2019

NIST SP 800-128: Security-Focused Configuration Management of Information Systems Guidelines

The National Institute of Standards and Technology (NIST) has issued new Security-Focused Configuration Management of Information Systems guidelines (SP 800-128).

NIST SP 800-128: Security-Focused Configuration Management of Information Systems Guidelines Read More »

Microsoft re-releases patch for Critical IE CVE-2019-1367 (exploited in wild)

Microsoft has re-released security and software updates that include the patch for Critical IE CVE-2019-1367 recently exploited in the wild. The latest update addresses a known printing issue reported by customers after the last patch was released on September 23, 2019.

Microsoft re-releases patch for Critical IE CVE-2019-1367 (exploited in wild) Read More »

Cisco Webex and Zoom issue password security guidance to prevent enumeration attacks

Researchers have discovered attackers can take advantage of Webex Meetings API calls to enumerate Webex meeting numbers. Attackers can also launch similar “enumeration attacks” against Zoom platform for ongoing or future meetings .

Cisco Webex and Zoom issue password security guidance to prevent enumeration attacks Read More »