Security News

CISA says critical Fortinet RCE flaw now exploited in attacks
2024-10-09 22:07

​Today, CISA revealed that attackers actively exploit a critical FortiOS remote code execution (RCE) vulnerability in the wild. [...]

Mozilla fixes Firefox zero-day actively exploited in attacks
2024-10-09 17:34

Mozilla has issued an emergency security update for the Firefox browser to address a critical use-after-free vulnerability that is currently exploited in attacks. [...]

20% of Generative AI ‘Jailbreak’ Attacks Succeed, With 90% Exposing Sensitive Data
2024-10-09 16:29

On average, it takes adversaries just 42 seconds and five interactions to execute a GenAI jailbreak, according to Pillar Security.

Microsoft Detects Growing Use of File Hosting Services in Business Email Compromise Attacks
2024-10-09 04:22

Microsoft is warning of cyber attack campaigns that abuse legitimate file hosting services such as SharePoint, OneDrive, and Dropbox that are widely used in enterprise environments as a defense...

Microsoft issues 117 patches – some for flaws already under attack
2024-10-08 23:30

Plus: SAP re-patches a failed patch for critical-rated flaw Patch Tuesday It's the second Tuesday of the month, which means Patch Tuesday, bringing with it fixes for numerous flaws, bugs and...

New scanner finds Linux, UNIX servers exposed to CUPS RCE attacks
2024-10-08 21:48

An automated scanner has been released to help security professionals scan environments for devices vulnerable to the Common Unix Printing System (CUPS) RCE flaw tracked as CVE-2024-47176. [...]

Ivanti warns of three more CSA zero-days exploited in attacks
2024-10-08 16:05

American IT software company Ivanti has released security updates to fix three new Cloud Services Appliance (CSA) zero-days tagged as actively exploited in attacks. [...]

Websites are losing the fight against bot attacks
2024-10-08 03:00

The discovery that 95% of advanced bot attacks go undetected points to a weakness in current detection and mitigation strategies. This suggests that while some organizations may have basic...

American Water rinsed in cyber attack, turns off app
2024-10-07 21:30

It's still safe to drink, top provider tells us Updated American Water, which supplies over 14 million people in the US and numerous military bases, has stopped issuing bills and has taken its...

Qualcomm patches high-severity zero-day exploited in attacks
2024-10-07 18:30

Qualcomm has released security patches for a zero-day vulnerability in the Digital Signal Processor (DSP) service that impacts dozens of chipsets. [...]