Sophos Firewall v22 is now available in early access
Secure by Design
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added three flaws impacting Mitel MiCollab and Oracle WebLogic Server to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The list of vulnerabilities is as follows – CVE-2024-41713 (CVSS score: 9.1) – A path traversal vulnerability in Mitel MiCollab that could allow…
Annie Fixler writes: Since 2011, the Islamic Republic of Iran and pro-regime hackers have increasingly utilized digital technology to threaten U.S. national security, conducting dozens of cyber operations against Americans. Recently, on June 30, the U.S. government issued an advisory warning that Iran may launch additional cyberattacks against U.S. critical infrastructure and the defense industrial base….
SAP has released 14 security notes on January 2025 Patch Day, including two addressing critical vulnerabilities in NetWeaver. The post SAP Patches Critical Vulnerabilities in NetWeaver appeared first on SecurityWeek.
The holiday season compresses risk into a short, high-stakes window. Systems run hot, teams run lean, and attackers time automated campaigns to get maximum return. Multiple industry threat reports show that bot-driven fraud, credential stuffing and account takeover attempts intensify around peak shopping events, especially the weeks around Black Friday and Christmas. Why holiday peaks
Stephen Withers reports: Regulations such as the General Data Protection Regulation (GDPR) and the Australian Prudential Regulation Authority’s (Apra’s) CPS 230 standard have led organisations to become “really obsessed” with the 72-hour notification window following a data breach, according to Shannon Murphy, global security and risk strategist at Trend Micro. However, this focus means many are still……
CNN reports: The Treasury Department cut ties with Booz Allen Hamilton on Monday and announced that it was canceling $21 million in federal contracts with the consulting giant because one of its ex-employees previously leaked President Donald Trump’s tax returns to the press. A statement from Treasury Secretary Scott Bessent referenced Charles Littlejohn, a onetime……