+ Australia names, sanctions Russian over Medibank attack; Progress Software patches critical OpenEdge vulnerability; and more
Can't view this message? Click here to view it online.
iTnews

WEEKLY SECURITY WRAP

Tuesday January 23, 2024

  Security  

Apple patches 2024's first zero-day

Exploited Webkit vulnerability in MacOS, iOS and iPadOS.

By Richard Chirgwin

 

Latest Security News


Australia names, sanctions Russian over Medibank attack
  Security  

Australia names, sanctions Russian over Medibank attack

First use of regime against a cyber actor.

By Richard Chirgwin

 
Progress Software patches critical OpenEdge vulnerability
  Security  

Progress Software patches critical OpenEdge vulnerability

Attack via malicious file uploads.

By Richard Chirgwin

 
Microsoft says state-sponsored hackers spied on its executives
  Security  

Microsoft says state-sponsored hackers spied on its executives

Stole some emails and documents.

By Zeba Siddiqui and Christopher Bing

 
Melbourne man pleads guilty to buying stolen data on Genesis Market
  Security  

Melbourne man pleads guilty to buying stolen data on Genesis Market

Sentenced to 150 hours of community work.

By Jeremy Nadel

 
Ubiquitous UEFI implementation has serious vulnerabilities
  Security  

Ubiquitous UEFI implementation has serious vulnerabilities

PixieFAIL can pollute network boot systems.

By Richard Chirgwin

 
 
 
 
Atlassian issues urgent Confluence patch
  Security  

Atlassian issues urgent Confluence patch

Template injection RCE fixed.

By Richard Chirgwin

 
GitLab fixes account takeover vulnerability
  Security  

GitLab fixes account takeover vulnerability

2FA provides some protection.

By Richard Chirgwin

 
Critical bugs patched in Nvidia AI kit
  Security  

Critical bugs patched in Nvidia AI kit

KVM daemon vulnerabilities.

By Richard Chirgwin

 
Juniper patches multiple router bugs
  Security  

Juniper patches multiple router bugs

Web interface subject to RCE.

By Richard Chirgwin

 
OAIC braces for impact of cyber info sharing
  Security  

OAIC braces for impact of cyber info sharing

Sees its deterrence activities potentially taking a hit.

By Ry Crozier

 
ASIC looks for invite to receive cyber incident intel
  Finance  

ASIC looks for invite to receive cyber incident intel

After finding itself excluded during a recent response.

By Ry Crozier

 
644 NDIS users not told which medical records leaked, seven months after HWL Ebsworth hack
  Security  

644 NDIS users not told which medical records leaked, seven months after HWL Ebsworth hack

Impacted individuals allege “fishing expedition” for excessive information.

By Jeremy Nadel

 
 
 
 

Featured whitepaper


 
 

MOST POPULAR


Network 10, Bunnings and other brands ditch TikTok's tracking pixel
  Security  

Network 10, Bunnings and other brands ditch TikTok's tracking pixel

By Jeremy Nadel

Australian breach victim's two-year road to recover from identity theft
  Security  

Australian breach victim's two-year road to recover from identity theft

By Ry Crozier

Ubiquitous UEFI implementation has serious vulnerabilities
  Security  

Ubiquitous UEFI implementation has serious vulnerabilities

By Richard Chirgwin

644 NDIS users not told which medical records leaked, seven months after HWL Ebsworth hack
  Security  

644 NDIS users not told which medical records leaked, seven months after HWL Ebsworth hack

By Jeremy Nadel

ASIC looks for invite to receive cyber incident intel
  Finance  

ASIC looks for invite to receive cyber incident intel

By Ry Crozier

 
 
unsubscribe