CISA doesn’t know how many US federal agencies use firewalls to fend off malicious traffic

CISA doesn’t know how many US federal agencies use firewalls to fend off malicious traffic

Written by Tonya Riley Jun 21, 2021 | CYBERSCOOP The Department of Homeland Security’s top cybersecurity agency doesn’t know how many agencies are segmenting their networks from unwanted outside traffic, a basic security practice, according to a letter recently sent to the office of Sen. Ron Wyden (D-Ore.) by the agency. The agency provided the…

EU Proposes Joint Cybersecurity Unit

EU Proposes Joint Cybersecurity Unit

Cybercrime , Cyberwarfare / Nation-State Attacks , Fraud Management & Cybercrime Agency Would Help Member States Respond to Cyberattacks Akshaya Asokan (asokan_akshaya) • June 23, 2021     The European Commission has proposed creating a Joint Cyber Unit to help EU member states respond to and prevent cyberattacks, especially those involving ransomware. See Also: Bringing…

CVE-2021-0605 – Alert Detail – Security Database

CVE-2021-0605 – Alert Detail – Security Database

Executive Summary Informations Name CVE-2021-0605 First vendor Publication 2021-06-22 Vendor Cve Last vendor Modification 2021-06-22 Security-Database Scoring CVSS v3 Cvss vector : N/A Overall CVSS Score NA Base Score NA Environmental Score NA impact SubScore NA Temporal Score NA Exploitabality Sub Score NA   Calculate full CVSS 3.0 Vectors scores Security-Database Scoring CVSS v2 Cvss…

Unpatched Flaw in Linux Pling Store Apps Could Lead to Supply-Chain Attacks

Unpatched Flaw in Linux Pling Store Apps Could Lead to Supply-Chain Attacks

Cybersecurity researchers have disclosed a critical unpatched vulnerability affecting Pling-based free and open-source software (FOSS) marketplaces for Linux platform that could be potentially abused to stage supply-chain attacks and achieve remote code execution (RCE). “Linux marketplaces that are based on the Pling platform are vulnerable to a wormable [cross-site scripting] with potential for a supply-chain…

Australia Considers Mandating Ransom Payment Reporting

Australia Considers Mandating Ransom Payment Reporting

Fraud Management & Cybercrime , Legislation & Litigation , Ransomware Sponsor of Bill Says Ransomware Attacks Are ‘Completely Out of Control’ Prajeet Nair (@prajeetspeaks) • June 23, 2021     A bill introduced this week in the Australian Parliament would make it mandatory for organizations based in the country to report to the Australian Cyber…

SolarWinds clients are facing probe from US SEC over cyber-breach disclosures

SolarWinds clients are facing probe from US SEC over cyber-breach disclosures

The U.S. Securities and Exchange Commission (SEC) has opened an investigation into last year’s SolarWinds hack to determine whether some companies failed to disclose that they had been affected by the breach, Reuters reported, citing people familiar with the investigation. According to the sources, the SEC sent investigative letters last week to a number of…

Australia Considers Mandating Ransom Payment Reporting

Australia Considers Mandating Ransom Payment Reporting

Fraud Management & Cybercrime , Legislation & Litigation , Ransomware Sponsor of Bill Says Ransomware Attacks Are ‘Completely Out of Control’ Prajeet Nair (@prajeetspeaks) • June 23, 2021     A bill introduced this week in the Australian Parliament would make it mandatory for organizations based in the country to report to the Australian Cyber…