Remove author andrew-morris
article thumbnail

Critical Confluence flaw exploited in ransomware attacks

Security Affairs

Atlassian last week warned of the CVE-2023-22518 (CVSS score 9.1), the issue is an improper authorization issue that can lead to significant data loss if exploited by an unauthenticated attacker. “As reads the advisory. Over the weekend, threat intelligence firm GreyNoise observed exploitation attempts for the vulnerability CVE-2023-22518.

article thumbnail

SolarWinds Hack Could Affect 18K Customers

Krebs on Security

Andrew Morris , founder of the security firm GreyNoise Intelligence , on said that as of Tuesday evening SolarWinds still hadn’t removed the compromised Orion software updates from its distribution server. ”

Hacking 351