October 2024

Top EU court overturns Intel’s billion-dollar antitrust fine

Top EU court overturns Intel’s billion-dollar antitrust fine 2024-10-24 at 17:05 By Dan Robinson Conditional rebates settled, but $400M matter of naked restrictions remains Intel has a spot of good news for a change. The EU Court of Justice has upheld an earlier ruling that canceled a €1.06 billion ($1.1 billion) fine against the chipmaker

Top EU court overturns Intel’s billion-dollar antitrust fine Read More »

CISA Flags Critical Vulnerability (CVE-2024-47575) in Fortinet’s FortiManager 

CISA Flags Critical Vulnerability (CVE-2024-47575) in Fortinet’s FortiManager  2024-10-24 at 17:03 By Cyble Overview  The Cybersecurity and Infrastructure Security Agency (CISA) has added Fortinet’s FortiManager to its known Exploited Vulnerabilities (KEV) catalog, indicating a pressing need for organizations to address the associated risks.  The critical vulnerability identified as CVE-2024-47575 has been assigned a CVSS score

CISA Flags Critical Vulnerability (CVE-2024-47575) in Fortinet’s FortiManager  Read More »

AWS Cloud Development Kit Vulnerability Exposes Users to Potential Account Takeover Risks

AWS Cloud Development Kit Vulnerability Exposes Users to Potential Account Takeover Risks 2024-10-24 at 17:03 By Cybersecurity researchers have disclosed a security flaw impacting Amazon Web Services (AWS) Cloud Development Kit (CDK) that could have resulted in an account takeover under specific circumstances. “The impact of this issue could, in certain scenarios, allow an attacker

AWS Cloud Development Kit Vulnerability Exposes Users to Potential Account Takeover Risks Read More »

With record revenue, SK hynix brushes off suggestion of AI chip oversupply

With record revenue, SK hynix brushes off suggestion of AI chip oversupply 2024-10-24 at 16:33 By Laura Dobberstein How embarrassing for Samsung SK hynix posted on Wednesday what it called its “highest revenue since its foundation” for Q3 2024 as it pledged to continue minuting more AI chips.… This article is an excerpt from The

With record revenue, SK hynix brushes off suggestion of AI chip oversupply Read More »

Trustwave Again Named as an MSSP Alert Top 10 Managed Security Services Provider

Trustwave Again Named as an MSSP Alert Top 10 Managed Security Services Provider 2024-10-24 at 16:03 By For eight consecutive years, MSSP Alert has named Trustwave as one of the Top 10 Managed Security Services Providers worldwide. Trustwave placed 10th on MSSP’s 2024 Top 250 MSSP list, indicating the company’s status as a leading provider of managed security services. This

Trustwave Again Named as an MSSP Alert Top 10 Managed Security Services Provider Read More »

Cisco Issues Urgent Fix for ASA and FTD Software Vulnerability Under Active Attack

Cisco Issues Urgent Fix for ASA and FTD Software Vulnerability Under Active Attack 2024-10-24 at 16:03 By Cisco on Wednesday said it has released updates to address an actively exploited security flaw in its Adaptive Security Appliance (ASA) that could lead to a denial-of-service (DoS) condition. The vulnerability, tracked as CVE-2024-20481 (CVSS score: 5.8), affects

Cisco Issues Urgent Fix for ASA and FTD Software Vulnerability Under Active Attack Read More »

Weekly Industrial Control System (ICS) Vulnerability Intelligence Report: New Flaws Affecting Siemens, Schneider Electric, and More 

Weekly Industrial Control System (ICS) Vulnerability Intelligence Report: New Flaws Affecting Siemens, Schneider Electric, and More  2024-10-24 at 15:48 By Cyble Overview  Cyble Research & Intelligence Labs (CRIL) has shared new details about weekly industrial control systems (ICS) vulnerabilities. These vulnerabilities were issued by the Cybersecurity and Infrastructure Security Agency (CISA) from October 15 to

Weekly Industrial Control System (ICS) Vulnerability Intelligence Report: New Flaws Affecting Siemens, Schneider Electric, and More  Read More »

