Cyber Security Alerts & Threat Intelligence

Stay up to date with the latest security alerts and threat intelligence updates

Latest Alerts

  • Fortress Home Security Open to Remote Disarmament

    A pair of unpatched security vulnerabilities can allow unauthenticated cyberattackers to turn off window, door and motion-sensor monitoring.

  • AA21-243A: Ransomware Awareness for Holidays and Weekends

    Original release date: August 31, 2021 Summary Immediate Actions You Can Take Now to Protect Against Ransomware • Make an offline backup of your data. • Do not click on suspicious links. • If you use RDP, secure and monitor it. • Update your OS and software. • Use strong passwords. • Use multi-factor authentication. The Federal Bureau of Investigation (FBI) and the Cybersecurity and Infrastructure Security Agency (CISA) have observed an increase in highly impactful ransomware attacks occurring on holidays and weekends—when offices are normally closed—in the United States, as recently as the Fourth of July holiday in 2021.…

  • FBI-CISA Advisory on Ransomware Awareness for Holidays and Weekends

    Original release date: August 31, 2021 Today, the Federal Bureau of Investigation (FBI) and CISA released a Joint Cybersecurity Advisory (CSA) to urge organizations to ensure they protect themselves against ransomware attacks during holidays and weekends—when offices are normally closed. Although FBI and CISA do not currently have any specific threat reporting indicating a cyberattack will occur over the upcoming Labor Day holiday, malicious cyber actors have launched serious ransomware attacks during other holidays and weekends in 2021. The Joint CSA identifies both immediate and longer term actions organizations can take to protect against the rise in ransomware, including: Making an…

  • QNAP Is Latest to Get Dinged by OpenSSL Bugs Fallout

    The NAS maker issued two security advisories about the RCE and DoS flaws, adding to a flurry of advisories from the vast array of companies whose products use OpenSSL.

  • Top 3 API Vulnerabilities: Why Apps are Pwned by Cyberattackers

    Jason Kent, hacker-in-residence at Cequence, talks about how cybercriminals target apps and how to thwart them.

  • WooCommerce Pricing Plugin Allows Malicious Code-Injection

    The popular Dynamic Pricing and Discounts plugin from Envato can be exploited by unauthenticated attackers.

  • LockFile Ransomware Uses Never-Before Seen Encryption to Avoid Detection

    Researchers from Sophos discovered the emerging threat in July, which exploits the ProxyShell vulnerabilities in Microsoft Exchange servers to attack systems.

  • HPE Warns Sudo Bug Gives Attackers Root Privileges to Aruba Platform

    HPE joins Apple in warning customers of a high-severity Sudo vulnerability.

  • Microsoft Exchange ‘ProxyToken’ Bug Allows Email Snooping

    The bug (CVE-2021-33766) is an information-disclosure issue that could reveal victims’ personal information, sensitive company data and more.

  • Vulnerability Summary for the Week of August 23, 2021

    Original release date: August 30, 2021   High Vulnerabilities Primary Vendor — Product Description Published CVSS Score Source & Patch Info adobe — bridge Adobe Bridge version 11.0.2 (and earlier) are affected by a Heap-based Buffer overflow vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. 2021-08-20 9.3 CVE-2021-28624 MISC adobe — bridge Adobe Bridge version 11.0.2 (and earlier) is affected by an Out-of-bounds Write vulnerability when parsing a specially crafted file. An…

  • CISA Adds Single-Factor Authentication to list of Bad Practices

    Original release date: August 30, 2021 Today, CISA added the use of single-factor authentication for remote or administrative access systems to our Bad Practices list of exceptionally risky cybersecurity practices. Single-factor authentication is a common low-security method of authentication. It only requires matching one factor—such as a password—to a username to gain access to a system. Although these Bad Practices should be avoided by all organizations, they are especially dangerous in organizations that support Critical Infrastructure or National Critical Functions.   CISA encourages all organizations to review the Bad Practices webpage and to engage in the necessary actions and critical conversations to…

  • Microsoft Azure Cosmos DB Guidance

    Original release date: August 27, 2021 CISA is aware of a misconfiguration vulnerability in Microsoft’s Azure Cosmos DB that may have exposed customer data. Although the misconfiguration appears to have been fixed within the Azure cloud, CISA strongly encourages Azure Cosmos DB customers to roll and regenerate their certificate keys and to review Microsoft’s guidance on how to Secure access to data in Azure Cosmos DB.  This product is provided subject to this Notification and this Privacy & Use policy.

Need Expert Cybersecurity Guidance?

Our US-based Security Operations Center is ready to help protect your organization.