Monday, September 25, 2023
Tenable

[R1] Nessus Version 10.5.5 Fixes Multiple Vulnerabilities

Nessus Version 10.5.5 Fixes Multiple Vulnerabilities Arnie Cabral Thu, 09/21/2023 - 10:55 A pass-back vulnerability exists where an authenticated, remote attacker with administrator privileges could uncover stored SMTP credentials...
Tenable

[R1] Tenable Core on Oracle Linux 8 General Advisory

Tenable Core on Oracle Linux 8 General Advisory Arnie Cabral Wed, 09/06/2023 - 06:19 Tenable Core is currently built on CentOS 7, which will be reaching end of life...
Tenable

[R1] Nessus Version 10.6.0 Fixes Multiple Vulnerabilities

Nessus Version 10.6.0 Fixes Multiple Vulnerabilities Arnie Cabral Tue, 08/29/2023 - 04:44 A pass-back vulnerability exists where an authenticated, remote attacker with administrator privileges could uncover stored SMTP credentials...
Tenable

[R1] Sensor Proxy Version 1.0.8 Fixes Multiple Vulnerabilities

Sensor Proxy Version 1.0.8 Fixes Multiple Vulnerabilities Arnie Cabral Tue, 08/15/2023 - 15:13 Sensor Proxy leverages third-party software to help provide underlying functionality. One of the third-party components (OpenSSL)...
Tenable

[R1] Sensor Proxy Version 1.0.8 Fixes Multiple Vulnerabilities

Sensor Proxy Version 1.0.8 Fixes Multiple Vulnerabilities Arnie Cabral Tue, 08/15/2023 - 15:13 Sensor Proxy leverages third-party software to help provide underlying functionality. One of the third-party components (OpenSSL)...
Tenable

[R1] Nessus Version 10.5.4 Fixes Multiple Vulnerabilities

Nessus Version 10.5.4 Fixes Multiple Vulnerabilities Jason Schavel Wed, 08/02/2023 - 11:15 Nessus leverages third-party software to help provide underlying functionality. One of the third-party components (OpenSSL) was found...
Tenable

[R1] Stand-alone Security Patch Available for Security Center versions 6.0.0, 6.1.0 and 6.1.1: SC-202307.1-6.x

Stand-alone Security Patch Available for Security Center versions 6.0.0, 6.1.0 and 6.1.1: SC-202307.1-6.x Arnie Cabral Tue, 07/25/2023 - 11:30 Tenable Security Center leverages third-party software to help provide underlying...
Tenable

[R1] Stand-alone Security Patch Available for Security Center version 5.23.1: SC-202307.1-5.23.1

Stand-alone Security Patch Available for Security Center version 5.23.1: SC-202307.1-5.23.1 Arnie Cabral Tue, 07/25/2023 - 11:11 Tenable Security Center leverages third-party software to help provide underlying functionality. One of...
Tenable

[R1] Nessus Agent Version 10.4.1 Fixes Multiple Vulnerabilities

Nessus Agent Version 10.4.1 Fixes Multiple Vulnerabilities Jason Schavel Mon, 07/03/2023 - 13:44 Nessus Agent leverages third-party software to help provide underlying functionality. One of the third-party components (OpenSSL)...
Tenable

Nessus Network Monitor 6.2.2 Fixes Multiple Vulnerabilities

Nessus Network Monitor 6.2.2 Fixes Multiple Vulnerabilities Arnie Cabral Thu, 06/29/2023 - 06:45 Nessus Network Monitor leverages third-party software to help provide underlying functionality. Several of the third-party components were...
Tenable

[R1] Nessus Version 10.5.3 Fixes Multiple Vulnerabilities

Nessus Version 10.5.3 Fixes Multiple Vulnerabilities Arnie Cabral Wed, 06/28/2023 - 12:26 Nessus leverages third-party software to help provide underlying functionality. One of the third-party components (OpenSSL) was found...
Tenable

[R1] Tenable Plugin Feed ID #202306261202 Fixes Privilege Escalation Vulnerability

Tenable Plugin Feed ID #202306261202 Fixes Privilege Escalation Vulnerability Arnie Cabral Mon, 06/26/2023 - 11:38 As a part of Tenable’s vulnerability disclosure program, a vulnerability in a Nessus plugin...
Tenable

[R1] Nessus Version 10.5.2 Fixes Multiple Vulnerabilities

Nessus Version 10.5.2 Fixes Multiple Vulnerabilities Arnie Cabral Thu, 05/11/2023 - 15:20 Nessus leverages third-party software to help provide underlying functionality. Several of the third-party components (libxml2, libxslt) were...
Tenable

[R1] Nessus Network Monitor Version 6.2.1 Fixes Multiple Vulnerabilities

Nessus Network Monitor Version 6.2.1 Fixes Multiple Vulnerabilities Arnie Cabral Tue, 05/09/2023 - 11:12 Nessus Network Monitor leverages third-party software to help provide underlying functionality. Several of the third-party...
Tenable

[R1] Stand-alone Security Patch Available for Tenable.sc versions 5.22.0, 5.23.1, and 6.0.0: SC-202304.1

Stand-alone Security Patch Available for Tenable.sc versions 5.22.0, 5.23.1, and 6.0.0: SC-202304.1 Arnie Cabral Mon, 04/24/2023 - 11:47 Tenable.sc leverages third-party software to help provide underlying functionality. One of...
Infosecurity Magazine

Researchers Spot Novel “Deadglyph” Backdoor

Malware is linked to UAE-backed spies
Infosecurity Magazine

Almost US 900 Schools Breached Via MOVEit

National Student Clearinghouse reveals more details of incident

Don’t Get Burned by CAPTCHAs: A Recipe for Accurate Bot Protection

Traditional CAPTCHAs, such as reCAPTCHA, no longer protect online businesses adequately. Real users hate them. Bots bypass them. It's time to upgrade.
The Hacker News

New Report Uncovers Three Distinct Clusters of China-Nexus Attacks on Southeast Asian Government

An unnamed Southeast Asian government has been targeted by multiple China-nexus threat actors as part of espionage campaigns targeting the region over extended periods of time. "While this activity occurred around the same time and in some instances even simultaneously...
The Register

T-mobile exposes some customer data – but don’t call it a breach

PLUS: Trojan hidden in PoC; cyber insurance surge; pig butchering's new cuts; and the week's critical vulns Infosec in brief  T-Mobile has had another bad week on the infosec front – this time stemming from a system glitch that...