Patch Tuesday, December 2024 Edition

Credit to Author: BrianKrebs| Date: Wed, 11 Dec 2024 01:53:13 +0000

Microsoft today released updates to plug at least 70 security holes in Windows and Windows software, including one vulnerability that is already being exploited in active attacks. The zero-day seeing exploitation involves CVE-2024-49138, a security weakness in the Windows Common… Read More »

Read more

CISA Order Highlights Persistent Risk at Network Edge

Credit to Author: BrianKrebs| Date: Thu, 15 Jun 2023 15:40:09 +0000

The U.S. government agency in charge of improving the nation’s cybersecurity posture is ordering all federal civilian agencies to take new measures to restrict access to Internet-exposed networking equipment. The directive comes amid a surge in attacks targeting previously unknown vulnerabilities in widely used security and networking appliances.

Read more

Rubrik is latest victim of the Clop ransomware zero-day campaign

Categories: News

Categories: Ransomware

Tags: Rubrik

Tags: GoAnywhere MFT

Tags: Fortra

Tags: Clop ransomware

Tags: Clop

Tags: ransomware

Tags: CVE-2023-0669

Tags: zero-day

Rubrik, a cloud data management company, has revealed that Clop made use of an infamous GoAnywhere flaw.

(Read more…)

The post Rubrik is latest victim of the Clop ransomware zero-day campaign appeared first on Malwarebytes Labs.

Read more

GoAnywhere zero-day opened door to Clop ransomware

Categories: News

Categories: Ransomware

Tags: Clop

Tags: Clop ransomware

Tags: ransomware

Tags: GoAnywhere

Tags: managed file transfer

Tags: MFT

Tags: Fortra

Tags: CISA

Tags: Known Exploited Vulnerabilities Catalog

The Clop ransomware gang has claimed responsibility for a wave of attacks that exploited a zero-day in GoAnywhere MFT admin consoles.

(Read more…)

The post GoAnywhere zero-day opened door to Clop ransomware appeared first on Malwarebytes Labs.

Read more

Update now! GoAnywhere MFT zero-day patched

Categories: News

Tags: GoAnywhere MFT

Tags: managed file transfer

Tags: Kevin Beaumont

Tags: Brian Krebs

Tags: emergency patch 7.1.2

Tags: Fortra

Tags: Cobalt Strike

Tags: Florian Hauser

Tags: Code White

A bug in GoAnywhere, a B2B management file transfer software, could lead to a serious supply chain attack if left unpatched. Update now!

(Read more…)

The post Update now! GoAnywhere MFT zero-day patched appeared first on Malwarebytes Labs.

Read more