Overview: Veeam released patches for 13 high-severity and five critical vulnerabilities, including an unauthenticated remote code execution (RCE) flaw in Veeam Backup & Replication (CVE-2024-40711), which has a CVSS score of 9.8. This vulnerability could allow attackers to fully take over a system, and security firm CODE WHITE, who discovered it, warned that disclosing technical details could lead to its exploitation by ransomware gangs.
Key Vulnerabilities:
Recommendations:
Overview: A critical vulnerability has been discovered in SonicWall’s SonicOS Management Access and SSLVPN (CVE-2024-40766), potentially leading to unauthorized resource access. In some cases, this vulnerability can cause firewalls to crash. SonicWall has confirmed active exploitation in the wild, making this vulnerability particularly urgent.
Systems Affected:
Threat Intelligence: SonicWall reports that CVE-2024-40766 is actively exploited, making the need for immediate action critical.
Risk:
Recommendations:
Discover and share the latest cybersecurity trends, tips and best practices – alongside new threats to watch out for.
Spoiler alert: If you’re still using “password123” or “iloveyou” for your login… it’s time for an...
Read moreStop tricking employees. Start training them. Take Control of Your Security Awareness Training with a Platform...
Read moreGet sharper eyes on human risks, with the positive approach that beats traditional phish testing.