Talk With an Expert

Internet Storm Center Tech Corner

Development Features Enabled in Production

https://isc.sans.edu/diary/Development+Features+Enabled+in+Prodcution/31380

Everybody Loves Bash Scripts Including Attackers

https://isc.sans.edu/diary/Everybody+Loves+Bash+Scripts+Including+Attackers/31376

How much HTTP (not HTTPS) Traffic is Traversing Your Perimeter?

https://isc.sans.edu/diary/How+much+HTTP+not+HTTPS+Traffic+is+Traversing+Your+Perimeter/31372

Large-scale brute-force activity targeting VPNs, SSH services with commonly used login credentials

https://blog.talosintelligence.com/large-scale-brute-force-activity-targeting-vpns-ssh-services-with-commonly-used-login-credentials/

Cisco Secure Firewall Management Center Software Command Injection Vulnerability

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-fmc-cmd-inj-v3AWDqN7

Exposing the Danger Within: Hardcoded Cloud Credentials in Popular Mobile Apps

https://www.security.com/threat-intelligence/exposing-danger-within-hardcoded-cloud-credentials-popular-mobile-apps

FortiManager Exploited Vulnerability

https://www.fortiguard.com/psirt/FG-IR-24-423

OpenSSL Vulnerability

https://openssl-library.org/news/secadv/20241016.txt

SharePoint Exploit

https://www.cisa.gov/news-events/alerts/2024/10/22/cisa-adds-one-known-exploited-vulnerability-catalog

https://github.com/testanull/MS-SharePoint-July-Patch-RCE-PoC

Reduced Certificate Lifetime

https://github.com/cabforum/servercert/pull/553

VMSA-2024-0019: VMware vCenter Server updates address heap-overflow and privilege escalation vulnerabilities (CVE-2024-38812, CVE-2024-38813)

https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/24968

Unifi Security Advisory Bulletin 043

https://community.ui.com/releases/Security-Advisory-Bulletin-043-043/28e45c75-314e-4f07-a4f3-d17f67bd53f7

Fake attachment. Roundcube mail server attacks exploit CVE-2024-37383 vulnerability.

https://global.ptsecurity.com/analytics/pt-esc-threat-intelligence/fake-attachment-roundcube-mail-server-attacks-exploit-cve-2024-37383-vulnerability

Atlassian Security Bulletin - October 15 2024

https://confluence.atlassian.com/security/security-bulletin-october-15-2024-1442910972.html

OneDev Arbitrary file reading for unauthenticated user

https://github.com/theonedev/onedev/security/advisories/GHSA-7wg5-6864-v489

View Older Issues

Catch up on recent editions of NewsBites or browse our full archive of expert-curated cybersecurity news.

Browse Archive