Latest News Articles



--- TLP:WHITE ---

News

− Why Intelligence Sharing Is Vital to Building a Robust Collective Cyber Defense Program

With automated, detailed, contextualized threat intelligence, organizations can better anticipate malicious activity and utilize intelligence to speed detection around proven attacks.

https://www.securityweek.com/why-intelligence-sharing-is-vital-to-building-a-robust-collective-cyber-defense-program/

− CISA makes its "Malware Next-Gen" analysis system publicly available

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has released a new version of "Malware Next-Gen," now allowing the public to submit malware samples for analysis by CISA.

https://www.bleepingcomputer.com/news/security/cisa-makes-its-malware-next-gen-analysis-system-publicly-available/

Vulnerabilities

− Fortinet Rolls Out Critical Security Patches for FortiClientLinux Vulnerability

Fortinet has released patches to address a critical security flaw impacting FortiClientLinux that could be exploited to achieve arbitrary code execution. Tracked as CVE-2023-45590, the vulnerability carries a CVSS score of 9.4 out of a maximum of 10.

https://www.fortiguard.com/psirt/FG-IR-23-087

Critical OS Command Injection Vulnerability in Palo Alto GlobalProtect Feature

CVE-2024-3400 is a command injection vulnerability in the GlobalProtect feature of Palo Alto Networks PAN-OS software. It may allow an unauthenticated attacker to execute arbitrary code with root privileges on the firewall. Palo Alto Networks is aware of a limited number of attacks that leverage the exploitation of this vulnerability.

https://www.ncsc.gov.ie/pdfs/2404120137_Critical_vuln_Palo_Alto_PAN_OS.pdf

Community News

− Custom-made Awareness Raising to enhance Cybersecurity Culture

The European Union Agency for Cybersecurity (ENISA) empowers organisations by publishing the updated version of the ‘Awareness Raising in a Box’.

https://www.enisa.europa.eu/news/custom-made-awareness-raising-to-enhance-cybersecurity-culture

Public Consultation on the Draft Cyber Industrial Strategy

The aim of this consultation is to gather stakeholder feedback on aspects of the Cyber Industrial Strategy. This public consultation document seeks views from knowledgeable members of the public and stakeholders in cyber security and forms the next stage in the development of the Cyber Industrial Strategy.

https://www.gov.ie/en/consultation/bc4f2-consultation-on-the-draft-cyber-industrial-strategy/

--- TLP:WHITE ---