Security News > 2020 > October

Critical flaw in SonicWall’s firewalls patched, update quickly! (CVE-2020-5135)
2020-10-16 10:52

Earlier this week SonicWall patched 11 vulnerabilities affecting its Network Security Appliance. The SonicWall NSAs are next-generation firewall appliances, with a sandbox, an intrusion prevention system, SSL/TLS decryption and inspection capabilities, network-based malware protection, and VPN capabilities.

Windows 10: Microsoft's key new security feature helps to protect your information
2020-10-16 09:52

Over the years, Microsoft has extended DLP to more of Office, covering Exchange, SharePoint, Teams, OneDrive for Business and Office apps like Word, PowerPoint, Excel and Outlook, as well as third-party applications that incorporate the MIP SDK. Now it's integrated into Windows 10 and the new Edge browser, without needing an additional agent. You use the new Microsoft 365 compliance center to start managing devices - although you can onboard devices using Group Policy, Microsoft Endpoint Configuration Manager, MDM or a local script.

Iran-Linked 'Silent Librarian' Back at Phishing Universities
2020-10-16 08:54

Iran-linked state-sponsored threat actor 'Silent Librarian' has launched another phishing campaign targeting universities around the world. Silent Librarian, Malwarebytes' security researchers reveal, has sent spear-phishing emails to both staff and students at the targeted universities, and the threat actor was observed setting up new infrastructure to counter efforts to take down its domains.

Critical SonicWall vulnerability affects 800K firewalls, patch now
2020-10-16 06:35

A critical stack-based Buffer Overflow vulnerability has been discovered in SonicWall VPNs. When exploited, it allows unauthenticated remote attackers to execute arbitrary code on the impacted devices. Tracked as CVE-2020-5135, the vulnerability impacts multiple versions of SonicOS ran by hundreds of thousands of active VPNs. Craig Young of Tripwire Vulnerability and Exposure Research Team and Nikita Abramov of Positive Technologies have been credited with discovering and reporting the vulnerability.

New research shows risk in healthcare supply chain
2020-10-16 05:00

New research from RiskRecon and the Cyentia Institute pinpointed risk in third-party healthcare supply chain and showed that healthcare's high exposure rate indicates that managing a comparatively small Internet footprint is a big challenge for many organizations in that sector. There is a silver lining: gaining the visibility needed to pinpoint and rectify exposures in the healthcare risk surface is feasible.

New infosec products of the week: October 16, 2020
2020-10-16 04:30

Cyborg Security launches HUNTR platform to help orgs tackle cyber threats. Cyborg Security's HUNTR platform provides advanced and contextualized threat hunting and detection packages containing behaviorally based threat hunting content, threat emulation, and detailed runbooks, supplying organizations what they need to evolve their security analysts into skilled hunters.

Threat intelligence platform market to reach $234.9 million by 2022
2020-10-16 04:00

The growing volume and complexities of cyber threats present a compelling case for adopting threat intelligence platforms, a Frost & Sullivan analysis finds. These solutions help organizations navigate the ever-increasing threat landscape and allow for further analysis and threat intelligence operationalization.

Banks risk losing customers with anti-fraud practices
2020-10-16 03:30

Many banks across the U.S. and Canada are failing to meet their customers' online identity fraud and digital banking needs, according to a survey from FICO. Despite COVID-19 quickly turning online banking into an essential service, the survey found that financial institutions across North America are struggling to establish practices that combat online identity fraud and money laundering, without negatively impacting customer experience. 51 percent of North American banks are still asking customers to prove their identities by visiting branches or posting documents when opening digital accounts.

Office 365 adds protection against downgrade and MITM attacks
2020-10-16 03:30

Microsoft is working on adding SMTP MTA Strict Transport Security support to Exchange Online to ensure Office 365 customers' email communication security and integrity. Once MTA-STS is available in Office 365 Exchange Online, emails sent by users via Exchange Online will only one delivered using connections with both authentication and encryption, protecting against both email interception and attacks.

Critical Vulnerability Allows Hackers to Disrupt SonicWall Firewalls
2020-10-16 03:25

A significant number of SonicWall firewalls may be affected by a critical vulnerability that can be exploited for denial-of-service attacks and possibly arbitrary code execution. The vulnerability, identified as CVE-2020-5135, impacts various versions of SonicOS, the operating system powering SonicWall firewalls.