As part of its May 2022 Security Patch Day, SAP announced on Tuesday the release of eight new and four updated security notes, including three that address the recent Spring4Shell vulnerability in more products.
Critical Vulnerability Exploited to ‘Destroy’ BIG-IP Appliances
The recently patched F5 BIG-IP vulnerability tracked as CVE-2022-1388 is being increasingly exploited by threat actors, including to “destroy” affected appliances.
Windows Print Spooler Vulnerabilities Increasingly Exploited in Attacks
The number of attacks targeting Windows Print Spooler vulnerabilities has been increasing, according to cybersecurity firm Kaspersky.
Hackers Hit Web Hosting Provider Linked to Oregon Elections
A week before Oregon’s primary election, the secretary of state’s office is moving to protect the integrity of its online system where campaign finance records are published after a web hosting provider was hit by a ransomware attack.
Patch Tuesday: Microsoft Warns of New Zero-Day Being Exploited
Microsoft on Tuesday released critical software updates to fix at least 73 documented security flaws in the Windows ecosystem and warned that unknown attackers are already launching zero-day man-in-the-middle attacks.
New Malware Samples Indicate Return of REvil Ransomware
New malware samples and a new Tor-based leak website suggest that the REvil ransomware operation has been resumed.
Secureworks, which tracks the group behind REvil as Gold Southfield, has conducted an analysis of malware samples apparently created in March and April, and determined that the developer likely has access to the original REvil source code.
Microsoft Azure Vulnerability Allowed Code Execution, Data Theft
Microsoft on Monday shared information on patches and mitigations for a vulnerability impacting Azure Data Factory and Azure Synapse Pipelines.
Adobe Warns of ‘Critical’ Security Flaws in Enterprise Products
Software maker Adobe on Tuesday shipped patches to cover at least 18 serious security defects in multiple enterprise-facing products and warned that unpatched systems are at risk of remote code execution attacks.
West Blames Russia for Satellite Hack Ahead of Ukraine Invasion
Western powers on Tuesday accused Russian authorities of carrying out a cyberattack against a satellite network an hour before the invasion of Ukraine to pave the way for its assault.
YL Ventures Closes $400 Million Cybersecurity Investment Fund
Israeli venture capital outfit plans to invest in seed-stage rounds of approximately 10 cybersecurity startups at a pace of 3 startups per year












