Content Paint
The Stack

The Stack

New Fortra GoAnywhere vulnerability CVE-2024-0204

A 10-line exploit is now widely available. Unpatched instances *will* come under attack.

Job of the Week: Head of IT Transformation, Allianz

Allianz more broadly has successfully ditched mainframe-based core IT applications for x67 servers with Linux operating systems.

VMware is "killing off" 56 products amid "tectonic" infrastructure shift

Goodbye vSphere Hypervisor. Goodbye Aria Operations. Goodbye NCX. Goodbye HCX. Goodbye more acronyms than we know what to do with; though Broadcom does; at least as standalone SKUs...

microsoft taskweaver ai framework

Stateful. A Web UI. Customisable plugins. Six LLMs supported. Nice work, Microsoft.

Ivanti VPN appliance exploitation now happening at scale

VPN appliances "all appear to have been constructed with the code equivalent of string, stamped with the word ‘secure’ and then just left to decay for 20 years..."

google cloud exit fees

GCP's somewhat limited move to drop "cloud switching" charges is aimed squarely at Microsoft.

SEC’s X account hacked: Unlike Mandiant, no MFA was in place

"The SEC has not approved the listing and trading of spot bitcoin exchange-traded products"

Software licensing bug percolates pre-auth RCE risk downstream to PLC-land

Another arguably more potent example and one actively exploited in the wild is CVE-2023-46604 – a CVSS 10 RCE vulnerability in Apache ActiveMQ; an open source message broker written in Java.

AWS rattles customers with unclear warning over mystery "recent CVE"

Warns users it will terminate affected tasks, but leaves a lacuna... (Fear not, we're here with details)

Search the site

Your link has expired. Please request a new one.
Your link has expired. Please request a new one.
Your link has expired. Please request a new one.
Great! You've successfully signed up.
Great! You've successfully signed up.
Welcome back! You've successfully signed in.
Success! You now have access to additional content.