Latest News Articles



--- TLP:WHITE ---

News

− Kaspersky Exits U.S. Market Following Commerce Department Ban

Russian security vendor Kaspersky has said it's exiting the U.S. market nearly a month after the Commerce Department announced a ban on the sale of its software in the country citing a national security risk. News of the closure was first reported by journalist Kim Zetter. The company is expected to wind down its U.S. operations on July 20, 2024, the same day the ban comes into effect.

https://thehackernews.com/2024/07/kaspersky-exits-us-market-following.html

Vulnerabilities

− CISA, FBI Urge Immediate Action on OS Command Injection Vulnerabilities in Network Devices

In response to recent intrusions, CISA and the FBI are urging businesses and device manufacturers to eliminate OS command injection vulnerabilities at the source.

https://www.cisa.gov/resources-tools/resources/secure-design-alert-eliminating-os-command-injection-vulnerabilities

− Hackers use PoC exploits in attacks 22 minutes after release

hreat actors are quick to weaponize available proof-of-concept (PoC) exploits in actual attacks, sometimes as quickly as 22 minutes after exploits are made publicly available.

https://blog.cloudflare.com/application-security-report-2024-update

− Critical vulnerability exists in Microsoft Office - CVE-2024-38021

CVE-2024-38021 is a high-severity vulnerability affecting Microsoft Outlook where an attacker could craft a malicious link that bypasses the Protected View Protocol leading to privilage escalation

https://www.ncsc.gov.ie/pdfs/2407110151_Vulns_Microsoft_Office.pdf

Community News

− Cyber Ireland National Conference 2024 in Kilkenny on September 26, 2024

The Cyber Ireland National Conference (CINC), is Cyber Ireland’s annual flagship cyber security event bringing together and building our cyber security community with leaders and professionals across industry, academia and government.

https://cyberireland.ie/ci-event/cyber-ireland-national-conference/

--- TLP:WHITE ---