TelcoNews UK - Telecommunications news for ICT decision-makers

Common Vulnerabilities and Exposures (CVE) stories - Page 2

Story image
RunZero expands platform for enhanced exposure management
Tue, 8th Apr 2025
#
risk & compliance
#
omdia
#
asset discovery
runZero has unveiled an expanded platform to enhance exposure management, promising to aid organisations in effectively managing risk across their attack surfaces.
Story image
Kaspersky discovers & patches zero-day Chrome flaw
Thu, 3rd Apr 2025
#
malware
#
edutech
#
endpoint protection
Kaspersky has uncovered and patched a critical zero-day vulnerability in Google Chrome, enabling attackers to bypass sandbox protections via malicious links.
Story image
GitHub Action compromise affects over 23,000 repositories
Thu, 20th Mar 2025
#
supply chain
#
open source
#
software development
A malicious commit in the tj-actions/changed-files GitHub Action, used in over 23,000 repositories, threatens software security across numerous CI pipelines.
Story image
Building a culture of cyber hygiene
Tue, 18th Mar 2025
#
data protection
#
phishing
#
physical security
As cyber attacks surge, the World Economic Forum warns of a widening skills gap, urging organisations to foster a culture of cyber hygiene for better security.
Story image
JFrog & Hugging Face join forces to secure AI models
Tue, 18th Mar 2025
#
advanced persistent threat protection
#
supply chain
#
ai security
JFrog has partnered with Hugging Face to enhance security for machine learning models, boosting safety measures on the Hugging Face Hub against potential threats.
Story image
Microsoft patches 56 vulnerabilities, 7 zero days fixed
Tue, 18th Mar 2025
#
phishing
#
email security
#
cybersecurity
Microsoft has patched 56 vulnerabilities in its latest update, including seven zero-day flaws, six of which have been actively exploited.
Story image
February 2025 reports record spike in ransomware attacks
Mon, 17th Mar 2025
#
ransomware
#
soc
#
edr
A recent Bitdefender report reveals February 2025 as the worst month for ransomware, with victims rising 126% to 962, including a notable impact on Australia.
Story image
Mandiant uncovers UNC3886 cyber-attack on Juniper routers
Thu, 13th Mar 2025
#
malware
#
firewalls
#
network infrastructure
Mandiant has uncovered a sophisticated cyber espionage campaign by the China-linked group UNC3886, targeting outdated Juniper Networks routers with advanced malware.
Story image
March Patch Tuesday reveals 57 vulnerabilities
Wed, 12th Mar 2025
#
cybersecurity
#
microsoft
#
windows 11
Microsoft has revealed it will fix 57 vulnerabilities in its March 2025 Patch Tuesday update, including six previously exploited in the wild.
Story image
Exclusive: Cyber threats escalate as Australian organisations face sophisticated attacks
Thu, 6th Mar 2025
#
ransomware
#
blockchain
#
advanced persistent threat protection
Australian organisations face escalating cyber threats as ransomware groups adopt advanced tactics previously seen only in state-sponsored attacks.
Story image
Australia ranks fourth in global cybersecurity attack list
Thu, 27th Feb 2025
#
iot security
#
wireless networks
#
cybersecurity
Australia has climbed to fourth place globally for cyberattacks on critical infrastructure, as a report reveals a surge in diverse threats targeting various sectors.
Story image
2025 forecast predicts a rise in global cyber threats
Wed, 26th Feb 2025
#
risk & compliance
#
cybersecurity
#
cyber espionage
The Forum of Incident Response and Security Teams predicts a staggering 45,505 reported vulnerabilities for 2025, marking an 11% rise from 2024.
Story image
FBI & CISA warn of Ghost ransomware threats worldwide
Tue, 25th Feb 2025
#
malware
#
ransomware
#
advanced persistent threat protection
The FBI and CISA have alerted organisations to increased cyber threats from China's Ghost ransomware group, affecting over 70 countries through outdated software.
Story image
Microsoft's February 2025 patch fixes 56 vulnerabilities
Mon, 24th Feb 2025
#
malware
#
encryption
#
cybersecurity
Microsoft has patched 56 vulnerabilities in its February 2025 update, including two now exploited, marking a fifth month of no critical zero-days released.
Story image
The State of Java in 2025: Oracle’s dominance is over
Fri, 21st Feb 2025
#
ai
#
software development
#
oracle
In a significant shift, 90% of Australian firms are eyeing alternatives to Oracle Java, citing concerns over its pricing and cloud inefficiencies, according to a new survey.
Story image
High-severity SQL vulnerability found in PostgreSQL tool
Fri, 14th Feb 2025
#
rapid7
#
beyondtrust
#
postgresql
Rapid7 has revealed a critical SQL injection vulnerability in PostgreSQL's psql tool, potentially exposing users to severe security risks.
Story image
GitHub partners with Endor Labs to boost security features
Fri, 14th Feb 2025
#
cloud security
#
application security
#
devsecops
GitHub has partnered with Endor Labs, integrating advanced security software to help developers swiftly identify and manage critical vulnerabilities within the platform.
Story image
Akamai uncovers critical Kubernetes flaw for Windows nodes
Tue, 28th Jan 2025
#
virtualisation
#
cloud security
#
ai security
Akamai's security team has revealed a serious flaw in Kubernetes, allowing remote code execution on Windows endpoints, posing significant risks to clusters.
Story image
Zyxel Networks wins 2024 award for firewall innovation
Tue, 21st Jan 2025
#
firewalls
#
endpoint protection
#
network security
Zyxel Networks has won the 2024 Cyber Security Award for Innovation for its USG FLEX 200HP Security Firewall, enhancing global digital resilience.
Story image
Fortinet firewalls hit by major data leak and zero-day flaw
Fri, 17th Jan 2025
#
firewalls
#
mfa
#
breach prevention
A major data leak impacting Fortinet firewalls has revealed sensitive information from 15,000 devices following a critical vulnerability, prompting urgent cybersecurity measures.