π Friday Five 7/8 π
π Read
via "".
In this weekβs Friday Five, read more about what Apple is doing to protect users against government-backed malware, why U.S. healthcare organizations should be on high alert, how threat actors are changing their tactics, and much more.
π Read
via "".
π΄ Coalition Closes $250 Million in Series F Funding, Valuing the Cyber Insurance Provider at $5 Billion π΄
π Read
via "Dark Reading".
Funding from Allianz X, Valor Equity Partners, Kinetic Partners, and existing investors will accelerate Coalitionβs vision to provide security for all.π Read
via "Dark Reading".
Dark Reading
Coalition Closes $250 Million in Series F Funding, Valuing the Cyber Insurance Provider at $5 Billion
Funding from Allianz X, Valor Equity Partners, Kinetic Partners, and existing investors will accelerate Coalitionβs vision to provide security for all.
π΄ Swimlane Secures $70M Growth Round to Fuel Global Expansion of Next Generation Low-Code Security Automation Platform π΄
π Read
via "Dark Reading".
.π Read
via "Dark Reading".
Dark Reading
Swimlane Secures $70M Growth Round to Fuel Global Expansion of Next Generation Low-Code Security Automation Platform
π΄ Worldwide Enterprise Endpoint Security Industry to 2027: Focus on Antivirus, Firewall, Endpoint Device Control, and Anti-Spyware/Anti-Malware π΄
π Read
via "Dark Reading".
.π Read
via "Dark Reading".
Dark Reading
Worldwide Enterprise Endpoint Security Industry to 2027: Focus on Antivirus, Firewall, Endpoint Device Control, and Anti-Spyware/Antiβ¦
ποΈ AstraLocker ransomware decryptors released by Emsisoft ποΈ
π Read
via "The Daily Swig".
Threat actor released decryption keys after abandoning malware to focus on cryptojackingπ Read
via "The Daily Swig".
The Daily Swig | Cybersecurity news and views
AstraLocker ransomware decryptors released by Emsisoft
Threat actor released decryption keys after abandoning malware to focus on cryptojacking
π΄ SOAR Market Worth $2.3 Billion by 2027, According to Exclusive Report by MarketsandMarkets π΄
π Read
via "Dark Reading".
.π Read
via "Dark Reading".
Dark Reading
SOAR Market Worth $2.3 Billion by 2027, According to Exclusive Report by MarketsandMarkets
π΄ Welcome-Back-to-the-Future Shock π΄
π Read
via "Dark Reading".
This year's RSA Conference saw a strange mix of selling the future and the past β for good reason.π Read
via "Dark Reading".
Dark Reading
Welcome-Back-to-the-Future Shock
This year's RSA Conference saw a strange mix of selling the future and the past β for good reason.
βΌ CVE-2022-34166 βΌ
π Read
via "National Vulnerability Database".
IBM CICS TX Standard and Advanced 11.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 229430.π Read
via "National Vulnerability Database".
βΌ CVE-2022-34160 βΌ
π Read
via "National Vulnerability Database".
IBM CICS TX Standard and Advanced 11.1 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the security context of the hosting site. IBM X-Force ID: 229330.π Read
via "National Vulnerability Database".
βΌ CVE-2022-34306 βΌ
π Read
via "National Vulnerability Database".
IBM CICS TX Standard and Advanced 11.1 is vulnerable to HTTP header injection, caused by improper validation of input by the HOST headers. This could allow an attacker to conduct various attacks against the vulnerable system, including cross-site scripting, cache poisoning or session hijacking. IBM X-Force ID: 229435.π Read
via "National Vulnerability Database".
βΌ CVE-2022-35406 βΌ
π Read
via "National Vulnerability Database".
A URL disclosure issue was discovered in Burp Suite before 2022.6. If a user views a crafted response in the Repeater or Intruder, it may be incorrectly interpreted as a redirect.π Read
via "National Vulnerability Database".
βΌ CVE-2022-34167 βΌ
π Read
via "National Vulnerability Database".
IBM CICS TX Standard and Advanced 11.1 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 229432.π Read
via "National Vulnerability Database".
π΄ DoJ Charges CEO for Dealing $1B in Fake Cisco Gear π΄
π Read
via "Dark Reading".
Fraudster allegedly passed off refurbished, modified Cisco equipment as new to hospitals, schools, and even the military.π Read
via "Dark Reading".
Dark Reading
DoJ Charges CEO for Dealing $1B in Fake Cisco Gear
Fraudster allegedly passed off refurbished, modified Cisco equipment as new to hospitals, schools, and even the military.
βΌ CVE-2015-5597 βΌ
π Read
via "National Vulnerability Database".
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2015. Notes: none.π Read
via "National Vulnerability Database".
βΌ CVE-2015-5328 βΌ
π Read
via "National Vulnerability Database".
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2015. Notes: none.π Read
via "National Vulnerability Database".
βΌ CVE-2015-5596 βΌ
π Read
via "National Vulnerability Database".
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2015. Notes: none.π Read
via "National Vulnerability Database".
βΌ CVE-2015-4169 βΌ
π Read
via "National Vulnerability Database".
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2015. Notes: none.π Read
via "National Vulnerability Database".
βΌ CVE-2022-22463 βΌ
π Read
via "National Vulnerability Database".
IBM Security Access Manager Appliance 10.0.0.0, 10.0.1.0, 10.0.2.0, and 10.0.3.0 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 225079.π Read
via "National Vulnerability Database".
βΌ CVE-2022-22370 βΌ
π Read
via "National Vulnerability Database".
IBM Security Verify Access 10.0.0.0, 10.0.1.0, 10.0.2.0, and 10.0.3.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 221194.π Read
via "National Vulnerability Database".
βΌ CVE-2015-7800 βΌ
π Read
via "National Vulnerability Database".
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2015. Notes: none.π Read
via "National Vulnerability Database".
βΌ CVE-2015-8819 βΌ
π Read
via "National Vulnerability Database".
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2015. Notes: none.π Read
via "National Vulnerability Database".