SpringShell RCE vulnerability: Guidance for protecting against and detecting CVE-2022-22965

Credit to Author: Paul Oliveria| Date: Tue, 05 Apr 2022 01:11:24 +0000

Microsoft provides guidance for customers looking for protection against exploitation and ways to detect vulnerable installations on their network of the critical vulnerability CVE-2022-22965, also known as SpringShell or Spring4Shell.

The post SpringShell RCE vulnerability: Guidance for protecting against and detecting CVE-2022-22965 appeared first on Microsoft Security Blog.

Read more

The Russian cyberattack threat might force a new IT stance

Credit to Author: Evan Schuman| Date: Mon, 04 Apr 2022 09:20:00 -0700

There’s a lot of fear of possible Russian cyberattacks stemming from Russia’s attempted takeover of Ukraine. Perhaps the biggest worry —and quite possibly the most likely to materialize — is that these cyberattacks will likely be finely tuned as retaliation for US financial moves against the Russian economy. 

The cyberattacks would be designed not to steal money or data per se, but to harm the US economy by strategically hitting major players in key verticals. In other words, the Russian government might say, “You hurt our economy and our people? We’ll do the same to you.”

Thus far, there’s no evidence of any large-scale attack, but one could be launched at any time. 

To read this article in full, please click here

Read more

“Free easter chocolate basket” is a social media scam after your personal details

Credit to Author: Jovi Umawing| Date: Mon, 04 Apr 2022 12:36:49 +0000

Scammers are promising chocolates in exchange for your details.

The post “Free easter chocolate basket” is a social media scam after your personal details appeared first on Malwarebytes Labs.

Read more

Update now! Zyxel patches critical firewall bypass vulnerability

Credit to Author: Pieter Arntz| Date: Mon, 04 Apr 2022 10:22:29 +0000

Zyxel has urged customers to update after it disclosed a security flaw that could lead to the circumvention of firewall protection in several of its products.

The post Update now! Zyxel patches critical firewall bypass vulnerability appeared first on Malwarebytes Labs.

Read more

A week in security (March 28 – April 3)

Credit to Author: Malwarebytes Labs| Date: Mon, 04 Apr 2022 10:08:24 +0000

The most important and interesting security stories from the last seven days.

The post A week in security (March 28 – April 3) appeared first on Malwarebytes Labs.

Read more