CISA Adds 32 Known Exploited Vulnerabilities to Catalog

Original release date: March 28, 2022CISA has added 32 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent…

Comments Off on CISA Adds 32 Known Exploited Vulnerabilities to Catalog

CISA Adds 66 Known Exploited Vulnerabilities to Catalog

Original release date: March 25, 2022CISA has added 66 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. These types of vulnerabilities are a frequent…

Comments Off on CISA Adds 66 Known Exploited Vulnerabilities to Catalog

FBI and FinCEN Release Advisory on AvosLocker Ransomware

Original release date: March 22, 2022The Federal Bureau of Investigation (FBI) and the Department of the Treasury’s Financial Crimes Enforcement Network (FinCEN) have released a joint Cybersecurity Advisory identifying indicators of…

Comments Off on FBI and FinCEN Release Advisory on AvosLocker Ransomware

CRI-O Security Update for Kubernetes

Original release date: March 18, 2022CRI-O has released a security update addressing a critical vulnerability—CVE-2022-0811—in CRI-O 1.19. A local attacker could exploit this vulnerability to take control of an affected…

Comments Off on CRI-O Security Update for Kubernetes

CISA Adds 15 Known Exploited Vulnerability to Catalog

Original release date: March 15, 2022CISA has added 15 new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence that threat actors are actively exploiting the vulnerabilities listed in the…

Comments Off on CISA Adds 15 Known Exploited Vulnerability to Catalog

Updated: Kubernetes Hardening Guide

Original release date: March 15, 2022The National Security Agency (NSA) and CISA have updated their joint Cybersecurity Technical Report (CTR): Kubernetes Hardening Guide, originally released in August 2021, based on…

Comments Off on Updated: Kubernetes Hardening Guide

Dirty Pipe Privilege Escalation Vulnerability in Linux

Original release date: March 10, 2022CISA is aware of a privilege escalation vulnerability in Linux kernel versions 5.8 and later known as “Dirty Pipe” (CVE-2022-0847). A local attacker could exploit…

Comments Off on Dirty Pipe Privilege Escalation Vulnerability in Linux