LastPass Security Breach – What Steps Should I Take?
This article was written by Lead Ethical Hacker, Jeremy Aylott. On 22 December 2022, the password manager service LastPass disclosed that an unknown threat actor obtained an…
This article was written by Lead Ethical Hacker, Jeremy Aylott. On 22 December 2022, the password manager service LastPass disclosed that an unknown threat actor obtained an…
As the Christmas holidays approach, your organisation may be starting to wind down, and workloads/hours may be reduced. Unfortunately, hackers take advantage of this time….
Description: Microsoft has published a report warning of an increase in cyber attacks from Russia, particularly on Ukraine and NATO allies. The organisation notes that Russia’s battlefield…
Researchers at Accenture’s Cyber Threat Intelligence team have written a report documenting a surge in the popularity of information stealing (infostealer) malware on the dark web. The…
Researchers at Sansec, an e-commerce malware and vulnerability detection organisation, have warned businesses using the open-source Adobe Commerce/Magento e-commerce platform that they have seen a…
Affected Systems: VMware Workspace ONE Assist (Assist) Server Description: VMware has released a security update that patches three vulnerabilities of critical severity and two other…
Microsoft’s November Patch Tuesday addresses 62 vulnerabilities, nine of which are critical. Six of the vulnerabilities are actively exploited zero-days, which includes two used in ProxyNotShell attacks (CVE-2022-41082 and CVE-2022-41040)…
Security researchers at Malwarebytes have published a report on a group of malicious apps found on the Google Play store, which has collectively amassed over one million downloads. The…
Description: OpenSSL has released a security advisory detailing two new high-severity vulnerabilities (CVE-2022-3602 and CVE-2022-3786) affecting versions 3.0.0 to 3.0.6. CVE-2022-3786 allows an attacker to use a specially crafted…