CVE-2021-35392
CVE-2021-35392
The Czech government said Saturday it would expel 18 Russian diplomats identified by local intelligence as secret agents of the Russian SVR and GRU services that are suspected of involvement in a 2014 explosion. Czech police also said later they were seeking two Russians in connection with the blast, which killed two people, with passports…
On the Friday heading into Memorial Day weekend this year, it was meat processing giant JBS. On the Friday before the Fourth of July, it was IT management software company Kaseya and, by extension, over a thousand businesses of varying size. It remains to be seen whether Labor Day will see a high-profile ransomware meltdown…
The nation’s largest oil pipeline is having issues with its scheduling system for future shipments. Colonial Pipeline’s network was down Tuesday just days after the pipeline reopened from a week-long shutdown. Last week’s cyberattack pushed gas prices to a seven-year high and caused fuel shortages. See more stories on Insider’s business page. Colonial Pipeline is having…
Governance & Risk Management , IT Risk Management , Patch Management Flaw Allows Unauthorized Users to Send Specially Crafted Requests Prajeet Nair (@prajeetspeaks) • February 25, 2021 Security firm Positive Technologies says more than 6,000 VMware vCenter devices worldwide that are accessible via the internet contain a critical remote code execution vulnerability. VMware…
Cybersecurity firms are usually using headless devices or virtual machines to determine if a website is used for phishing. In order to bypass detection, a phishing kit will make use of JavaScript to check whether a browser is running under a virtual machine or without an attached monitor, if the kit discovers any signs of…
Zero-day vulnerabilities in Microsoft Exchange Server | IT Security News 4. March 2021 The four vulnerabilities inside Microsoft Exchange Server allow an attacker to compromise a vulnerable server. As a result, an attacker will gain access to all registered email accounts, or be able to execute arbitrary code (remote code execution or RCE) within the…