Cyber Security Alerts & Threat Intelligence

Stay up to date with the latest security alerts and threat intelligence updates

Latest Alerts

  • Vulnerability Summary for the Week of December 7, 2020

    Original release date: December 14, 2020   High Vulnerabilities Primary Vendor — Product Description Published CVSS Score Source & Patch Info acdsee — photo_studio_2021 PlugInsIDE_ACDStd.apl in ACDSee Photo Studio Studio Professional 2021 14.0 Build 1705 has a User Mode Write AV starting at IDE_ACDStd!JPEGTransW+0x00000000000031aa. 2020-12-07 7.5 CVE-2020-29595 MISC anydesk — anydesk AnyDesk for macOS versions 6.0.2 and older have a vulnerability in the XPC interface that does not properly validate client requests and allows local privilege escalation. 2020-12-09 7.2 CVE-2020-27614 MISC MISC apache — storm_docker The official storm Docker images before 1.2.1 contain a blank password for a root user.…

  • Ex-Cisco Employee Convicted for Deleting 16K Webex Accounts

    The insider threat will go to jail for two years after compromising Cisco’s cloud infrastructure.

  • DHS Among Those Hit in Sophisticated Cyberattack by Foreign Adversaries – Report

    The attack was mounted via SolarWinds Orion, in a manual and targeted supply-chain effort.

  • Microsoft Office 365 Credentials Under Attack By Fax ‘Alert’ Emails

    Emails from legitimate, compromised accounts are being sent to numerous enterprise employees with the aim of stealing their O365 credentials.

  • New Windows Trojan Steals Browser Credentials, Outlook Files

    The newly discovered Python-based malware family targets the Outlook processes, and browser credentials, of Microsoft Windows victims.

  • Active Exploitation of SolarWinds Software

    Original release date: December 13, 2020 The Cybersecurity and Infrastructure Security Agency (CISA) is aware of active exploitation of a vulnerability in SolarWinds Orion Platform software versions 2019.4 through 2020.2.1, which was released between March 2020 through June 2020. CISA encourages affected organizations to read the SolarWinds and FireEye advisories for more information and FireEye’s GitHub page for detection countermeasures: SolarWinds Security Advisory FireEye Advisory: Highly Evasive Attacker Leverages SolarWinds Supply Chain to Compromise Multiple Global Victims With SUNBURST Backdoor FireEye GitHub page: Sunburst Countermeasures    This product is provided subject to this Notification and this Privacy & Use policy.

  • Security Issues in PoS Terminals Open Consumers to Fraud

    Point-of-sale terminal vendors Verifone and Ingenico have issued mitigations after researchers found the devices use default passwords.

  • PGMiner, Innovative Monero-Mining Botnet, Surprises Researchers

    The malware takes aim at PostgreSQL database servers with never-before-seen techniques.

  • Feds: K-12 Cyberattacks Dramatically on the Rise

    Attackers are targeting students and faculty alike with malware, phishing, DDoS, Zoom bombs and more, the FBI and CISA said.

  • Cisco Releases Security Updates for Jabber Desktop and Mobile Client Software

    Original release date: December 11, 2020 Cisco has released security updates to address vulnerabilities in Jabber for Windows, Jabber for MacOS, and Jabber for mobile platforms. A remote attacker could exploit some of these vulnerabilities to take control of an affected system. The Cybersecurity and Infrastructure Security Agency (CISA) encourages users and administrators to review Cisco Security Advisory cisco-sa-jabber-ZktzjpgO and apply the necessary updates. This product is provided subject to this Notification and this Privacy & Use policy.

  • Defending the Intelligent Edge from Evolving Attacks

    Fortinet’s Aamir Lakhani discusses best practices for securing company data against next-gen threats, like edge access trojans (EATs).

  • Adobe Releases Security Updates for Acrobat and Reader

    Original release date: December 10, 2020 Adobe has released security updates to address a vulnerability in Acrobat and Reader. An attacker could exploit this vulnerability to obtain sensitive information. The Cybersecurity and Infrastructure Security Agency (CISA) encourages users and administrators to review Adobe Security Bulletin APSB20-75 and apply the necessary updates. This product is provided subject to this Notification and this Privacy & Use policy.

Need Expert Cybersecurity Guidance?

Our US-based Security Operations Center is ready to help protect your organization.