news
Security Leftovers and Microsoft TCO
-
Security Week ☛ Critical WatchGuard Firebox Vulnerability Exploited in Attacks
Tracked as CVE-2025-9242 (CVSS score of 9.3), the flaw leads to unauthenticated, remote code execution on vulnerable firewalls.
-
Security Week ☛ 1,000+ Servers Hit in Law Enforcement Takedown of Rhadamanthys, VenomRAT, Elysium
An individual believed to have been involved in the operation of VenomRAT was arrested recently in Greece.
-
Security Week ☛ Synnovis Confirms Patient Information Stolen in Disruptive Ransomware Attack
The ransomware attack on the pathology services provider disrupted operations at several London hospitals.
-
Security Week ☛ CISA Updates Guidance on Patching Cisco Devices Targeted in China-Linked Attacks
Federal agencies have reported as ‘patched’ ASA or FTD devices running software versions vulnerable to attacks.
-
Federal News Network ☛ Congress extends CISA 2015, but path to long-term reauthorization remains murky
CISA 2015, a key cyber info sharing law, lapsed for six weeks. Now, the question is whether Congress can find a path to a long-term reauthorization.
-
Microsoft TCO
-
Security Week ☛ Tens of Thousands of Malicious NPM Packages Distribute Self-Replicating Worm [Ed: Microsoft/Windows TCO, as it is Microsoft transmitting malware to computers]
The spam campaign is likely orchestrated by an Indonesian threat actor, based on code comments and the packages’ random names.
-