BleepingComputer reports that almost 700 Ivanti servers have been compromised with the novel DSLog backdoor in attacks leveraging the server-side request forgery flaw affecting the SAML component of Ivanti Connect Secure, Policy Secure, and ZTA gateways, tracked as CVE-2024-21893.
BleepingComputer reports that threat actors were noted by the Cybersecurity and Infrastructure Security Agency to have commenced attacks targeting the critical remote code execution vulnerability in Fortinet's FortiOS devices, tracked as CVE-2024-21762, just a day after Fortinet noted possible exploitation.
Security pros say while Ivanti has been transparent, the incidents over the past several weeks show how relentless attackers are in continuing to look for exploitable bugs.
Fortinet has reported that its FortiSIEM solution is impacted by two new vulnerabilities that circumvent fixes issued for a critical remote code execution flaw, tracked as CVE-2023-34992, after mistakenly disclosing the newly identified issues as duplicates of the older bug, according to BleepingComputer.
AnyDesk has emphasized the safety of all its remote monitoring software versions obtained from legitimate sources, as well as noted the lack of any evidence suggesting any customer data compromise following a cyberattack last week, which it said only affected relay servers in Spain and Portugal, according to The Record, a news site by cybersecurity firm Recorded Future.
Microsoft Azure HDInsight has been identified to have its third-party Apache Hadoop, Kafka, and Spark services affected by three security flaws, which stem from Apache Ambari and Oozie software and have already been remediated by Microsoft in updates issued in October, The Hacker News reports.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.