Threat Advisories
Detailed information and guidance on threats and vulnerabilities, focusing on its characteristics, impact, and remediation steps, released daily and weekly to provide actionable intelligence and aid in rapid response and mitigation efforts.
Strengthen Your Defenses With the Latest Intelligence
Threat Level – Red | Vulnerability Report
Patch available for pre-announced Critical Vulnerability in OpenSSL
OpenSSL has released the Patch for the pre-announced critical vulnerability. In the November 2, 2022 Threat Level – Amber | Vulnerability Report
Privilege Escalation in VMware spring-security
A vulnerability in VMware’s Spring Security affects the mapping of permitted scope November 2, 2022 Threat Level – Red | Vulnerability Report
Google Chrome’s seventh zero-day of 2022
A zero-day vulnerability has been discovered in Google Chrome versions prior to November 1, 2022 Threat Level – Red | Vulnerability Report
LV Ransomware Exploited ProxyShell to target Jordan
LV ransomware as a service has been active since late 2020 The October 31, 2022 Threat Level – Red | Vulnerability Report
Threat Actors launch a campaign to exploit vulnerability in Fortinet
Tailgate campaign is currently being carried out by the threat actors Hafnium October 28, 2022 Threat Level – Red | Vulnerability Report
VMware Cloud Foundation has a significant RCE flaw
A Remote Code Execution (RCE) vulnerability through the XStream open-source library tagged October 28, 2022 Threat Level – Amber | Vulnerability Report
Stranger Strings: A 22-year-old vulnerability in SQLite
A vulnerability in the SQLite library API has been assigned CVE-2022-35737, which October 28, 2022 Threat Level – Red | Vulnerability Report
Lazarus neutralizes antivirus software using BYOVD technique
The Lazarus group exploits known vulnerabilities within Dream Security’s MagicLine4NX and INITECH October 27, 2022