| Jan 12, 2024 Flash Notice: UPDATE - Ivanti Zero Days Exploited by Chinese Threat Actors UPDATE (1/18/2024) - This week, it is being reported that the zero-day vulnerabilities affecting Ivanti are under massive exploitation.
| Jan 2, 2024 Flash Notice: Barracuda's ESG Appliances Hacked by Chinese Threat Actors A zero-day vulnerability in Barracuda’s Email Security Gateway (ESG) appliances has been exploited by Chinese threat actors.
| Dec 21, 2023 Flash Notice: Thirteen Critical Vulnerabilities Found in Ivanti Avalanche Thirteen vulnerabilities were found in the Ivanti Avalanche. Ivanti has recently issued security updates to address the critical vulnerabilities.
| Dec 20, 2023 Flash Notice: Critical Outlook Vulnerability a Risk to User Data Microsoft has recently patched several critical vulnerabilities impacting Outlook: CVE-2023-23397, CVE-2023-35384, and CVE-2023-36710.
| Dec 18, 2023 Flash Notice: Threat Actors Attempt to Exploit Apache Struts 2 - Patch Now This week, attackers are actively attempting to exploit a recently patched path traversal vulnerability (CVE-2023-50164) in Apache Struts 2.
| Dec 4, 2023 Flash Notice: Google Zero-Day Actively Exploited by Attackers This week, Google released security updates addressing seven security issues in its Chrome browser.
| Nov 30, 2023 Flash Notice: Attackers Exploit ownCloud Vulnerability - Patch Now Attackers are actively exploiting a critical information disclosure vulnerability (CVE-2023-49103) within ownCloud, a widely used file sharing platform.
| Nov 20, 2023 Flash Notice: Microsoft Patches Several Zero-Day Vulnerabilities This week, Microsoft patched 6 vulnerabilities tracked as CVE-2023-36025, CVE-2023-36033, CVE-2023-36036, CVE-2023-36038, CVE-2023-36052, & CVE-2023-36413.
| Nov 16, 2023 Flash Notice: Critical Vulnerability in VM Cloud Director - No Patch Available A critical vulnerability (CVE-2023-34060) has been found in VMware Cloud Director instances upgraded to version 10.5 from an older version.
| Nov 14, 2023 Flash Notice: Threat Actors Exploiting SysAid Zero-Day Vulnerability This week, threat actors are actively exploiting a zero-day vulnerability (CVE-2023-47246) in the SysAid service management software.