Content Paint

Security

SonicWall says VPN *is* safe after 0day breach of its mobile access tool - SMA 100 requires remediation.

"A coordinated attack on internal systems by highly sophisticated threat actors"

SAP's "Active Directory-equivalent" has a CVSS 10-rated critical bug

Security experts warn that unpatched vulns remain better than 0days for attackers.

Pre-auth RCE vulnerabilities in Cisco's SD-WAN give attackers root privileges.

"Execute arbitrary code on the underlying OS with root privileges".

Malwarebytes the latest victim of SolarWinds attackers: Here's how the threat group is pivoting to Azure/O365 tenants - and how to secure them.

Help yourself to a third free tool to audit AD permission.

Dridex crimeware is back with a vengeance - and now it's dropping ransomware too.

Malicious Excel docs are the most common dropper.

NSA: DNS-over-HTTPS "no panacea". NCSC: Handy if *we* run it, though.

DoH can "bring issues to enterprises, including a false sense of security" says NSA.

NSA's Anne Neuberger lands key Biden administration cybersecurity role

New team will "prepare for and respond to the full spectrum of threats"

A critical bug in Microsoft Defender has been actively exploited in the wild.

0day is one of 83 CVEs in Patch Tuesday

Mimecast certs compromised by "sophisticated threat actor"

Mimecast certificates used to authenticate its products to Microsoft 365 Exchange Web Services exploited.

Search the site

Your link has expired. Please request a new one.
Your link has expired. Please request a new one.
Your link has expired. Please request a new one.
Great! You've successfully signed up.
Great! You've successfully signed up.
Welcome back! You've successfully signed in.
Success! You now have access to additional content.