Security Leftovers
- 
            CISA Program Warns Critical Infrastructure Organizations Vulnerable to Ransomware AttacksA new CISA pilot program to warn critical infrastructure organizations if their systems are unpatched against vulnerabilities exploited in ransomware attacks. 
- 
            Microsoft SmartScreen Zero-Day Exploited to Deliver Magniber RansomwareA cybercrime group has been exploiting a Microsoft SmartScreen zero-day vulnerability tracked as CVE-2023-24880 to deliver the Magniber ransomware. 
- 
            Adobe Warns of ‘Very Limited Attacks’ Exploiting ColdFusion Zero-DayAdobe issues urgent warning for “very limited attacks” exploiting a zero-day vulnerability in its ColdFusion web app development platform. 
- 
            Two U.S. Men Charged in 2022 Hacking of DEA PortalTwo U.S. men have been charged with hacking into a U.S. Drug Enforcement Agency (DEA) online portal that taps into 16 different federal law enforcement databases. Both are alleged to be part of a larger criminal organization that specializes in using fake emergency data requests from compromised police and government email accounts to publicly threaten and extort their victims. 
- 
            Ring Denies Falling Victim to Ransomware AttackRing says it has no indications it has fallen victim to a ransomware attack after cybergang threatens to publish supposedly stolen data. 
- 
            ICS Patch Tuesday: Siemens, Schneider Electric Address Over 100 VulnerabilitiesSiemens and Schneider Electric have addressed more than 100 vulnerabilities with their March 2023 Patch Tuesday security advisories.