A couple simple steps companies can take to protect their systems from ransomwareStephen WeigandAugust 2, 2021
Vulnerability ManagementAccount hijacking possible with ruby-saml library bugsSC StaffMarch 14, 2025Both vulnerabilities originate from the differences in XML parsing between REXML and Nokogiri.
RansomwareNew Lockbit-linked ransomware group targets Fortinet vulnerabilitiesLaura FrenchMarch 13, 2025The “SuperBlack” ransomware leverages the LockBit 3.0 builder with a custom encryption tool.
Vulnerability ManagementAttacks with newly addressed Win32 bug ongoing for two yearsSC StaffMarch 13, 2025Initial attacks involved the utilization of the PipeMagic backdoor to distribute the exploit.
Vulnerability ManagementActively exploited Apple zero-day addressedSC StaffMarch 12, 2025Attacks could enable the creation of malicious content that could escape the Web Content sandbox.
Data SecurityMisconfigured AWS S3 bucket exposes US nurses’ dataSC StaffMarch 12, 2025New Jersey-based health tech firm ESHYFT had 108.8 GB of nurses' data inadvertently leaked.
Network SecurityMicrosoft’s March Patch Tuesday fixes 67 flaws, including 6 zero-daysShaun NicholsMarch 11, 2025Microsoft addressed security vulnerabilities across its various offerings, including Windows and Office.
Vulnerability Management3 Ivanti flaws added to CISA list of known exploited vulnerabilitiesSteve ZurierMarch 11, 2025Ivanti Endpoint Manager flaws can grant unauthenticated attackers full compromise of vulnerable servers.
Vulnerability ManagementAdvantive VeraCore, Ivanti EPM flaws added to CISA vulnerabilities catalogSC StaffMarch 11, 2025Threat operation XE Group was discovered to have been exploiting the VeraCore flaws.