Security News

Sophos antivirus driver caused BSODs after Windows KB5013943 update
2022-05-16 15:43

Sophos has released a fix for a known issue triggering blue screens of death on Windows 11 systems running Sophos Home antivirus software after installing the KB5013943 update. "Customers on Windows 11 running Sophos Home may encounter a BSOD/Stop error after installing Windows Update KB5013943 and restarting their machines," the cybersecurity vendor explains.

Week in review: Spring4Shell vulnerability, attackers exploiting patched RCE in Sophos Firewall
2022-04-03 08:00

Attackers are exploiting recently patched RCE in Sophos FirewallA critical vulnerability in Sophos Firewall in being exploited in the wild to target "a small set of specific organizations primarily in the South Asia region," Sophos has warned. IceID trojan delivered via hijacked email threads, compromised MS Exchange serversA threat actor is exploiting vulnerable on-prem Microsoft Exchange servers and using hijacked email threads to deliver the IceID trojan without triggering email security solutions.

CISA orders agencies to patch actively exploited Sophos firewall bug
2022-03-31 19:46

The Cybersecurity and Infrastructure Security Agency has ordered federal civilian agencies on Thursday to patch a critical Sophos firewall bug and seven other vulnerabilities within the next three weeks, all exploited in ongoing attacks. CISA also ordered federal agencies to patch a high severity arbitrary file upload vulnerability in the Trend Micro Apex Central product management console that can be abused in remote code execution attacks.

Sophos warns critical firewall bug is being actively exploited
2022-03-29 14:00

British-based cybersecurity vendor Sophos warned that a recently patched Sophos Firewall bug allowing remote code execution is now actively exploited in attacks. The vulnerability was discovered and reported by an anonymous researcher who found that it impacts Sophos Firewall v18.5 MR3 and older.

Attackers are exploiting recently patched RCE in Sophos Firewall (CVE-2022-1040)
2022-03-29 08:49

A critical vulnerability in Sophos Firewall in being exploited in the wild to target "a small set of specific organizations primarily in the South Asia region," Sophos has warned. CVE-2022-1040 is an authentication bypass vulnerability in the User Portal and Webadmin of Sophos Firewall, and can be exploited by attackers to achieve remote code execution on vulnerable appliances.

Critical Sophos Firewall RCE Vulnerability Under Active Exploitation
2022-03-29 03:32

Cybersecurity firm Sophos on Monday warned that a recently patched critical security vulnerability in its firewall product is being actively exploited in real-world attacks.The flaw, tracked as CVE-2022-1040, is rated 9.8 out of 10 on the CVSS scoring system and impacts Sophos Firewall versions 18.5 MR3 and older.

Sophos fixes critical hijack flaw in firewall offering
2022-03-28 19:56

Sophos has patched a remote code execution vulnerability in its firewall gear that was disclosed via its bug-bounty program. The flaw is present in the User Portal and Webadmin user interfaces of Sophos Firewall.

Critical Sophos Security Bug Allows RCE on Firewalls
2022-03-28 17:33

Cybersecurity stalwart Sophos has plugged a critical vulnerability in its firewall product, which could allow remote code-execution. The flaw, tracked as CVE-2022-1040, is specifically an authentication-bypass vulnerability in the User Portal and Webadmin of the Sophos Firewall.

Critical Sophos Firewall vulnerability allows remote code execution
2022-03-27 12:03

Sophos has fixed a critical vulnerability in its Sophos Firewall product that allows remote code execution. Tracked as CVE-2022-1040, the authentication bypass vulnerability exists in the User Portal and Webadmin areas of Sophos Firewall.

Sophos vs. Kaspersky: Choosing the best antivirus program for your security needs
2022-03-11 19:14

Security suites like Kaspersky and Sophos can make buyers safer from things like viruses, spyware, adware, worms, and trojans. Security for organizations is synchronized between endpoints in real-time for fast reactions to security threats.