Talk With an Expert

Internet Storm Center Tech Corner

What Setting Live Traps For Cybercriminals Taught Me About Security

https://isc.sans.edu/diary/What+Setting+Live+Traps+for+Cybercriminals+Taught+Me+About+Security+Guest+Diary/31038

Fortra File Catalyst Vulnerability and PoC

https://support.fortra.com/filecatalyst/kb-articles/advisory-6-24-2024-filecatalyst-workflow-sql-injection-vulnerability-YmYwYWY4OTYtNTUzMi1lZjExLTg0MGEtNjA0NWJkMDg3MDA0

https://www.tenable.com/security/research/tra-2024-25

GitLab Critical Update

https://about.gitlab.com/releases/2024/01/11/critical-security-release-gitlab-16-7-2-released/

When Prompts Go Rogue: Analyzing a Prompt Injection Code Execution in Vanna.AI

https://jfrog.com/blog/prompt-injection-attack-code-execution-in-vanna-ai-cve-2024-5565/

Critical Progress MOVEit Authentication Bypass Vulnerability

https://labs.watchtowr.com/auth-bypass-in-un-limited-scenarios-progress-moveit-transfer-cve-2024-5806/

https://community.progress.com/s/article/MOVEit-Transfer-Product-Security-Alert-Bulletin-June-2024-CVE-2024-5806

TeamViewer Compromise

https://www.teamviewer.com/en-us/resources/trust-center/statement/

Polyfill.io Supply Chain Attack

https://cside.dev/blog/more-than-100k-websites-targeted-in-web-supply-chain-attack

Apple AirPods Firmware Update

https://support.apple.com/en-us/HT214111

TCP Latency Sidechannel

https://www.snailload.com/snailload.pdf

Microsoft Management Console for Initial Access and Evasion

https://www.elastic.co/security-labs/grimresource

Wyze Camera Vulnerabilities

https://forums.wyze.com/t/security-advisory/289256

View Older Issues

Catch up on recent editions of NewsBites or browse our full archive of expert-curated cybersecurity news.

Browse Archive