CVE-2023-33299: FortiNAC에 중요 원격 코드 실행 취약성
Fortinet has released a patch fixing a remote code execution vulnerability in several versions of FortiNAC
MOVEit 전송 취약성 CL0P 랜섬웨어 갱에 대한 FAQ
Frequently asked questions relating to vulnerabilities in MOVEit Transfer, including one that was exploited by the prolific CL0P ransomware gang.
CVE-2023-20887: 네트워크 명령 인젝션에 대한 VMware Aria 작동
VMware issues advisory to address three flaws in its VMware Aria Operations for Networks solution, including a critical command injection flaw assigned a CVSSv3 score of 9.8.
Microsoft의 June 2023 Patch Tuesday에서 70개 CVE에 대응 (CVE-2023-29357)
Microsoft addresses 70 CVEs in its June 2023 Patch Tuesday update including six rated as critical.
CVE-2023-27997: Fortinet FortiOS 및 FortiProxy SSL-VPN에 힙 기반 버퍼 오버플로우 (XORtigate)
Fortinet says a critical flaw in its SSL-VPN product may have been exploited in the wild in a limited number of cases. Organizations are strongly encouraged to apply these patches immediately.
CVE-2023-34362: MOVEIt에서 무차별적으로 악용되는 위험한 제로데이 취약성을 전송
Discovery of a new zero-day vulnerability in MOVEit Transfer becomes the second zero-day disclosed in a managed file transfer solution in 2023, with reports suggesting that threat actors have stolen data from a number of organizations.
Volt Typhoon: 국제적 사이버 보안 기관이 중국 국가 주도 위협 행위자에 연결된 활동에 대해 자세히 설명
Several international cybersecurity authorities from the United States, United Kingdom, Australia, Canada and New Zealand issue a joint advisory detailing tactics, techniques and procedures used in recent attacks by a Chinese state-sponsored threat actor.
미국 및 오스트레일리아 기관에서 BianLian 랜섬웨어 그룹에 대한 공동 사이버 보안 권고 게시
The FBI, ACSC and CISA have released a joint cybersecurity advisory discussing the BianLian ransomware group.
Microsoft의 May 2023 Patch Tuesday에서 38개 CVE에 대응 (CVE-2023-29336)
Microsoft addresses 38 CVEs including three zero-day vulnerabilities, two of which were exploited in the wild.
CVE-2023-20864: 로그 역직렬화 취약성에 대한 VMware Aria 작동
VMware issues advisory to address two flaws in its VMware Aria Operations for Logs solution, including a critical deserialization flaw assigned a CVSSv3 score of 9.8.
Oracle April 2023 중요 패치 업데이트에서 231개 CVE에 대응
Oracle addresses 231 CVEs in its second quarterly update of 2023 with 433 patches, including 74 critical updates.
97개 CVE를 다루는 Microsoft의 April 2023 Patch Tuesday (CVE-2023-28252)
Microsoft addresses 97 CVEs, including one that was exploited in the wild as a zero day.