Microsoft SharePoint Online has been impacted by a ransomware attack by the Omega threat operation that leveraged a compromised Microsoft Global SaaS admin account rather than a compromised endpoint, reports SecurityWeek.
Fixes have been issued by Cisco for critical and high-severity vulnerabilities impacting its Expressway Series and TelePresence Video Communication Server enterprise collaboration and video communication offerings, according to SecurityWeek.
Organizations whose Barracuda Email Security Gateway appliances were compromised with an already-addressed zero-day vulnerability, tracked as CVE-2023-2868, have been warned by Barracuda Networks to immediately replace their affected appliances, BleepingComputer reports.
The Hacker News reports that 60,000 unique apps posing as cracked versions of widely used Android applications have been leveraged to spread adware in an ongoing campaign that commenced in October.
BleepingComputer reports that ongoing attacks leveraging a critical command injection vulnerability, tracked as CVE-2023-28771, impacting several Zyxel firewall and VPN devices have been confirmed by Rapid7.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.