ClearInfosec TIB Logo
Date:Aug 04, 2021
 
      Cyber Security News
  Ransomware attempt volume sets record reaches more than 300 million for first half of 2021: SonicWall
The US, UK, Germany, South Africa and Brazil topped the list of countries most impacted by ransomware attempts while states like Florida and New York struggled ...
Read More...
  Raccoon stealer-as-a-service will now try to grab your cryptocurrency
The malware has been upgraded to target even more financial information.
Read More...
  This new phishing attack is sneakier than usual Microsoft warns
Microsoft issues an alert over a 'crafty' phishing campaign.
Read More...
  A Cold War is raging in cyberspace Heres how countries are preparing their defenses
Much like conventional militaries, countries also need to perform occasional drills of their cybersecurity defenses. Instead of soldiers and tanks, these involv...
Read More...
  Multiple Zero-Day Flaws Discovered in Popular Hospital Pneumatic Tube System
"PwnedPiper" flaws could allow attackers to disrupt delivery of lab samples or steal hospital employee credentials, new research shows.
Read More...
      Best Practices
  BrandPost: Application whitelisting - an underutilized component of Zero Trust
From Colonial Pipeline, to JBS (the world’s largest meatpacker), to the recent hack on software company Kaseya, high-profile ransomware attacks are on the ri...
Read More...
  Biden memo infrastructure deal deliver cybersecurity performance goals and money
Both the Biden administration and the Congress continued their frenetic pace this week to beef up the country's digital infrastructure protections through tw...
Read More...
  BrandPost: Securing the Digital Infrastructure with Integrated Security Services
Many organizations are challenged with the evolving threat landscape, which continues to become much more sophisticated and harder to manage with isolated po...
Read More...
      New Threats and Vulnerabilities
  CVE-2020-5329
Dell EMC Avamar Server contains an open redirect vulnerability. A remote unauthenticated attacker may exploit this vulnerability to redirect application users t...
Read More...
  CVE-2021-29736
IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 could allow a remote user to gain elevated privileges on the system. IBM X-Force ID: 201300.
Read More...
  CVE-2021-36004
Adobe InDesign version 16.0 (and earlier) is affected by an Out-of-bounds Write vulnerability in the CoolType library. An unauthenticated attacker could leverag...
Read More...
  CVE-2021-37578
Apache jUDDI uses several classes related to Java's Remote Method Invocation (RMI) which (as an extension to UDDI) provides an alternate transport for accessing...
Read More...
  CVE-2021-33617
Zoho ManageEngine Password Manager Pro before 11.2 11200 allows login/AjaxResponse.jsp?RequestType=GetUserDomainName&userName= username enumeration, because...
Read More...
      Patch Management
  BlackMatter rises from the ashes of notorious cybercrime gangs to pose new ransomware threat
A new ransomware gang that calls itself BlackMatter has launched itself on the dark web, and is actively attempting to recruit criminal partners and affiliates ...
Read More...
  Regulations against ransomware payment not ideal solution
With ransomware attacks increasing, legislations have been mooted as a way to bar companies from paying up and further fuelling such activities, but such polici...
Read More...
  NSA Warns Public Networks are Hacker Hotbeds
Agency warns attackers targeting teleworkers to steal corporate data.
Read More...