
Attackers Exploit Citrix Zero-Day Bug to Pwn NetScaler ADC, Gateway
Jul 20, 2023 · Citrix issued a patch for the zero-day vulnerability, tracked as CVE-2023-3519, on July 18 along with a recommendation for organizations using the affected products to apply it immediately.
Verizon Employee Data Exposed in Insider Threat Incident
Feb 6, 2024 · About 63,000 Verizon employees have been affected by a breach that occurred in September 2023 but which wasn't discovered for three months.
Orgs Have a Long Way to Go in Securing Remote Workforce
Mar 13, 2023 · Organizations recognize that they are responsible for protecting remote workers from cyber threats, but they have a long way to go in deploying the necessary security technologies.
Fresh MOVEit Bug Under Attack Mere Hours After Disclosure
Jun 25, 2024 · It affects versions from 2023.0.0 before 2023.0.11, from 2023.1.0 before 2023.1.6, and from 2024.0.0 before 2024.0.2 of MOVEit Transfer.
Microsoft 'Logging Tax' Hinders Incident Response, Experts Warn
Jul 17, 2023 · Becky Bracken, Senior Editor, Dark Reading July 17, 2023 3 Min Read Source: dennizn via Alamy Stock Photo
AT&T Confirms 73M Customers Affected in Data Leak
Apr 1, 2024 · AT&T Confirms 73M Customers Affected in Data Leak AT&T denies any evidence of unauthorized access but admits that a data set released on the Dark Web including Social Security …
Attackers Abuse PaperCut RCE Flaws to Take Over Enterprise Print …
Apr 25, 2023 · CVE-2023-27350 exists within the SetupCompleted class and results from improper access control, according to its listing on the Zero Day Initiative website.
Microsoft Fixes Failed Patch for Exploited Outlook Vulnerability
May 10, 2023 · CVE-2023-29324 is a remotely exploitable, zero-click vulnerability that renders the patch for the original Outlook vulnerability useless, researchers at Akamai say.
Critical Cisco SMB Router Flaw Allows Authentication Bypass, PoC …
Jan 12, 2023 · The first bug is a critical-rated authentication bypass issue (CVE-2023-20025) that exists in the Web management interface of the devices and carries a rating of 9 out of 10 on the CVSS ...
China's Silk Typhoon Shifts to IT Supply Chain Attacks
Mar 5, 2025 · Some of the past zero-days the group has exploited include CVE-2025-0282 in Ivanti Pulse Connect VPN; CVE-2024-3400 in Palo Alto Networks' PAN-OS software; CVE-2023-3519 in …