CISA and CNMF Identify a New Malware Variant

Original release date: October 1, 2020The Cybersecurity and Infrastructure Security Agency (CISA) and the Department of Defense (DOD) Cyber National Mission Force (CNMF) have identified a malware variant—referred to as…

Comments Off on CISA and CNMF Identify a New Malware Variant

CISA and MS-ISAC Release Ransomware Guide

Original release date: September 30, 2020The Cybersecurity and Infrastructure Security Agency (CISA) and the Multi-State Information Sharing & Analysis Center (MS-ISAC) have released a joint Ransomware Guide that details practices…

Comments Off on CISA and MS-ISAC Release Ransomware Guide

CISA Releases Telework Essentials Toolkit

Original release date: September 30, 2020The Cybersecurity and Infrastructure Security Agency (CISA) has released the Telework Essentials Toolkit, a comprehensive resource of telework best practices. The Toolkit provides three personalized…

Comments Off on CISA Releases Telework Essentials Toolkit

Samba Releases Security Update for CVE-2020-1472

Original release date: September 21, 2020The Samba Team has released a security update to address a critical vulnerability—CVE-2020-1472—in multiple versions of Samba. This vulnerability could allow a remote attacker to…

Comments Off on Samba Releases Security Update for CVE-2020-1472

CISA Releases Emergency Directive on Microsoft Windows Netlogon Remote Protocol

Original release date: September 18, 2020The Cybersecurity and Infrastructure Security Agency (CISA) has released Emergency Directive (ED) 20-04 addressing a critical vulnerability— CVE-2020-1472—affecting Microsoft Windows Netlogon Remote Protocol. An unauthenticated…

Comments Off on CISA Releases Emergency Directive on Microsoft Windows Netlogon Remote Protocol

CERT/CC Releases Information on Critical Vulnerability in Microsoft Windows Netlogon Remote Protocol

Original release date: September 17, 2020The CERT Coordination Center (CERT/CC) has released information on CVE-2020-1472, a vulnerability affecting Microsoft Windows Netlogon Remote Protocol. An unauthenticated attacker could exploit this vulnerability…

Comments Off on CERT/CC Releases Information on Critical Vulnerability in Microsoft Windows Netlogon Remote Protocol

Adobe Releases Security Update for Media Encoder

Original release date: September 16, 2020Adobe has released a security update to address vulnerabilities in Media Encoder. An attacker could exploit these vulnerabilities to obtain sensitive information. The Cybersecurity and…

Comments Off on Adobe Releases Security Update for Media Encoder

Iran-Based Threat Actor Exploits VPN Vulnerabilities

Original release date: September 15, 2020The Cybersecurity Security and Infrastructure Security Agency (CISA) and the Federal Bureau of Investigation (FBI) have released a Joint Cybersecurity Advisory on an Iran-based malicious…

Comments Off on Iran-Based Threat Actor Exploits VPN Vulnerabilities

Exploit for Netlogon Remote Protocol Vulnerability, CVE-2020-1472

Original release date: September 14, 2020The Cybersecurity and Infrastructure Security Agency (CISA) is aware of publicly available exploit code for CVE-2020-1472, an elevation of privilege vulnerability in Microsoft’s Netlogon. Although…

Comments Off on Exploit for Netlogon Remote Protocol Vulnerability, CVE-2020-1472