More MOVEit vulnerabilities found while the first one still resonates

Categories: Exploits and vulnerabilities

Categories: News

Categories: Ransomware

Tags: MOVEit

Tags: Progress

Tags: Cl0p

Tags: ransomware

Tags: CVE-2023-34362

A security audit of the MOVEit code has revealed more SQL injection vulnerabilities, while victims of the first vulnerability are coming to the surface.

(Read more…)

The post More MOVEit vulnerabilities found while the first one still resonates appeared first on Malwarebytes Labs.

Read more

Update your Cisco System Secure Client now to fix this AnyConnect bug

Categories: Exploits and vulnerabilities

Categories: News

Tags: Cisco

Tags: anyconnect

Tags: system secure client

Tags: VPN

Tags: bug

Tags: patch

Tags: update

Tags: vulnerability

Tags: SYSTEM

We take a look at a recent update for Cisco Secure System Client and why you should apply the update as soon as possible.

(Read more…)

The post Update your Cisco System Secure Client now to fix this AnyConnect bug appeared first on Malwarebytes Labs.

Read more

VMware patches critical vulnerabilities in Aria Operations for Networks

Categories: Exploits and vulnerabilities

Categories: News

Tags: cve-2023-20887

Tags: cve-2023-20888

Tags: cve-2023-20889

Tags: vmware

Tags: Aria Operations for Networks

Tags: RCE

Tags: information disclosure

Tags: deserialization

Tags: command injection

VMware has released security updates to fix a trio of flaws in Aria Operations for Networks that could result in information disclosure and remote code execution

(Read more…)

The post VMware patches critical vulnerabilities in Aria Operations for Networks appeared first on Malwarebytes Labs.

Read more

Update Chrome now! Google patches actively exploited zero-day

Categories: Exploits and vulnerabilities

Categories: News

Tags: Google

Tags: Chrome

Tags: V8

Tags: heap corruption

Tags: type confusion

Tags: CVE-2023-3079

Google has released a Chrome update for a zero-day for which an exploit is actively being used in the wild.

(Read more…)

The post Update Chrome now! Google patches actively exploited zero-day appeared first on Malwarebytes Labs.

Read more

Cl0p ransomware gang claims first victims of the MOVEit vulnerability

Categories: Exploits and vulnerabilities

Categories: News

Categories: Ransomware

Tags: Progress

Tags: MOVEit

Tags: Transfer

Tags: CVE-2023-34362

Tags: BBC

Tags: Zellis

Tags: BA

The first victims of the ongoing attacks on vulnerable MOVEit Transfer instances are coming forward. The Cl0p ransomware gang claims it is behind the attacks.

(Read more…)

The post Cl0p ransomware gang claims first victims of the MOVEit vulnerability appeared first on Malwarebytes Labs.

Read more

Update now! MOVEit Transfer vulnerability actively exploited

Categories: Exploits and vulnerabilities

Categories: News

Tags: Progress

Tags: MOVEit

Tags: vulnerability

Tags: human2.aspx

A critical vulnerability in Progress MOVEit Transfer is being used to steal large amounts of data

(Read more…)

The post Update now! MOVEit Transfer vulnerability actively exploited appeared first on Malwarebytes Labs.

Read more

Microsoft gives Apple a migraine

Categories: Exploits and vulnerabilities

Categories: News

Tags: Apple

Tags: macOS

Tags: Ventura 13.4

Tags: Monterey 12.6.6

Tags: Big Sur 11.7.7

Tags: libxpc

Tags: SIP

Tags: XPC

Tags: NVRAM

Tags: CVE-2023-32369

Tags: Migraine

Microsoft has released details about a vulnerability that can bypass macOS’s System Integrity Protection

(Read more…)

The post Microsoft gives Apple a migraine appeared first on Malwarebytes Labs.

Read more

[updated] Barracuda Networks patches zero-day vulnerability in Email Security Gateway

Categories: Exploits and vulnerabilities

Categories: News

Barracuda Networks issued a patch for a zero-day vulnerability in its Email Security Gateway that was actively being exploited

(Read more…)

The post [updated] Barracuda Networks patches zero-day vulnerability in Email Security Gateway appeared first on Malwarebytes Labs.

Read more