Tag Cisco

Microsoft’s January 2024 Windows Update Addresses 48 New Vulnerabilities

In a significant update released for January 2024, Microsoft has patched a total of 48 security vulnerabilities across its software ecosystem. This month’s Patch Tuesday includes two flaws classified as Critical and 46 as Important. Notably, there are no indications that any of these vulnerabilities are being actively exploited or…

Read MoreMicrosoft’s January 2024 Windows Update Addresses 48 New Vulnerabilities

Cisco Addresses Critical Vulnerability Affecting Unity Connection Software

Cisco Addresses Critical Vulnerability in Unity Connection Software Cisco has announced the availability of software updates in response to a significant security vulnerability affecting its Unity Connection platform. This vulnerability, identified as CVE-2024-20272, has been assigned a CVSS score of 7.3, indicating a critical level of risk. The issue stems…

Read MoreCisco Addresses Critical Vulnerability Affecting Unity Connection Software

AI Toys for Kids Discussing Sex, Drugs, and Chinese Propaganda

Recent reports indicate that two individuals believed to be associated with China’s notorious Salt Typhoon hacking group may have previously undergone training at Cisco’s renowned networking academy. This development comes amidst growing concerns among U.S. lawmakers that expanded wiretap powers are inadequately protecting citizens’ data, allowing intelligence agencies broader access…

Read MoreAI Toys for Kids Discussing Sex, Drugs, and Chinese Propaganda

Critical Cisco Vulnerability Allows Remote Takeover of Unified Communication Systems

Cisco Addresses Critical Security Vulnerability in Unified Communications Products Cisco has recently issued important patches to mitigate a serious security vulnerability affecting multiple products within its Unified Communications and Contact Center Solutions range. This flaw, identified as CVE-2024-20253, is rated critically high with a CVSS score of 9.9. It poses…

Read MoreCritical Cisco Vulnerability Allows Remote Takeover of Unified Communication Systems

Two Men Associated with China’s Salt Typhoon Hacker Group Likely Received Training at a Cisco Academy

Recent investigations into the possible links between two individuals associated with recent cyber incidents have revealed noteworthy findings. Cary, a researcher, examined two databases of Chinese names and collaborated with Yi Fuxian, a professor of Chinese demography at the University of Wisconsin–Madison. He found that the name Qiu Daibing (邱代兵)…

Read MoreTwo Men Associated with China’s Salt Typhoon Hacker Group Likely Received Training at a Cisco Academy

Microsoft Reports Possible Breach of SolarWinds by a Second Hacker Group

The investigation into the SolarWinds supply chain attack continues to reveal significant findings, including the emergence of a new malware strain. Recent digital forensic analysis suggests that a different group of threat actors may be exploiting SolarWinds’ Orion software to deploy a similar persistent backdoor on compromised systems. According to…

Read MoreMicrosoft Reports Possible Breach of SolarWinds by a Second Hacker Group

Attackers Exploit Citrix NetScaler Devices for Amplified DDoS Attacks

Citrix has issued an urgent warning to its clientele regarding a pressing security breach affecting its NetScaler application delivery controller (ADC) devices. The vulnerability is being exploited by malicious actors to orchestrate amplified distributed denial-of-service (DDoS) assaults against various targets across the globe. The company stated that attackers, potentially including…

Read MoreAttackers Exploit Citrix NetScaler Devices for Amplified DDoS Attacks

Fortinet Alerts Users to Critical FortiOS SSL VPN Vulnerability Possibly Being Actively Exploited

Fortinet has recently uncovered a significant security vulnerability in its FortiOS SSL VPN, identified as CVE-2024-21762, which is currently believed to be actively exploited in the wild. This flaw, with a CVSS score of 9.6, poses a serious risk by enabling the execution of arbitrary code and commands by outside…

Read MoreFortinet Alerts Users to Critical FortiOS SSL VPN Vulnerability Possibly Being Actively Exploited

Microsoft Reports SolarWinds Hackers Gained Access to Certain Source Code

Microsoft Confirms Source Code Access in SolarWinds Attack On Thursday, Microsoft disclosed that threat actors linked to the SolarWinds supply chain attack successfully accessed a limited number of internal accounts within the company. This unauthorized access allowed these sophisticated, nation-state actors to escalate their reach inside Microsoft’s internal network, although…

Read MoreMicrosoft Reports SolarWinds Hackers Gained Access to Certain Source Code