CISA KEV Update  Part III – October 2024

CISA KEV Update Part III – October 2024

The US CISA has added below vulnerabilities to its Known exploited vulnerabilities catalog based on the evidence of active exploitation CVE-2024-43047 The vulnerability with a CVSS score of 7.8, Multiple…
Microsoft Patch Tuesday – October 2024

Microsoft Patch Tuesday – October 2024

Microsoft patched 117 CVEs in October 2024 Patch Tuesday release, with three rated critical, 113 rated important and one rated moderate. 27 Elevation of Privilege vulnerabilities 7 Security Feature Bypass…
Okta fixes Sign-On Policy Bypass Flaw

Okta fixes Sign-On Policy Bypass Flaw

Okta has patched a critical security vulnerability affecting its classic product that could allow attackers to bypass application-specific sign-on policies. The vulnerability was initially identified on September 27, 2024, and…
ELPACO-Team Ransomware Dissection

ELPACO-Team Ransomware Dissection

Researchers have uncovered a new ransomware strain dubbed as ELPACO-team, designed to both encrypt and rename files. Once encryption is done, it appends the “.ELPACO-team” extension to each file. ELPACO-team…
DragonForce Ransomware Dissection

DragonForce Ransomware Dissection

As per the GROUP-IB's threat landscape report, the DragonForce ransomware group emerges as a serious threat. It leverages the Ransomware-as-a-Service (RaaS) affiliate program employing variants of well-known ransomware families to…