CISA and CNMF Analysis of SolarWinds-related Malware

Original release date: April 15, 2021CISA and the Department of Defense (DoD) Cyber National Mission Force (CNMF) have analyzed additional SolarWinds-related malware variants—referred to as SUNSHUTTLE and SOLARFLARE. One of…

Comments Off on CISA and CNMF Analysis of SolarWinds-related Malware

Threat Actors Targeting Cybersecurity Researchers

Original release date: April 14, 2021Google and Microsoft recently published reports on advanced persistent threat (APT) actors targeting cybersecurity researchers. The APT actors are using fake social media profiles and…

Comments Off on Threat Actors Targeting Cybersecurity Researchers

SAP Releases April 2021 Security Updates

Original release date: April 13, 2021SAP has released security updates to address vulnerabilities affecting multiple products. An attacker could exploit some of these vulnerabilities to take control of an affected…

Comments Off on SAP Releases April 2021 Security Updates

Apply Microsoft April 2021 Security Update to Mitigate Newly Disclosed Microsoft Exchange Vulnerabilities

Original release date: April 13, 2021Microsoft's April 2021 Security Update mitigates significant vulnerabilities affecting on-premises Exchange Server 2016 and 2019. An attacker could exploit these vulnerabilities to gain access and maintain…

Comments Off on Apply Microsoft April 2021 Security Update to Mitigate Newly Disclosed Microsoft Exchange Vulnerabilities

Vulnerability Summary for the Week of April 5, 2021

Original release date: April 12, 2021  High Vulnerabilities Primary Vendor -- Product Description Published CVSS Score Source & Patch Info apple -- ipad_os An out-of-bounds read was addressed with improved…

Comments Off on Vulnerability Summary for the Week of April 5, 2021

Malicious Cyber Activity Targeting Critical SAP Applications

Original release date: April 6, 2021SAP systems running outdated or misconfigured software are exposed to increased risks of malicious attacks. SAP applications help organizations manage critical business processes—such as enterprise…

Comments Off on Malicious Cyber Activity Targeting Critical SAP Applications