Remove 2018 Remove Network Security Remove Security Defenses
article thumbnail

Volt Typhoon Disrupts US Organizations, CISA Issues Alerts

eSecurity Planet

It’s an in-depth assessment of the target’s network infrastructure, with a focus on discovering vulnerable devices such as routers and VPNs. Volt Typhoon prepares for future stages of operation by gathering vital knowledge on network security and topology, system configurations, and potential vulnerabilities.

Internet 113
article thumbnail

Cybersecurity Mergers Flatline. Here’s Why That Won’t Last.

eSecurity Planet

Perimeter 81, which was launched in 2018, runs a converged network and security platform to manage in-office and remote workforces. Also read: Some Cybersecurity Startups Still Attract Funding Despite Headwinds Check Point Software Buys Perimeter 81 Check Point Software announced the purchase of Perimeter 81 in August.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Vulnerability Recap 6/10/24 – RCE Attacks in Major Platforms

eSecurity Planet

Follow Oracle’s security advisories to protect against potential threats and maintain network security. The problem: Chinese threat actors targeted ThinkPHP applications vulnerable to CVE-2018-20062 and CVE-2019-9082 and installed Dama, a persistent web shell.

Malware 80
article thumbnail

Weekly Vulnerability Recap – August 28, 2023 – Windows, Ivanti, Adobe Hit By Flaws

eSecurity Planet

To remedy this vulnerability, Adobe recommends installing Update 16 for ColdFusion 2018 and Update 6 for ColdFusion 2021. The security bulletin was last updated August 25. The deserialization vulnerability has a high-severity CVSS score of 9.8. This vulnerability can lead to arbitrary code execution (ACE).

VPN 98
article thumbnail

Weekly Vulnerability Recap – October 30, 2023 – Citrix & Cisco Haunted by Vulnerabilities

eSecurity Planet

The problem: Similar to 2018’s Spectre processor vulnerability, the iLeakage vulnerability stems from Apple CPU performing speculative execution. The fix: Update vulnerable BIG-IP modules to versions that include the Hotfix as soon as possible.

article thumbnail

Weekly Vulnerability Recap – August 28, 2023 – Windows, Ivanti, Adobe Hit By Flaws

eSecurity Planet

To remedy this vulnerability, Adobe recommends installing Update 16 for ColdFusion 2018 and Update 6 for ColdFusion 2021. The security bulletin was last updated August 25. The deserialization vulnerability has a high-severity CVSS score of 9.8. This vulnerability can lead to arbitrary code execution (ACE).

VPN 95
article thumbnail

What Is Cross-Site Scripting (XSS)? Types, Risks & Prevention

eSecurity Planet

If you’re concerned about the effects of a web application attack on your broader business network, read more about network security. In 2018, British Airways was attacked by a group of hackers that used an XSS vulnerability in a JavaScript library.

Risk 104