CISA catalog passes 1,000 known-to-be-exploited vulnerabilities. Celebration time, or is it?

Categories: Exploits and vulnerabilities

Categories: News

Tags: CISA

Tags: KEV

Tags: catalog

Tags: vulnerabilities

Tags: prioritize

The CISA Known Exploited Vulnerabilities catalog has grown to cover more than 1,000 vulnerabilities since its launch in November 2021.

(Read more…)

The post CISA catalog passes 1,000 known-to-be-exploited vulnerabilities. Celebration time, or is it? appeared first on Malwarebytes Labs.

Read more

The mystery of the CVEs that are not vulnerabilities

Categories: Business

Categories: Exploits and vulnerabilities

Categories: News

Tags: CVE

Tags: NVD

Tags: vulnerabilities

Tags: CVE-2020-19909

Researchers have raised the alarm about a large set of CVE for older bugs that never were vulnerabilities.

(Read more…)

The post The mystery of the CVEs that are not vulnerabilities appeared first on Malwarebytes Labs.

Read more

The main causes of ransomware reinfection

Categories: News

Categories: Ransomware

Tags: ransomware

Tags: reinfection

Tags: stolen credentials

Tags: vulnerabilities

Tags: infected backups

Tags: logging

Tags: forensic investigation

Tags: backdoors

The main causes for getting reinfected with ransomware can be prevented by performing a forensic analysis.

(Read more…)

The post The main causes of ransomware reinfection appeared first on Malwarebytes Labs.

Read more

MOVEit Transfer fixes three new vulnerabilities

Categories: Exploits and vulnerabilities

Categories: News

Categories: Ransomware

Tags: Progress

Tags: MOVEit

Tags: vulnerabilities

Tags: CVE-2023-36934

Tags: CVE-2023-36932

Tags: CVE-2023-36933

CISA has warned users about three new vulnerabilities in Progress Software’s MOVEit Transfer software.

(Read more…)

The post MOVEit Transfer fixes three new vulnerabilities appeared first on Malwarebytes Labs.

Read more

Reducing your attack surface is more effective than playing patch-a-mole

Categories: News

Tags: CISA

Tags: BOD 23-02

Tags: Internet exposed

Tags: management interfaces

Tags: vulnerabilities

Tags: CVE-2023-27992

Tags: CVE-2023-20887

There is a lot to be said for the strategy of shielding management interfaces from public internet access

(Read more…)

The post Reducing your attack surface is more effective than playing patch-a-mole appeared first on Malwarebytes Labs.

Read more