TechDay New Zealand - Aotearoa's technology news network

Common Vulnerabilities and Exposures (CVE) stories - Page 3

Story image
December Patch Tuesday reveals 70 vulnerabilities
Wed, 11th Dec 2024
#
ransomware
#
iam
#
microsoft
This December, Microsoft addresses 70 vulnerabilities, including 16 critical remote code execution flaws, in its latest Patch Tuesday update.
Story image
Nozomi uncovers critical flaws in Advantech networks gear
Thu, 28th Nov 2024
#
firewalls
#
network security
#
iot security
Nozomi Networks has revealed serious vulnerabilities in Advantech's wireless access points, endangering the security of critical infrastructure across sectors.
Story image
Ransomware attacks rise by 19% in October according to NCC Group
Mon, 25th Nov 2024
#
ransomware
#
mfa
#
physical security
Ransomware attacks surged 19% in October, totalling 486 incidents globally, as threat actors increasingly targeted critical infrastructure sectors.
Story image
Hackuity on cyber security challenges & trends for 2025
Sat, 23rd Nov 2024
#
skills gap
#
job market
#
hackuity
Pierre Samson of Hackuity warns that balancing cyber security compliance costs will pose a major challenge for organisations in 2025.
Story image
Critical needrestart vulnerabilities found in Ubuntu Servers
Wed, 20th Nov 2024
#
malware
#
cybersecurity
#
ubuntu
The Qualys Threat Research Unit has identified five critical vulnerabilities in needrestart used by Ubuntu Servers, risking unauthorized root access for users.
Story image
Tenable discloses vulnerability in Open Policy Agent OPA
Tue, 19th Nov 2024
#
cybersecurity
#
software development
#
smb
Tenable has disclosed a medium-severity SMB force-authentication vulnerability in all Windows versions of Open Policy Agent before version 0.68.0.
Story image
Cybersecurity advisory highlights top vulnerabilities of 2023
Tue, 19th Nov 2024
#
advanced persistent threat protection
#
risk & compliance
#
cybersecurity
Leading cybersecurity agencies have issued an advisory identifying frequently exploited vulnerabilities in 2023, urging enhanced security measures across sectors.
Story image
November Patch Tuesday reveals 90 vulnerabilities
Wed, 13th Nov 2024
#
cybersecurity
#
microsoft
#
internet explorer
Microsoft is rolling out patches for 90 vulnerabilities this November, including critical remote code execution flaws and several in-the-wild exploits.
Story image
Androxgh0st botnet expands with Mozi IoT capabilities
Wed, 13th Nov 2024
#
datacentre infrastructure
#
iot
#
advanced persistent threat protection
CloudSEK warns that the Androxgh0st botnet has significantly expanded its reach, now targeting critical vulnerabilities in various systems and IoT devices.
Story image
Critical vulnerabilities found in Unisoc systems-on-chip
Thu, 31st Oct 2024
#
smartphones
#
risk & compliance
#
cybersecurity
Kaspersky's ICS CERT has revealed critical vulnerabilities in Unisoc SoCs, heightening risks of remote hijacking in devices.
Story image
Lazarus APT group targets crypto investors with AI tactics
Wed, 30th Oct 2024
#
cryptocurrency
#
blockchain
#
advanced persistent threat protection
Kaspersky has uncovered a sophisticated campaign by the Lazarus group targeting cryptocurrency investors, employing social engineering and zero-day exploits.
Story image
Tenable reveals vulnerability in Open Policy Agent for Windows
Tue, 29th Oct 2024
#
risk & compliance
#
cybersecurity
#
software development
Tenable has revealed a medium-severity vulnerability in Open Policy Agent for Windows that exposes user credentials, urging updates to version 0.68.0.
Story image
Memory safety vulnerabilities continue to plague ICS: Here’s what to do about it
Thu, 24th Oct 2024
#
cybersecurity
#
nsa
#
industrial control systems
Memory safety vulnerabilities are surging in industrial control systems, with over 3,000 reported in 2022, prompting urgent calls for enhanced security measures.
Story image
Cybersecurity warning issued over Iranian infrastructure threats
Thu, 24th Oct 2024
#
mfa
#
phishing
#
email security
A coalition of global agencies warns of Iranian cyber threats targeting critical infrastructure, highlighting emerging tactics and unresolved vulnerabilities.
Story image
How to implement exposure management in complex cyber-physical systems
Wed, 23rd Oct 2024
#
digital transformation
#
advanced persistent threat protection
#
physical security
As digital transformation heightens cyber-physical connectivity, organisations must adopt effective exposure management strategies to safeguard critical systems.
Story image
watchTowr secures $19 million in funding for expansion
Tue, 15th Oct 2024
#
advanced persistent threat protection
#
cybersecurity
#
cyber threats
watchTowr has successfully secured $19 million in a Series A funding round to boost its expansion in the cybersecurity sector.
Story image
October Patch Tuesday has revealed 118 Vulnerabilities
Wed, 9th Oct 2024
#
open source
#
cybersecurity
#
microsoft
Microsoft has addressed 118 vulnerabilities in its October 2024 Patch Tuesday, including five with evidence of exploitation, amid ongoing security concerns.
Story image
Tenable report reveals widespread cloud security risks
Wed, 9th Oct 2024
#
hyperscale
#
cloud security
#
iam
Tenable's 2024 Cloud Risk Report reveals 74% of global organisations have publicly exposed storage assets, heightening their ransomware risk.
Story image
Microsoft, Adobe issue critical patches to fix Zero-day flaws
Fri, 13th Sep 2024
#
martech
#
microsoft
#
adobe
Microsoft and Adobe have rolled out urgent security updates, tackling critical Zero-day vulnerabilities in Windows and key applications this month.
Story image
September Patch Tuesday has revealed 79 vulnerabilities
Wed, 11th Sep 2024
#
cybersecurity
#
microsoft
#
sharepoint
Microsoft's September Patch Tuesday addresses 79 vulnerabilities, including four critical RCEs and bugs with in-the-wild exploitation. Surprisingly, no browser patches yet.