Drupal Releases Multiple Security Updates

Original release date: September 16, 2021Drupal has released security updates to address multiple vulnerabilities affecting Drupal 8.9, 9.1, and 9.2. An attacker could exploit some of these vulnerabilities to take…

Comments Off on Drupal Releases Multiple Security Updates

Apple Releases Security Updates to Address CVE-2021-30858 and CVE-2021-30860

Original release date: September 13, 2021Apple has released security updates to address vulnerabilities—CVE-2021-30858 and CVE-2021-30860—in multiple products.  An attacker could exploit these vulnerabilities to take control of an affected device.…

Comments Off on Apple Releases Security Updates to Address CVE-2021-30858 and CVE-2021-30860

CISA’s Annual National Cybersecurity Summit

Original release date: September 13, 2021CISA will host its fourth annual National Cybersecurity Summit on Wednesdays during the month of October. The 2021 Summit will be held as a series…

Comments Off on CISA’s Annual National Cybersecurity Summit

Microsoft Releases Mitigations and Workarounds for CVE-2021-40444

Original release date: September 7, 2021Microsoft has released mitigations and workarounds to address a remote code execution vulnerability (CVE-2021-40444) in Microsoft Windows. Exploitation of this vulnerability may allow a remote…

Comments Off on Microsoft Releases Mitigations and Workarounds for CVE-2021-40444

Cisco Releases Security Updates for Cisco Enterprise NFVIS

Original release date: September 2, 2021Cisco has released security updates to address a critical vulnerability affecting Cisco Enterprise Network Function Virtualization Infrastructure Software (NFVIS) Release 4.5.1. A remote attacker could…

Comments Off on Cisco Releases Security Updates for Cisco Enterprise NFVIS

FBI-CISA Advisory on Ransomware Awareness for Holidays and Weekends

Original release date: August 31, 2021Today, the Federal Bureau of Investigation (FBI) and CISA released a Joint Cybersecurity Advisory (CSA) to urge organizations to ensure they protect themselves against ransomware attacks…

Comments Off on FBI-CISA Advisory on Ransomware Awareness for Holidays and Weekends

CISA Adds Single-Factor Authentication to list of Bad Practices

Original release date: August 30, 2021Today, CISA added the use of single-factor authentication for remote or administrative access systems to our Bad Practices list of exceptionally risky cybersecurity practices. Single-factor authentication…

Comments Off on CISA Adds Single-Factor Authentication to list of Bad Practices

Microsoft Azure Cosmos DB Guidance

Original release date: August 27, 2021CISA is aware of a misconfiguration vulnerability in Microsoft’s Azure Cosmos DB that may have exposed customer data. Although the misconfiguration appears to have been…

Comments Off on Microsoft Azure Cosmos DB Guidance