Talk With an Expert

Internet Storm Center Tech Corner

Microsoft January 2024 Patch Tuesday

https://isc.sans.edu/forums/diary/Microsoft+January+2024+Patch+Tuesday/30548/

Adobe Vulnerabilities

https://helpx.adobe.com/security/products/substance3d_stager/apsb24-06.html

Jenkins Brute Force Scans

https://isc.sans.edu/diary/Jenkins+Brute+Force+Scans/30546

Timeline to Remove DSA Support in OpenSSH

https://lists.mindrot.org/pipermail/openssh-unix-announce/2024-January/000156.html

Juniper Patches

https://supportportal.juniper.net/s/global-search/%40uri?language=en_US#sort=%40sfcec_community_publish_date_formula__c%20descending&numberOfResults=50&f:ctype=[Security%20Advisories]

ManageEngine ADSelfService Plus Patch CVE-2024-0252

https://www.manageengine.com/products/self-service-password/advisory/CVE-2024-0252.html

Atomic Stealer for Mac Update

https://www.malwarebytes.com/blog/threat-intelligence/2024/01/atomic-stealer-rings-in-the-new-year-with-updated-version

Ivanti Connect Security VPN Vulnerability Exploited

https://www.volexity.com/blog/2024/01/10/active-exploitation-of-two-zero-day-vulnerabilities-in-ivanti-connect-secure-vpn/

Zoom Privilege Escalation Vulnerability

https://www.zoom.com/en/trust/security-bulletin/ZSB-24001/

Apache Applications Targeted by Stealthy Attacker

https://blog.aquasec.com/threat-alert-apache-applications-targeted-by-stealthy-attacker

Infosec Toolshed

https://youtu.be/qDK1PQ1OZjk?si=_vTpHqlovD2Hjd4M

CVE-2023-50916: Authentication Coercion Vulnerability in Kyocera Device Manager

https://www.trustwave.com/en-us/resources/blogs/spiderlabs-blog/cve-2023-50916-authentication-coercion-vulnerability-in-kyocera-device-manager/

Network Connected Wrenches Used in Factories can be hacked

https://arstechnica.com/security/2024/01/network-connected-wrenches-used-in-factories-can-be-hacked-for-sabotage-or-ransomware/

View Older Issues

Catch up on recent editions of NewsBites or browse our full archive of expert-curated cybersecurity news.

Browse Archive
Ivanti Vulnerabilities Exploited; Easy Patch Tuesday; Nine More Exploited Vulnerabilities