21 Nov Auto parts giant AutoZone warns of MOVEit data breach AutoZone is warning tens of thousands of its customers that it suffered a data breach as part of the Clop MOVEit file transfer attacks. […]
21 Nov CISA orders federal agencies to patch Looney Tunables Linux bug Today, CISA ordered U.S. federal agencies to secure their systems against an actively exploited vulnerability that lets attackers gain root privileges on many major Linux distributions. […]
21 Nov Citrix warns admins to kill NetScaler user sessions to block hackers Citrix reminded admins today that they must take additional measures after patching their NetScaler appliances against the CVE-2023-4966 ‘Citrix Bleed’ vulnerability to secure vulnerable devices against attacks. […]
20 Nov Cybersecurity firm executive pleads guilty to hacking hospitals The former chief operating officer of a cybersecurity company has pleaded guilty to hacking two hospitals, part of the Gwinnett Medical Center (GMC), in June 2021 to boost his company’s business. […]
20 Nov Canadian government discloses data breach after contractor hacks The Canadian government says two of its contractors have been hacked, exposing sensitive information belonging to an undisclosed number of government employees. […]
20 Nov Kinsing malware exploits Apache ActiveMQ RCE to plant rootkits The Kinsing malware operator is actively exploiting the CVE-2023-46604 critical vulnerability in the Apache ActiveMQ open-source message broker to compromise Linux systems. […]
20 Nov Rhysida ransomware gang claims British Library cyberattack The Rhysida ransomware gang has claimed responsibility for a cyberattack on the British Library in October, which has caused a major ongoing IT outage. […]
20 Nov How to boost Security with Self-Service Password Resets Learn more from Specops Software about the benefits of self-service password resets and ways to accomplish this with on-premises Active Directory. […]
18 Nov Windows 10 to let admins control how optional updates are deployed Microsoft announced a new policy that allows admins to control how optional updates are deployed on Windows 10 enterprise endpoints on their networks. […]
18 Nov FCC adopts new rules to protect consumers from SIM-swapping attacks The Federal Communications Commission (FCC) has revealed new rules to shield consumers from criminals who hijack their phone numbers in SIM swapping attacks and port-out fraud. […]