Cyber Security Alerts & Threat Intelligence

Stay up to date with the latest security alerts and threat intelligence updates

Latest Alerts

  • Updates on Microsoft Exchange Server Vulnerabilities

    Original release date: March 13, 2021 CISA has added seven Malware Analysis Reports (MARs) to Alert AA21-062A: Mitigate Microsoft Exchange Server Vulnerabilities. Each MAR identifies a webshell associated with exploitation of the vulnerabilities in Microsoft Exchange Server products. After successful exploiting a Microsoft Exchange Server vulnerability for initial accesses, a malicious cyber actors can upload a webshell to enable remote administration of the affected system. In addition to the MARs, CISA added information on ransomware activity associated with exploitation of the Exchange Server products, including DearCry ransomware. CISA encourages users and administrators to review the following resources for more information.…

  • Molson Coors Cracks Open a Cyberattack Investigation

    The multinational brewing company did not say what type of incident caused a ‘systems outage,’ but it’s investigating and working to get networks back online.

  • Microsoft Exchange Servers Face APT Attack Tsunami

    At least 10 nation-state-backed groups are using the ProxyLogon exploit chain to compromise email servers, as compromises mount.

  • TrickBot Takes Over, After Cops Kneecap Emotet

    TrickBot rises to top threat in February, overtaking Emotet in Check Point’s new index.

  • SAP Stomps Out Critical RCE Flaw in Manufacturing Software

    The remote code execution flaw could allow attackers to deploy malware, modify network configurations and view databases.

  • Cyberattackers Exploiting Critical WordPress Plugin Bug

    The security hole in the Plus Addons for Elementor plugin was used in active zero-day attacks prior to a patch being issued.

  • F5, CISA Warn of Critical BIG-IP and BIG-IQ RCE Bugs

    The F5 flaws could affect the networking infrastructure for some of the largest tech and Fortune 500 companies – including Microsoft, Oracle and Facebook.

  • FBI-CISA Joint Advisory on Compromise of Microsoft Exchange Server

    Original release date: March 10, 2021 CISA and the Federal Bureau of Investigation (FBI) have released a Joint Cybersecurity Advisory (CSA) to address recently disclosed vulnerabilities in Microsoft Exchange Server. CISA and FBI assess that adversaries could exploit these vulnerabilities to compromise networks, steal information, encrypt data for ransom, or even execute a destructive attack. The CSA places the malicious cyber actor activity observed in the current Microsoft Exchange Server compromise into the MITRE Adversarial Tactics, Techniques, and Common Knowledge (ATT&CK®) framework. CISA recommends organizations to review Joint CSA: AA-21-069 Compromise of Microsoft Exchange Server as well as the CISA…

  • F5 Security Advisory for RCE Vulnerabilities in BIG-IP, BIG-IQ

    Original release date: March 10, 2021 F5 has released a security advisory to address remote code execution (RCE) vulnerabilities—CVE-2021-22986, CVE-2021-22987—impacting BIG-IP and BIG-IQ devices. An attacker could exploit these vulnerabilities to take control of an affected system. CISA encourages users and administrators review the F5 advisory and install updated software as soon as possible. This product is provided subject to this Notification and this Privacy & Use policy.

  • Microsoft Releases March 2021 Security Updates

    Original release date: March 10, 2021 Microsoft has released updates to address multiple vulnerabilities in Microsoft software. A remote attacker can exploit some of these vulnerabilities to take control of an affected system. CISA encourages users and administrators to review Microsoft’s March 2021 Security Update Summary and Deployment Information and apply the necessary updates. This product is provided subject to this Notification and this Privacy & Use policy.

  • Apple’s Device Location-Tracking System Could Expose User Identities

    Researchers have identified two vulnerabilities in the company’s crowd-sourced Offline Finding technology that could jeopardize its promise of privacy.

  • Breach Exposes Verkada Security Camera Footage at Tesla, Cloudflare

    Surveillance footage from companies such as Tesla as well as hospitals, prisons, police departments and schools was accessed in the hack.

Need Expert Cybersecurity Guidance?

Our US-based Security Operations Center is ready to help protect your organization.