Archive for Cybersecurity - page 144

CISA and NSA Publish Joint Cybersecurity Advisory on Control System Defense

Original release date: September 22, 2022 CISA and the National Security Agency (NSA) have published a joint cybersecurity advisory about control system defense for operational technology (OT) and industrial control systems (ICSs). Control System Defense: Know the Opponent is intended to provide critical infrastructure owners…

Continue reading →

Rilevato sfruttamento in rete della CVE-2022-35405 in prodotti Zoho (AL01/220923/CSIRT-ITA)

Rilevato lo sfruttamento attivo in rete della vulnerabilità CVE-2022-35405 – già sanata dal vendor – presente nei prodotti Zoho ManageEngine Password Manager Pro, PAM360 e Access Manager Plus. Source link Author: csirt@alfacert.gov.it Article used for cyber security disclosure.

Continue reading →

CISA Has Added One Known Exploited Vulnerability to Catalog 

Original release date: September 23, 2022 CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise….

Continue reading →

Rilasciati aggiornamenti di sicurezza per Jenkins Core (AL02/220923/CSIRT-ITA)

Rilasciato il Jenkins Security Advisory del 21 settembre che risolve una vulnerabilità in Jenkins (Core) weekly. Source link Author: csirt@alfacert.gov.it Article used for cyber security disclosure.

Continue reading →

CISA Has Added One Known Exploited Vulnerability to Catalog 

Original release date: September 22, 2022 CISA has added one new vulnerability to it’s Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risk to the federal enterprise. Note:…

Continue reading →

Aggiornamento per Microsoft Endpoint Configuration Manager (AL03/220921/CSIRT-ITA)

Disponibile un nuovo aggiornamento di sicurezza Microsoft che risolve una vulnerabilità, con gravità “alta”, nel prodotto Endpoint Configuration Manager. Source link Author: csirt@alfacert.gov.it Article used for cyber security disclosure.

Continue reading →

CISA Releases Eight industrial Control Systems Advisories

Original release date: September 19, 2022 | Last revised: September 20, 2022 CISA has released eight (8) Industrial Control Systems (ICS) advisories on September 20, 2022. These advisories provide timely information about current security issues, vulnerabilities, and exploits surrounding ICS. CISA encourages users and administrators…

Continue reading →

Analisi: modalità di evasione del TAG MOTW (BL01/220920/CSIRT-ITA)

Il Multi State Information Sharing and Analysis Center MS-ISAC ha recentemente rilasciato un report volto ad evidenziare nuove modalità di attacco – utilizzate dai principali threat actor – a seguito del blocco da parte di Microsoft delle macro all’interno di documenti provenienti da risorse web….

Continue reading →

Page 144 of 169 ← First ... 142 143 144 145 146 ... Last →