SecurityBrief New Zealand - Technology news for CISOs & cybersecurity decision-makers

Common Vulnerabilities and Exposures (CVE) stories - Page 4

Techday 7336813f41cfe3c9c343

A look ahead: Experts weigh in on 2025 cybersecurity trends

Thu, 16th Jan 2025
#
cve
As experts forecast 2025's cybersecurity trends, organisations are urged to enhance their defences against evolving AI-driven threats and embrace unified security solutions.
Techday 3fc6b3cf575e076ac71b

January Patch Tuesday reveals 161 vulnerabilities

Thu, 16th Jan 2025
#
cve
On January's Patch Tuesday, Microsoft revealed 161 vulnerabilities, including eight under active exploitation, with no browser flaws noted this month.
Techday b3a077bc6167d2ce2c25

Microsoft patches record 157 vulnerabilities in January 2025

Wed, 15th Jan 2025
#
cve
Microsoft has unveiled its January 2025 Patch Tuesday update, tackling a record 157 vulnerabilities, including eight critical zero-day flaws.
Mixcollage 23 jan 2025 09 08 am 4459

How AI and software development will continue to shape the developer community in 2025

Tue, 14th Jan 2025
#
cve
In 2025, organisations must navigate the complexities of AI integration in software development, balancing innovation with security and skilled developer support.
Techday 25428e5c64de539e7c40

Mandiant reveals details of major Ivanti VPN vulnerability

Fri, 10th Jan 2025
#
cve
Mandiant unveils a critical zero-day vulnerability in Ivanti Connect Secure VPN appliances, exploited since December 2024 by a suspected China-linked group.
Techday 108575c3cf37dea2932c

CVE-2025-0282: Ivanti Connect Secure zero-day exploited in the wild

Thu, 9th Jan 2025
#
cve
Ivanti has alerted users that the CVE-2025-0282 zero-day vulnerability in Connect Secure is being actively exploited, with patches now available.
Techday 0dd36ae6e14d6b9acc50

Ivanti issues patch for critical security vulnerability

Thu, 9th Jan 2025
#
cve
Ivanti has announced critical patches for two vulnerabilities in its Connect Secure and Policy Secure products, one of which is already under active exploitation.
Techday c414a0eefc8ad04ba28f

Open source software challenges predicted to continue in 2025

Sun, 5th Jan 2025
#
cve
Chris Hughes predicts that open source software adoption will grow in 2025, alongside sophisticated attacks and challenges in governance and security.
Techday 71419e56aeac5094beb8

CloudSEK report reveals surge in complex cyber threats

Wed, 1st Jan 2025
#
cve
CloudSEK's 2024 Threat Landscape Report reveals a staggering 994TB of data exfiltrated, with ransomware demands averaging over USD $2 million.
Techday 41eac9a51aae37486ccc

2024 cyber threat landscape highlights key attack trends

Tue, 17th Dec 2024
#
cve
Rapid7's analysis of the 2024 cyber threat landscape reveals alarming trends in ransomware and vulnerability exploits impacting organisations worldwide.
Techday 566c94f90b77cf96fcbc

December Patch Tuesday reveals 70 vulnerabilities

Wed, 11th Dec 2024
#
cve
This December, Microsoft addresses 70 vulnerabilities, including 16 critical remote code execution flaws, in its latest Patch Tuesday update.
Techday c141f5bfb4bace013db1

Nozomi uncovers critical flaws in Advantech networks gear

Thu, 28th Nov 2024
#
cve
Nozomi Networks has revealed serious vulnerabilities in Advantech's wireless access points, endangering the security of critical infrastructure across sectors.
Techday 9bd2e20e25d4aed97762

Ransomware attacks rise by 19% in October according to NCC Group

Mon, 25th Nov 2024
#
cve
Ransomware attacks surged 19% in October, totalling 486 incidents globally, as threat actors increasingly targeted critical infrastructure sectors.
Techday 0007b28453fb08a79040

Hackuity on cyber security challenges & trends for 2025

Sat, 23rd Nov 2024
#
cve
Pierre Samson of Hackuity warns that balancing cyber security compliance costs will pose a major challenge for organisations in 2025.
Techday 20481d4893a8669acb2f

Critical needrestart vulnerabilities found in Ubuntu Servers

Wed, 20th Nov 2024
#
cve
The Qualys Threat Research Unit has identified five critical vulnerabilities in needrestart used by Ubuntu Servers, risking unauthorized root access for users.
Techday ea444238bca1f93dccd2

Tenable discloses vulnerability in Open Policy Agent OPA

Tue, 19th Nov 2024
#
cve
Tenable has disclosed a medium-severity SMB force-authentication vulnerability in all Windows versions of Open Policy Agent before version 0.68.0.
Techday fdc73262884bf7464ac0

Cybersecurity advisory highlights top vulnerabilities of 2023

Tue, 19th Nov 2024
#
cve
Leading cybersecurity agencies have issued an advisory identifying frequently exploited vulnerabilities in 2023, urging enhanced security measures across sectors.
Techday 0735ae790593e0778f6c

November Patch Tuesday reveals 90 vulnerabilities

Wed, 13th Nov 2024
#
cve
Microsoft is rolling out patches for 90 vulnerabilities this November, including critical remote code execution flaws and several in-the-wild exploits.
Techday fa96ea2af3a004655341

Androxgh0st botnet expands with Mozi IoT capabilities

Wed, 13th Nov 2024
#
cve
CloudSEK warns that the Androxgh0st botnet has significantly expanded its reach, now targeting critical vulnerabilities in various systems and IoT devices.
Techday 7ac4f31ef23586ddd87a

Critical vulnerabilities found in Unisoc systems-on-chip

Thu, 31st Oct 2024
#
cve
Kaspersky's ICS CERT has revealed critical vulnerabilities in Unisoc SoCs, heightening risks of remote hijacking in devices.