CISA Issues Emergency Directive on Microsoft Windows Print Spooler

Original release date: July 13, 2021CISA has issued Emergency Directive (ED) 21-04: Mitigate Windows Print Spooler Service Vulnerability addressing CVE-2021-34527. Attackers can exploit this vulnerability to remotely execute code with system…

Comments Off on CISA Issues Emergency Directive on Microsoft Windows Print Spooler

Microsoft Releases July 2021 Security Updates

Original release date: July 13, 2021Microsoft has released updates to address multiple vulnerabilities in Microsoft software. A remote attacker can exploit some of these vulnerabilities to take control of an…

Comments Off on Microsoft Releases July 2021 Security Updates

Critical ForgeRock Access Management Vulnerability

Original release date: July 12, 2021Malicious cyber actors are actively exploiting a pre-authorization remote code execution vulnerability (CVE-2021-35464) in ForgeRock Access Management—a commercial open access management solution that is based…

Comments Off on Critical ForgeRock Access Management Vulnerability

Microsoft Releases Out-of-Band Security Updates for PrintNightmare

Original release date: July 6, 2021Microsoft has released out-of-band security updates to address a remote code execution (RCE) vulnerability—known as PrintNightmare (CVE-2021-34527)—in the Windows Print spooler service. According to the…

Comments Off on Microsoft Releases Out-of-Band Security Updates for PrintNightmare

CISA Releases Security Advisory for Philips Vue PAC Products

Original release date: July 6, 2021CISA has released an Industrial Controls Systems (ICS) Medical Advisory detailing multiple vulnerabilities in multiple Philips Clinical Collaboration Platform Portal (officially registered as Vue PACS)…

Comments Off on CISA Releases Security Advisory for Philips Vue PAC Products

Kaseya VSA Supply-Chain Ransomware Attack

Original release date: July 2, 2021CISA is taking action to understand and address the recent supply-chain ransomware attack against Kaseya VSA and the multiple managed service providers (MSPs) that employ…

Comments Off on Kaseya VSA Supply-Chain Ransomware Attack