Bitwarden’s FOSS halo slips as new SDK requirement locks down freedoms

Bitwarden’s FOSS halo slips as new SDK requirement locks down freedoms 2024-10-24 at 14:48 By Liam Proven Arguments continue but change suggests it’s not Free Software anymore The Bitwarden online credentials storage service is changing its build requirements – which some commentators feel mean it’s no longer FOSS.… This article is an excerpt from The

Bitwarden’s FOSS halo slips as new SDK requirement locks down freedoms Read More »

Why Phishing-Resistant MFA Is No Longer Optional: The Hidden Risks of Legacy MFA

Why Phishing-Resistant MFA Is No Longer Optional: The Hidden Risks of Legacy MFA 2024-10-24 at 14:48 By Sometimes, it turns out that the answers we struggled so hard to find were sitting right in front of us for so long that we somehow overlooked them. When the Department of Homeland Security, through the Cybersecurity and

Why Phishing-Resistant MFA Is No Longer Optional: The Hidden Risks of Legacy MFA Read More »

Ransomware’s ripple effect felt across ERs as patient care suffers

Ransomware’s ripple effect felt across ERs as patient care suffers 2024-10-24 at 13:49 By Jessica Lyons 389 US healthcare orgs infected this year alone Ransomware infected 389 US healthcare organizations this fiscal year, putting patients’ lives at risk and costing facilities up to $900,000 a day in downtime alone, according to Microsoft.… This article is

Ransomware’s ripple effect felt across ERs as patient care suffers Read More »

Lazarus Group Exploits Google Chrome Vulnerability to Control Infected Devices

Lazarus Group Exploits Google Chrome Vulnerability to Control Infected Devices 2024-10-24 at 13:20 By The North Korean threat actor known as Lazarus Group has been attributed to the zero-day exploitation of a now-patched security flaw in Google Chrome to seize control of infected devices. Cybersecurity vendor Kaspersky said it discovered a novel attack chain in

Lazarus Group Exploits Google Chrome Vulnerability to Control Infected Devices Read More »

Here’s a NIS2 compliance checklist since no one cares about deadlines anymore

Here’s a NIS2 compliance checklist since no one cares about deadlines anymore 2024-10-24 at 12:48 By Connor Jones Only two EU members have completed the transposition into domestic law The European Union’s NIS2 Directive came into force on January 16, 2023, and member states had until October 17, 2024, to transpose it into national law.

Here’s a NIS2 compliance checklist since no one cares about deadlines anymore Read More »

Understanding the Initial Stages of Web Shell and VPN Threats: An MXDR Analysis

Understanding the Initial Stages of Web Shell and VPN Threats: An MXDR Analysis 2024-10-24 at 12:33 By While cyberattacks that employ web shells and VPN compromise are not particularly novel, they are still prevalent. The recent incidents that Trend Micro MXDR analyzed highlight the importance of behavioral analysis and anomaly detection in security measures. This

Understanding the Initial Stages of Web Shell and VPN Threats: An MXDR Analysis Read More »

Fortinet FortiManager flaw exploited in zero-day attacks (CVE-2024-47575)

Fortinet FortiManager flaw exploited in zero-day attacks (CVE-2024-47575) 2024-10-24 at 12:18 By Zeljka Zorz Fortinet has finally made public information about CVE-2024-47575, a critical FortiManager vulnerability that attackers have exploited as a zero-day. About CVE-2024-47575 CVE-2024-47575 is a vulnerability stemming from missing authentication for a critical function in FortiManager’s fgfmd daemon. Remote, unauthenticated attackers could

Fortinet FortiManager flaw exploited in zero-day attacks (CVE-2024-47575) Read More »

Nucleus Security unveils POAM Process Automation for federal agencies

Nucleus Security unveils POAM Process Automation for federal agencies 2024-10-24 at 12:03 By Industry News Nucleus Security announced Nucleus POAM Process Automation, a comprehensive solution for federal agencies and their vendors to streamline risk management and automate their Plan of Action and Milestones (POA&M) process. This solution overcomes error-prone and labor-intensive manual processes by automating

Nucleus Security unveils POAM Process Automation for federal agencies Read More »

Scroll to Top