Oracle Releases April 2021 Critical Patch Update

Original release date: April 20, 2021Oracle has released its Critical Patch Update for April 2021 to address 384 vulnerabilities across multiple products. A remote attacker could exploit some of these…

Comments Off on Oracle Releases April 2021 Critical Patch Update

CISA and CNMF Analysis of SolarWinds-related Malware

Original release date: April 15, 2021CISA and the Department of Defense (DoD) Cyber National Mission Force (CNMF) have analyzed additional SolarWinds-related malware variants—referred to as SUNSHUTTLE and SOLARFLARE. One of…

Comments Off on CISA and CNMF Analysis of SolarWinds-related Malware

Threat Actors Targeting Cybersecurity Researchers

Original release date: April 14, 2021Google and Microsoft recently published reports on advanced persistent threat (APT) actors targeting cybersecurity researchers. The APT actors are using fake social media profiles and…

Comments Off on Threat Actors Targeting Cybersecurity Researchers

SAP Releases April 2021 Security Updates

Original release date: April 13, 2021SAP has released security updates to address vulnerabilities affecting multiple products. An attacker could exploit some of these vulnerabilities to take control of an affected…

Comments Off on SAP Releases April 2021 Security Updates

Apply Microsoft April 2021 Security Update to Mitigate Newly Disclosed Microsoft Exchange Vulnerabilities

Original release date: April 13, 2021Microsoft's April 2021 Security Update mitigates significant vulnerabilities affecting on-premises Exchange Server 2016 and 2019. An attacker could exploit these vulnerabilities to gain access and maintain…

Comments Off on Apply Microsoft April 2021 Security Update to Mitigate Newly Disclosed Microsoft Exchange Vulnerabilities

Malicious Cyber Activity Targeting Critical SAP Applications

Original release date: April 6, 2021SAP systems running outdated or misconfigured software are exposed to increased risks of malicious attacks. SAP applications help organizations manage critical business processes—such as enterprise…

Comments Off on Malicious Cyber Activity Targeting Critical SAP Applications

CISA Releases Supplemental Direction on Emergency Directive for Microsoft Exchange Server Vulnerabilities

Original release date: March 31, 2021CISA has issued supplemental direction to Emergency Directive (ED) 21-02: Mitigate Microsoft Exchange On-Premises Product Vulnerabilities providing additional forensic triage and server hardening, requirements for…

Comments Off on CISA Releases Supplemental Direction on Emergency Directive for Microsoft Exchange Server Vulnerabilities