Critical Vulnerabilities in Ivanti Sentry - Conflicting Assessments of Attacks
While CISA warns of active attacks on Ivanti Sentry, the company plays the threat down. Two critical flaws enable complete system compromise.
Latest news, new products and industry trends from the security technology sector - curated daily for specialist dealers, installers and end customers.
While CISA warns of active attacks on Ivanti Sentry, the company plays the threat down. Two critical flaws enable complete system compromise.
A critical vulnerability in Check Point VPN software is being actively exploited by the ransomware gang Qilin. Attackers can establish VPN connections without a valid password.
Security researchers release an exploit for Microsoft Bitlocker with no security updates available. What does this mean for data security?
Hackers from the UNC3753 group gain physical access to offices by posing as IT support. Google and the FBI warn of the growing threat.
IT researchers demonstrate a new type of adaptive malware: an AI worm uses LLMs to develop exploits autonomously and spreads without human involvement.
Google closes 18 critical vulnerabilities in Android 14, 15 and 16. Attackers could gain elevated user privileges or carry out DoS attacks.
An Enisa study shows that while some sectors are catching up on cybersecurity, the risk zone is growing. Rail transport and water supply are causing particular concern.
TU Darmstadt and e-netz Südhessen have developed a stress test methodology to make power grids more robust against cyberattacks. A real-world demonstrator is already in operation.
Artificial intelligence is drastically changing the threat landscape. Where hackers once needed months, hours are now often enough. New challenges for businesses.
Germany recorded 334,000 cybercrime cases with damages of 202.4 billion euros. Ransomware attacks are up 10%, DDoS attacks up 25%. AI is intensifying the threat.
New monitoring technologies based on digital twins enable continuous vulnerability detection across the entire product lifecycle for CRA compliance.
Microsoft warns of an actively exploited zero-day vulnerability in Exchange Server. Attackers can inject JavaScript code via manipulated emails. Emergency patches available.