiOS SSL VPN, identified as CVE-2024-21762, which is currently believed to be actively exploited in the wild. This flaw, with a CVSS score of 9.6, poses a serious risk by enabling the execution of arbitrary code and commands by outside…

Read MoreFortinet Alerts Users to Critical FortiOS SSL VPN Vulnerability Possibly Being Actively Exploited

Microsoft Reports SolarWinds Hackers Gained Access to Certain Source Code

Microsoft Confirms Source Code Access in SolarWinds Attack On Thursday, Microsoft disclosed that threat actors linked to the SolarWinds supply chain attack successfully accessed a limited number of internal accounts within the company. This unauthorized access allowed these sophisticated, nation-state actors to escalate their reach inside Microsoft’s internal network, although…

Read MoreMicrosoft Reports SolarWinds Hackers Gained Access to Certain Source Code

Microsoft Releases Fixes for 73 Vulnerabilities, Including Two Windows Zero-Day Exploits

In its February 2024 Patch Tuesday updates, Microsoft has issued fixes for 73 security vulnerabilities across its software ecosystem, including two zero-day flaws currently under active exploitation. Among these vulnerabilities, five have been categorized as Critical and 65 as Important, while three have a Moderate severity rating. This release also…

Read MoreMicrosoft Releases Fixes for 73 Vulnerabilities, Including Two Windows Zero-Day Exploits

CISA Alert: Akira Ransomware Targeting Cisco ASA/FTD Vulnerability

On Thursday, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) included a recently patched security vulnerability affecting Cisco’s Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) software in its Known Exploited Vulnerabilities (KEV) catalog. This update comes in response to indications that the flaw is being actively exploited in…

Read MoreCISA Alert: Akira Ransomware Targeting Cisco ASA/FTD Vulnerability

In the Aftermath of the SolarWinds Hack: Essential Responses for Businesses

In 2020, enterprises faced unprecedented IT challenges as they rapidly transitioned to remote work and embraced automation technologies. As the year drew to a close, companies began to reassess their cybersecurity infrastructures in an effort to prepare for a return to normalcy in 2021. However, the revelation of a significant…

Read MoreIn the Aftermath of the SolarWinds Hack: Essential Responses for Businesses

Cisco Releases Patch for Critical VPN Hijacking Vulnerability in Secure Client

Cisco Addresses Critical Security Flaw in Secure Client Software Cisco has recently issued patches to rectify a significant vulnerability in its Secure Client software, which poses a considerable risk of exploitation by malicious actors. This flaw allows intruders to initiate a VPN session impersonating a targeted user, potentially compromising sensitive…

Read MoreCisco Releases Patch for Critical VPN Hijacking Vulnerability in Secure Client

The Most Significant Cyber Attacks of 2020

The surge of online activities during the COVID-19 pandemic has created unprecedented opportunities for cybercriminals, enabling them to exploit an expanded pool of potential victims. As businesses, educational institutions, and individuals migrated online, they became increasingly vulnerable to an array of cyberattacks, including “zoombombing,” where unauthorized individuals disrupted Zoom meetings…

Read MoreThe Most Significant Cyber Attacks of 2020