SecurityBrief New Zealand - Technology news for CISOs & cybersecurity decision-makers

Common Vulnerabilities and Exposures (CVE) stories - Page 3

Techday f 35018f305bd0d626e0a1

RunZero expands platform for enhanced exposure management

Tue, 8th Apr 2025
#
cve
runZero has unveiled an expanded platform to enhance exposure management, promising to aid organisations in effectively managing risk across their attack surfaces.
Techday b80e586b58ecbe1e7ea4

Kaspersky discovers & patches zero-day Chrome flaw

Thu, 3rd Apr 2025
#
cve
Kaspersky has uncovered and patched a critical zero-day vulnerability in Google Chrome, enabling attackers to bypass sandbox protections via malicious links.
Techday fb14eafa47d80817b71b

GitHub Action compromise affects over 23,000 repositories

Thu, 20th Mar 2025
#
cve
A malicious commit in the tj-actions/changed-files GitHub Action, used in over 23,000 repositories, threatens software security across numerous CI pipelines.
Ps jack meltzer headshot 2023  2

Building a culture of cyber hygiene

Tue, 18th Mar 2025
#
cve
As cyber attacks surge, the World Economic Forum warns of a widening skills gap, urging organisations to foster a culture of cyber hygiene for better security.
Techday aabb68e53e66032247be

Microsoft patches 56 vulnerabilities, 7 zero days fixed

Tue, 18th Mar 2025
#
cve
Microsoft has patched 56 vulnerabilities in its latest update, including seven zero-day flaws, six of which have been actively exploited.
Techday eb33571295140d6fed56

JFrog & Hugging Face join forces to secure AI models

Tue, 18th Mar 2025
#
cve
JFrog has partnered with Hugging Face to enhance security for machine learning models, boosting safety measures on the Hugging Face Hub against potential threats.
Techday f 260de8b293e529df450a

February 2025 reports record spike in ransomware attacks

Mon, 17th Mar 2025
#
cve
A recent Bitdefender report reveals February 2025 as the worst month for ransomware, with victims rising 126% to 962, including a notable impact on Australia.
Techday 47ea68bd8b550d631c69

Mandiant uncovers UNC3886 cyber-attack on Juniper routers

Thu, 13th Mar 2025
#
cve
Mandiant has uncovered a sophisticated cyber espionage campaign by the China-linked group UNC3886, targeting outdated Juniper Networks routers with advanced malware.
Techday 66918fd75f2d984a3c77

March Patch Tuesday reveals 57 vulnerabilities

Wed, 12th Mar 2025
#
cve
Microsoft has revealed it will fix 57 vulnerabilities in its March 2025 Patch Tuesday update, including six previously exploited in the wild.
Raj final

Exclusive: Cyber threats escalate as Australian organisations face sophisticated attacks

Thu, 6th Mar 2025
#
cve
Australian organisations face escalating cyber threats as ransomware groups adopt advanced tactics previously seen only in state-sponsored attacks.
Techday f f25faff594d15f68113c

Australia ranks fourth in global cybersecurity attack list

Thu, 27th Feb 2025
#
cve
Australia has climbed to fourth place globally for cyberattacks on critical infrastructure, as a report reveals a surge in diverse threats targeting various sectors.
Techday 6fc17d3302c9925ceb9a

2025 forecast predicts a rise in global cyber threats

Wed, 26th Feb 2025
#
cve
The Forum of Incident Response and Security Teams predicts a staggering 45,505 reported vulnerabilities for 2025, marking an 11% rise from 2024.
Techday 23efb6e8c0a831875354

FBI & CISA warn of Ghost ransomware threats worldwide

Tue, 25th Feb 2025
#
cve
The FBI and CISA have alerted organisations to increased cyber threats from China's Ghost ransomware group, affecting over 70 countries through outdated software.
Techday f 53258d33691adcccc8c7

Microsoft's February 2025 patch fixes 56 vulnerabilities

Mon, 24th Feb 2025
#
cve
Microsoft has patched 56 vulnerabilities in its February 2025 update, including two now exploited, marking a fifth month of no critical zero-days released.
Byline3  1

The State of Java in 2025: Oracle’s dominance is over

Fri, 21st Feb 2025
#
cve
In a significant shift, 90% of Australian firms are eyeing alternatives to Oracle Java, citing concerns over its pricing and cloud inefficiencies, according to a new survey.
Techday 3cf5bf0ea9638e512a0e

High-severity SQL vulnerability found in PostgreSQL tool

Fri, 14th Feb 2025
#
cve
Rapid7 has revealed a critical SQL injection vulnerability in PostgreSQL's psql tool, potentially exposing users to severe security risks.
Techday 3c6419f8ad23b1bff6ca

GitHub partners with Endor Labs to boost security features

Fri, 14th Feb 2025
#
cve
GitHub has partnered with Endor Labs, integrating advanced security software to help developers swiftly identify and manage critical vulnerabilities within the platform.
Techday ce62e423c8f7ec8975ca

Akamai uncovers critical Kubernetes flaw for Windows nodes

Tue, 28th Jan 2025
#
cve
Akamai's security team has revealed a serious flaw in Kubernetes, allowing remote code execution on Windows endpoints, posing significant risks to clusters.
Techday 0ad7101751d56877b3c4

Zyxel Networks wins 2024 award for firewall innovation

Tue, 21st Jan 2025
#
cve
Zyxel Networks has won the 2024 Cyber Security Award for Innovation for its USG FLEX 200HP Security Firewall, enhancing global digital resilience.
Techday f4c328668a8fe2858992

Fortinet firewalls hit by major data leak and zero-day flaw

Fri, 17th Jan 2025
#
cve
A major data leak impacting Fortinet firewalls has revealed sensitive information from 15,000 devices following a critical vulnerability, prompting urgent cybersecurity measures.