Vulnerability ManagementVulnerable Log4j Instances Continue to Be UsedCRA News ServiceOctober 15, 2024Nearly three years after disclosure, many Log4j instances remain vulnerable.
Vulnerability ManagementCritical Nortek Linear eMerge Flaw Still UnaddressedCRA News ServiceOctober 11, 2024Some Nortek Linear eMerge E3 access controller variants are impacted by a critical vulnerability.
Patch/Configuration ManagementMacOS Sequoia Update Resolves Security Tool Compatibility IssuesCRA News ServiceOctober 9, 2024Apple's Sequoia update has fixed compatibility issues between macOS and popular security tools.
Cloud SecurityNew Ivanti CSA Bugs are Enabling Further AttacksCRA News ServiceOctober 9, 2024Ivanti disclosed three new zero-day flaws impacting Ivanti Cloud Service Appliance (CSA) instances.
Patch/Configuration ManagementPatch Tuesday: Microsoft Fixes Management Console RCE Zero-DayCRA News ServiceOctober 9, 2024Microsoft addressed an RCE zero-day that impacted its Microsoft Management Console.
Risk Identification/Classification/MitigationOkta Classic Could be Vulnerable to Sign-On Bypass FlawCRA News ServiceOctober 8, 2024A recently addressed Okta flaw could leave the authentication solution vulnerable.
Vulnerability ManagementGovernment, Legal Systems Plagued With Critical VulnerabilitiesCRA News ServiceOctober 2, 2024Many government and legal systems, including voting systems, are plagued with vulnerabilities.