CISA has added five actively exploited vulnerabilities in JFrog Artifactory, ConnectWise ScreenConnect and MikroTik RouterOS to its watch list this week.
News
-
-
A maximum-severity path traversal flaw in GitLab’s repository commits API is being scanned within hours of disclosure. Here’s what happened and what self-managed users need to check.
-
New firewall and VPN vulnerabilities in Cisco, Citrix and Fortinet gear are under active attack. A step-by-step checklist for IT managers without a dedicated security team.
-
A practical order for tackling this month’s 974 Patch Tuesday vulnerabilities, from the two already-exploited bugs to your e-commerce platform.
-
SAP has patched a maximum-severity kernel vulnerability that lets attackers run commands on SAP servers without logging in. Here is what OVERPASS affects and how to respond.
-
Attackers are phoning executives, posing as IT support, to steal Microsoft 365 logins. Four cheap checks close most of the gap this technique relies on.
-
A newly documented intrusion shows how DLL sideloading attacks let a signed Python binary quietly load and run attacker code. Here’s the chain, and what to test for.
-
A maximum-severity Metabase SQL injection vulnerability was exploited in the wild before a fix existed, and Framework and Tally have both confirmed data loss.
-
New passkey attacks bypass phishing-resistant MFA on Windows and Chrome. Here is what IT teams should patch and review right now.
-
A third party data breach at Thomson Reuters exposed sealed court records and Social Security numbers across 24+ courts, and the vendor took four months to disclose it.