Cybersecurity and Software News - December 9, 2024 Отечественный Стор от REChain ®️ 🪐! › 2024 12 22 декабрь воскресенье

10 мин (время прочтения) The OpenWrt team has addressed a critical flaw (CVE-2024-54143) in its sysupgrade server, which posed risks of malicious firmware being installed. Simultaneously, QNAP released patches for vulnerabilities disclosed during the Pwn2Own Ireland 2024 hacking competition. Organizations using these platforms are urged to apply updates immediately. декабрь 09, 2024 19:59 Cybersecurity and Software News - December 9, 2024 Cybersecurity and Software News - December 9, 2024

Cybersecurity and Software News

Date: December 9, 2024

Critical Vulnerabilities Patched in OpenWrt and QNAP

The OpenWrt team has addressed a critical flaw (CVE-2024-54143) in its sysupgrade server, which posed risks of malicious firmware being installed. Simultaneously, QNAP released patches for vulnerabilities disclosed during the Pwn2Own Ireland 2024 hacking competition. Organizations using these platforms are urged to apply updates immediately.

Source: SecurityWeek

Major Cybersecurity Acquisitions Announced

The industry continues to consolidate as Bitsight acquires Cybersixgill for $115 million, and CrowdStrike announces a $300 million acquisition of Adaptive Shield. These moves highlight the increasing importance of advanced threat intelligence and security posture management in enterprise cybersecurity.

Source: SecurityWeek

Gartner Highlights 2024 Cybersecurity Trends

A new report from Gartner identifies nine critical capabilities for cybersecurity leaders to focus on in 2024. These include harnessing generative AI, improving resilience amid hybrid work and cloud adoption, and adapting to stricter regulatory demands. The report underscores the growing complexity of managing digital ecosystems in a rapidly evolving threat landscape.

Source: Gartner

SonicWall Updates Secure Access Gateway

SonicWall has patched six high-severity vulnerabilities in its SMA100 SSL-VPN products. These flaws could have allowed attackers to gain unauthorized access or disrupt operations. Customers are strongly advised to update their systems without delay.

Source: SecurityWeek

New Insights into Emerging Threats

SecurityWeek’s latest insights explore the dangers of deepfake technology being weaponized for business email compromise (BEC) scams. A forthcoming webinar aims to equip organizations with strategies to counteract these advanced social engineering attacks.

Source: SecurityWeek

Stay informed with the latest cybersecurity and software updates. Check back tomorrow for more news.

Комментарии пользователей (0)

Добавить комментарий
Мы никогда не передадим вашу электронную почту кому-либо еще.