Jenkins Patches High-Impact Vulnerabilities in Server and Plugins
Jenkins has released patches for multiple high- and medium-severity vulnerabilities impacting the automation tool and several plugins.
The post Jenkins Patches High-Impact Vulnerabilities in Server and Plugins appeared first on SecurityWeek.
North Korean Hackers Using New VeilShell Backdoor in Stealthy Cyber Attacks
The activity, dubbed SHROUDED#SLEEP by Securonix, is believed to be the handiwork of APT37, which is also known as InkySquid, Reaper, RedEyes, Ricochet Chollima,
Ivanti EPM Vulnerability Exploited in the Wild
An Ivanti EPM SQL injection vulnerability tracked as CVE-2024-29824 has been exploited to target some of the company’s customers.
The post Ivanti EPM Vulnerability Exploited in the Wild appeared first on SecurityWeek.
Cisco Patches Critical Vulnerability in Data Center Management Product
A critical-severity vulnerability in Cisco NDFC could allow attackers to execute commands with elevated privileges.
The post Cisco Patches Critical Vulnerability in Data Center Management Product appeared first on SecurityWeek.
Court Data Exposed by Vulnerabilities in Software Used by US Government: Researcher
Several e-filing and record management systems used in various US states were affected by serious vulnerabilities exposing sensitive data.
The post Court Data Exposed by Vulnerabilities in Software Used by US Government: Researcher appeared first on SecurityWeek.
Adobe Commerce Flaw Exploited to Compromise Thousands of Sites
Over 4,000 Adobe Commerce and Magento stores unpatched against an exploited vulnerability have been compromised.
The post Adobe Commerce Flaw Exploited to Compromise Thousands of Sites appeared first on SecurityWeek.
Cybersecurity Head Says There’s No Chance a Foreign Adversary Can Change US Election Results
CISA director Jen Easterly says there is no chance a foreign adversary can change the results of the upcoming US election.
The post Cybersecurity Head Says There’s No Chance a Foreign Adversary Can Change US Election Results appeared first on SecurityWeek.
Chrome, Firefox Updates Patch High-Severity Vulnerabilities
The latest Chrome and Firefox security updates address multiple high-severity vulnerabilities affecting the popular web browsers.
The post Chrome, Firefox Updates Patch High-Severity Vulnerabilities appeared first on SecurityWeek.
New Vulnerabilities Expose Hundreds of Thousands of DrayTek Routers to Hacking
Forescout has identified more than a dozen new vulnerabilities in DrayTek routers, exposing hundreds of thousands of devices to attacks.
The post New Vulnerabilities Expose Hundreds of Thousands of DrayTek Routers to Hacking appeared first on SecurityWeek.
