Another 3 Pulse Connect Secure Critical vulnerabilities discovered

Ivanti has discovered three new Pulse Connect Secure (PCS) Critical vulnerabilities CVE-2021-22894, CVE-2021-22899 and CVE-2021-22900, nearly two weeks after reported active exploits against other PCS vulnerabilities.

Continue Reading Another 3 Pulse Connect Secure Critical vulnerabilities discovered

Alert: Attackers exploiting Pulse Connect Secure vulnerabilities (updated)

CISA warned attackers continue to exploit Pulse Connect Secure vulnerabilities. The alert was issued after CISA confirmed malicious activity on public and private entity networks. Additional detection methods were also added on April 30.

Continue Reading Alert: Attackers exploiting Pulse Connect Secure vulnerabilities (updated)

“BadAlloc” vulnerabilities impact broad range of IoT and OT devices

Security researchers from Microsoft have discovered a collection of vulnerabilities dubbed "BadAlloc" that affect a broad range of IoT and OT devices in industrial, medical and consumer sectors.

Continue Reading “BadAlloc” vulnerabilities impact broad range of IoT and OT devices

Samba fixes vulnerability (CVE-2021-20254) that could allow an attacker unauthorized access to files

Samba has released a software update to fix a vulnerability (CVE-2021-20254) that could allow an attacker unauthorized access to files. A remote attacker could take advantage of this bug and exploit unpatched systems.

Continue Reading Samba fixes vulnerability (CVE-2021-20254) that could allow an attacker unauthorized access to files