43% of Clusters Face Remote Takeover Risk

Immediate Patching Urged to Address Flaws in Widely Used Ingress Nginx Controller Mathew J. Schwartz (euroinfosec) • March 24, 2025     Image: Shutterstock Critical vulnerabilities in the popular Kubernetes container management system need immediate patching to prevent attackers from taking control of cloud-based applications, management interfaces and more, researchers warn. See Also: Financial & … Read more

43% of Clusters Face Remote Takeover Risk

Cloud Security , Security Operations Immediate Patching Urged to Address Flaws in Widely Used Ingress Nginx Controller Mathew J. Schwartz (euroinfosec) • March 24, 2025     Image: Shutterstock Critical vulnerabilities in the popular Kubernetes container management… Source link

Ongoing Cyber Attacks Exploit Critical Vulnerabilities in Cisco Smart Licensing Utility

Mar 21, 2025Ravie LakshmananCyber Attack / Vulnerability Two now-patched security flaws impacting Cisco Smart Licensing Utility are seeing active exploitation attempts, according to SANS Internet Storm Center. The two critical-rated vulnerabilities in question are listed below – CVE-2024-20439 (CVSS score: 9.8) – The presence of an undocumented static user credential for an administrative account that … Read more

Moxa Issues Fix for Critical Authentication Bypass Vulnerability in PT Switches

Mar 11, 2025Ravie LakshmananICS Security / Vulnerability Taiwanese company Moxa has released a security update to address a critical security flaw impacting its PT switches that could permit an attacker to bypass authentication guarantees. The vulnerability, tracked as CVE-2024-12297, has been assigned a CVSS v4 score of 9.2 out of a maximum of 10.0. “Multiple … Read more

Supreme Court May Allow U.S. TikTok Ban Unless Sold: Key Details Explained

Supreme Court Poised to Uphold TikTok Ban,Raising⁣ Stakes for Millions of Users and Content Creators The U.S. Supreme Court appeared inclined on⁤ Friday to uphold a law that⁤ could lead to ⁤a‍ nationwide ban of TikTok, the wildly popular short-form video app⁤ owned by the Chinese company ByteDance. The justices expressed concerns over the … … Read more

Palo Alto Patches Exploited Firewall Denial-of-Service Flaw

Network Firewalls, Network Access Control , Security Operations Unauthenticated Attackers Using Malicious Packet to Crash Devices’ PAN-OS Software Mathew J. Schwartz (euroinfosec) • December 27, 2024     Attackers are crashing Palo Alto Networks firewalls by sending them “a malicious packet,” the company… Source link