CISA Adds Two Known Vulnerabilities to Catalog

CISA has added two new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. CVE-2023-37450 Apple Multiple Products WebKit Code Execution Vulnerability CVE-2022-29303 SolarView Compact Command Injection Vulnerability…

Comments Off on CISA Adds Two Known Vulnerabilities to Catalog

Juniper Releases Multiple Security Updates for Juno OS

Juniper has released updates to address multiple vulnerabilities in Juno OS. An attacker can exploit some of these vulnerabilities to take control of an affected system. CISA encourages users and…

Comments Off on Juniper Releases Multiple Security Updates for Juno OS

CISA Releases Nine Industrial Control Systems Advisories

CISA released nine Industrial Control Systems (ICS) advisories on July 13, 2023. These advisories provide timely information about current security issues, vulnerabilities, and exploits surrounding ICS.  ICSA-23-194-01 Siemens RUGGEDCOM ROX…

Comments Off on CISA Releases Nine Industrial Control Systems Advisories

CISA and FBI Release Cybersecurity Advisory on Enhanced Monitoring to Detect APT Activity Targeting Outlook Online

The Cybersecurity and Infrastructure Security Agency (CISA) and Federal Bureau of Investigation (FBI) have released a joint Cybersecurity Advisory (CSA), Enhanced Monitoring to Detect APT Activity Targeting Outlook Online, to…

Comments Off on CISA and FBI Release Cybersecurity Advisory on Enhanced Monitoring to Detect APT Activity Targeting Outlook Online

Enhanced Monitoring to Detect APT Activity Targeting Outlook Online

SUMMARY In June 2023, a Federal Civilian Executive Branch (FCEB) agency identified suspicious activity in their Microsoft 365 (M365) cloud environment. The agency reported the activity to Microsoft and the…

Comments Off on Enhanced Monitoring to Detect APT Activity Targeting Outlook Online

Vulnerability Summary for the Week of July 3, 2023

  High Vulnerabilities Primary Vendor -- Product Description Published CVSS Score Source & Patch Info sem-cms -- semcms File Upload vulnerability in SEMCMS PHP 3.7 allows remote attackers to upload…

Comments Off on Vulnerability Summary for the Week of July 3, 2023

Increased Truebot Activity Infects U.S. and Canada Based Networks

SUMMARY The Cybersecurity and Infrastructure Security Agency (CISA), the Federal Bureau of Investigation (FBI), the Multi-State Information Sharing and Analysis Center (MS-ISAC), and the Canadian Centre for Cyber Security (CCCS)…

Comments Off on Increased Truebot Activity Infects U.S. and Canada Based Networks