Microsoft Releases Out-of-Band Security Patches for Exchange Server — Redmondmag.com

Microsoft Releases Out-of-Band Security Patches for Exchange Server — Redmondmag.com

News Microsoft Releases Out-of-Band Security Patches for Exchange Server Microsoft on Tuesday released out-of-band security patches for Exchange Server to address multiple zero-day flaws that are currently being exploited in active attacks. Organizations running Exchange Server 2013, Exchange Server 2016 and Exchange Server 2019 products should apply these patches right away. Microsoft also released security…

US announces sanctions on Russia over Alexei Navalny’s poisoning

US announces sanctions on Russia over Alexei Navalny’s poisoning

The sanctions are the first against Russia by the Biden administration, which has pledged to confront President Vladimir Putin for alleged attacks on Russian opposition figures and hacking abroad, including of US government agencies and US businesses. Former president Donald Trump had spoken admiringly of Putin and resisted criticism and many proposed penalties of Putin’s…

NSA Publishes Guidance on Adoption of Zero Trust Security

NSA Publishes Guidance on Adoption of Zero Trust Security

The U.S. National Security Agency (NSA) has published guidance on how security professionals can secure enterprise networks and sensitive data by adopting a Zero Trust security model. Titled “Embracing a Zero Trust Security Model,” the document details the benefits and challenges of the security model, and also provides a series of recommendations on the implementation…

Vendor Quickly Patches Serious Vulnerability in NATO-Approved Firewall

Vendor Quickly Patches Serious Vulnerability in NATO-Approved Firewall

A critical vulnerability discovered in a firewall appliance made by Germany-based cybersecurity company Genua could be useful to threat actors once they’ve gained access to an organization’s network, according to Austrian cybersecurity consultancy SEC Consult. Genua Genugate is a firewall designed for protecting internal networks against external threats, segmenting internal networks, and protecting machine-to-machine communications….

SolarWinds Blames Intern for ‘solarwinds123’ Password Lapse

SolarWinds Blames Intern for ‘solarwinds123’ Password Lapse

As cybersecurity researchers continue to piece together the sprawling SolarWinds supply chain attack, top executives of the Texas-based software services firm blamed an intern for a critical password lapse that went unnoticed for several years. The said password “solarwinds123” was originally believed to have been publicly accessible via a GitHub repository since June 17, 2018,…

Social media bots related to the sale of GameStop shares and other meme stocks

Social media bots related to the sale of GameStop shares and other meme stocks

Cybersecurity experts at PiiQ Media report detecting a social media bot campaign that has been promoting “meme stocks” like GameStop Corp, suggesting that a hacking group might be behind the recent purchase frenzy powered by Reddit. After a group of users organized through Reddit forums, the price of GameStop shares skyrocketed, in an attempt to…