Blog
SAP AI Core Flaws Expose Sensitive Customer Data and Keys
Security researchers discovered vulnerabilities in SAP AI Core that allowed attackers to execute arbitrary code, access sensitive data and cloud credentials, and manipulate internal artifacts.
SolarWinds Patches 11 Critical Flaws in Access Rights Manager Software
SolarWinds has addressed a set of critical security flaws impacting its Access Rights Manager (ARM) software that could be exploited to access sensitive information or execute arbitrary code. Of the 11 vulnerabilities, seven are rated Critical in severity and carry a...
APT41 Infiltrates Networks in Italy, Spain, Taiwan, Turkey, and the U.K.
Several organizations operating within global shipping and logistics, media and entertainment, technology, and automotive sectors in Italy, Spain, Taiwan, Thailand, Turkey, and the U.K. have become the target of a "sustained campaign" by the prolific China-based APT41...
SolarWinds Fixes Eight Critical Bugs in Access Rights Audit Software
The vulnerabilities (CVE-2024-23469, CVE-2024-23466, CVE-2024-23467, CVE-2024-28074, CVE-2024-23471, and CVE-2024-23470) were all rated with severity scores of 9.6/10 and posed risks of unauthorized actions and information disclosure.
Qilin Ransomware’s Sophisticated Tactics Unveiled By Experts
With over 150 organizations in 25 countries affected, Qilin's sophisticated tactics include exploiting vulnerabilities, using tools like Mimikatz for privilege escalation, and evading defenses by deleting logs and using PowerShell commands.
WazirX Cryptocurrency Exchange Loses $230 Million in Major Security Breach
Indian cryptocurrency exchange WazirX has confirmed that it was the target of a security breach that led to the theft of $230 million in cryptocurrency assets. "A cyber attack occurred in one of our [multi-signature] wallets involving a loss of funds exceeding $230...
Firms Skip Security Reviews of Updates About Half the Time
A recent poll of tech managers from CrowdStrike's 2024 State of Application Security Report revealed that cybersecurity workers only review major updates to software applications 54% of the time.
Firms Skip Security Reviews of Updates About Half the Time
A recent poll of tech managers from CrowdStrike's 2024 State of Application Security Report revealed that cybersecurity workers only review major updates to software applications 54% of the time.
Firms Skip Security Reviews of Updates About Half the Time
A recent poll of tech managers from CrowdStrike's 2024 State of Application Security Report revealed that cybersecurity workers only review major updates to software applications 54% of the time.
Firms Skip Security Reviews of Updates About Half the Time
A recent poll of tech managers from CrowdStrike's 2024 State of Application Security Report revealed that cybersecurity workers only review major updates to software applications 54% of the time.
FREE GUIDE