Weekly Highlights - December 8th
2023-12-8 01:47:6 Author: www.certego.net(查看原文) 阅读量:5 收藏

Okta reveals October security breach was much more damaging

#Breaches and Incidents

Initially estimated to affect less than 1% of users, the breach now encompasses all Okta customer support users, compromising their full names and email addresses.

CVE-2023-44302

#Vulnerabilities

Dell DM5500 5.14.0.0 and prior contain an improper authentication vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability to gain access of resources or functionality that could possibly lead to execute arbitrary code.

CVE-2023-40056

#Vulnerabilities

SQL Injection Remote Code Vulnerability was found in the SolarWinds Platform. This vulnerability can be exploited with a low privileged account.

Data breach at 23andMe, the genetic testing company, affects 6.9 million profiles

#Breaches and Incidents

Reused passwords on 23andMe allowed hackers to access personal data from millions of people, which in some cases included DNA information.

Malek Team, the Iran-linked hacker group, claims to have stolen a trove of 500GB of medical data from Ziv Medical Center

#Cyberwar

Within various Telegram posts, the group has started to publish documents, including alleged data from the Israeli Defense Forces (IDF).

The European Space Agency explores cybersecurity for space industry

#Space

ESA is developing a Space Cybersecurity Operations Centre (C-SOC) to detect and respond to emerging cyberattacks on space system infrastructures.


文章来源: https://www.certego.net/blog/weekly-highlights-december-8
如有侵权请联系:admin#unsafe.sh