White Papers
Video

Latest Comment: I said I wanted ‘fish’ for dinner, he thought I said ‘phish’.
Current Issue
2021 Top Enterprise IT TrendsWe’ve identified the key trends that are poised to impact the IT landscape in 2021. Find out why they’re important and how they will affect you today!Flash Poll

Building the SOC of the Future
Digital transformation, cloud-focused attacks, and a worldwide pandemic. The past year has changed the way business works and the way security teams operate. There is no going back.
Twitter Feed

Bug Report
From DHS/US-CERT’s National Vulnerability Database
CVE-2021-20588
PUBLISHED: 2021-02-19
Improper handling of length parameter inconsistency vulnerability in Mitsubishi Electric FA Engineering Software(C Controller module setting and monitoring tool all versions, CPU Module Logging Configuration Tool all versions, CW Configurator all versions, Data Transfer all versions, EZSocket all ve…
CVE-2021-26713
PUBLISHED: 2021-02-19
A stack-based buffer overflow in res_rtp_asterisk.c in Sangoma Asterisk before 16.16.1, 17.x before 17.9.2, and 18.x before 18.2.1 and Certified Asterisk before 16.8-cert6 allows an authenticated WebRTC client to cause an Asterisk crash by sending multiple hold/unhold requests in quick succession. T…
CVE-2020-35499
PUBLISHED: 2021-02-19
A NULL pointer dereference flaw in kernel versions prior to 5.11 may be seen if sco_sock_getsockopt function in net/bluetooth/sco.c do not have a sanity check for a socket connection, when using BT_SNDMTU/BT_RCVMTU for SCO sockets. This could allow a local attacker with a special user privilege to c…
CVE-2021-20587
PUBLISHED: 2021-02-19
Heap-based buffer overflow vulnerability in Mitsubishi Electric FA Engineering Software (C Controller module setting and monitoring tool all versions, CPU Module Logging Configuration Tool all versions, CW Configurator all versions, Data Transfer all versions, EZSocket all versions, FR Configurator …
CVE-2021-27214
PUBLISHED: 2021-02-19
A Server-side request forgery (SSRF) vulnerability in the ProductConfig servlet in Zoho ManageEngine ADSelfService Plus through 6013 allows a remote unauthenticated attacker to perform blind HTTP requests or perform a Cross-site scripting (XSS) attack against the administrative interface via an HTTP…
The post Kia Denies Ransomware Attack as IT Outage Continues appeared first on Malware Devil.
https://malwaredevil.com/2021/02/19/kia-denies-ransomware-attack-as-it-outage-continues/?utm_source=rss&utm_medium=rss&utm_campaign=kia-denies-ransomware-attack-as-it-outage-continues



No comments:
Post a Comment