CVE-2021-27784
The provided HCL Launch Container images contain non-unique HTTPS certificates and a database encryption key. The fix provides directions and tools to replace the non-unique...
CVE-2020-23255
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was...
Accused ‘Raccoon’ Malware Developer Fled Ukraine After Russian Invasion
A 26-year-old Ukrainian man is awaiting extradition from The Netherlands to the United States on charges that he acted as a core developer for Raccoon,...
Extortion fears after hacker stole patient files from Dutch mental health clinics
Patients of Dutch mental health clinics are being warned that their personal records have fallen into the hands of hackers following a security breach at...
Engineering workstation attacks on industrial control systems double: Report
Engineering workstation compromises were the initial attack vector in 35% of all operational technology (OT) and industrial control system breaches in companies surveyed globally this...
CISA releases cybersecurity performance goals to reduce risk and impact of adversarial threats
Last week, the US Cybersecurity and Infrastructure Security Agency (CISA) released voluntary cross-sector Cybersecurity Performance Goals (CPGs). CISA was required to produce the CPGs under...
CISA, FBI, MS-ISAC Publish Guidelines For Federal Agencies on DDoS Attacks
The guidance is for network defenders and leaders to understand and respond to DDoS attacks Read More
CVE-2021-40241 (xfig)
xfig 3.2.7 is vulnerable to Buffer Overflow. Read More
Data Breach of Missile Maker MBDA May Have Been Real: CloudSEK
The researchers were able to obtain the ZIP file containing the samples for the data breach Read More
USN-5707-1: Libtasn1 vulnerability
It was discovered that Libtasn1 did not properly perform bounds checking. An attacker could possibly use this issue to cause a crash. Read More