Latest News Articles



--- TLP:WHITE ---

News

− CISA Outlines AI-Related Cybersecurity Efforts

CISA details its efforts to promote the use of AI in cybersecurity and guide critical infrastructure in adopting AI.

https://www.securityweek.com/cisa-outlines-ai-related-cybersecurity-efforts/

− Clorox CISO leaves multi-million-dollar cyberattack

The Clorox Company's chief security officer has left her job in the wake of a corporate network breach that cost the manufacturer hundreds of millions of dollars.

https://www.bloomberg.com/news/articles/2023-11-15/clorox-cyber-chief-leaves-as-recovery-from-cyberattack-continues?srnd=technology-vp

− Attack against Danish critical infrastructure in May 2023

Russian threat actors have been possibly linked to what's been described as the "largest cyber attack against Danish critical infrastructure," in which 22 companies associated with the operation of the country's energy sector were targeted in May 2023.

https://sektorcert.dk/wp-content/uploads/2023/11/SektorCERT-The-attack-against-Danish-critical-infrastructure-TLP-CLEAR.pdf

Vulnerabilities

− CrushFTP Critical Vulnerability - CVE-2023-43177

A critical vulnerability exists in CrushFTP which is being tracked as CVE-2023-43177. The vulnerabilitycould allow an unauthenticated attacker to access files stored on the server, execute code remotely, orobtain plain text passwords.

https://www.ncsc.gov.ie/pdfs/2311210130_CrushFTP.pdf

Community News

− How to Automate the Hardest Parts of Employee Offboarding

According to recent research on employee offboarding, 70% of IT professionals say they’ve experienced the negative effects of incomplete IT offboarding, whether in the form of a security incident tied to an account that wasn't deprovisioned, a surprise bill for resources that aren’t in use anymore, or a missed handoff of a critical resource or account.

https://thehackernews.com/2023/11/how-to-automate-hardest-parts-of.html

--- TLP:WHITE ---