CISA Urges Federal Agencies to Patch Versa Director Vulnerability by September https://firewall.firm.in/wp-content/uploads/2024/08/cisa.png Aug 24, 2024Ravie LakshmananVulnerability / Government Security The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has placed a security flaw impacting Versa Director to its Known Exploited Vulnerabilities (KEV) catalog based on evidence of active exploitation. The medium-severity vulnerability, tracked as CVE-2024-39717 (CVSS score: 6.6), is case of ...
Read More »Vulnerabilities & Exploits
Data security experts urge govt to set up nodal body to confirm breaches – ET CISO
Data security experts urge govt to set up nodal body to confirm breaches – ET CISO https://etimg.etb2bimg.com/thumb/msid-111557082,imgsize-12516,width-1200,height=765,overlay-etciso/data-breaches/data-security-experts-urge-govt-to-set-up-nodal-body-to-confirm-breaches.jpg In light of alleged claims of hacking of Airtel data, security researchers have asked the govt to implement the data protection Act as under it the responsibility of informing/ confirming such breaches would be with the data protection authority, which, however, has not ...
Read More »The Facts About Continuous Penetration Testing and Why It’s Important
The Facts About Continuous Penetration Testing and Why It’s Important https://firewall.firm.in/wp-content/uploads/2024/08/code.png What is Continuous Attack Surface Penetration Testing or CASPT? Continuous Penetration Testing or Continuous Attack Surface Penetration Testing (CASPT) is an advanced security practice that involves the continuous, automated, and ongoing penetration testing services of an organization’s digital assets to identify and mitigate security vulnerabilities. CASPT is designed for ...
Read More »Ola founder on India’s data being sold back to country – ET CISO
Ola founder on India’s data being sold back to country – ET CISO https://etimg.etb2bimg.com/thumb/msid-111557069,imgsize-22000,width-1200,height=765,overlay-etciso/data-breaches/ola-founder-on-indias-data-being-sold-back-to-country.jpg Ola founder coins term ‘techno-colonialism’ to describe phenomenon where India’s data is exported abroad, processed, sold back to India Ola founder and CEO Bhavish Aggarwal has coined the term “techno-colonialism” to describe a modern phenomenon where India’s data is exported to global data centers, processed, and ...
Read More »New ‘ALBeast’ Vulnerability Exposes Weakness in AWS Application Load Balancer
New ‘ALBeast’ Vulnerability Exposes Weakness in AWS Application Load Balancer https://firewall.firm.in/wp-content/uploads/2024/08/aws.gif Aug 22, 2024Ravie LakshmananCloud Security / Application Security As many as 15,000 applications using Amazon Web Services’ (AWS) Application Load Balancer (ALB) for authentication are potentially susceptible to a configuration-based issue that could expose them to sidestep access controls and compromise applications. That’s according to findings from Israeli cybersecurity ...
Read More »‘Obamacare’: Why and how this may be the biggest password leak ever – ET CISO
‘Obamacare’: Why and how this may be the biggest password leak ever – ET CISO https://etimg.etb2bimg.com/thumb/msid-111592680,imgsize-117696,width-1200,height=765,overlay-etciso/data-breaches/obamacare-why-and-how-this-may-be-the-biggest-password-leak-ever.jpg Security researchers from Cybernews have reportedly discovered the RockYou2024 database on BreachForums containing an astounding 9,948,575,739 unique passwords. It is claimed to be the biggest collection of stolen and leaked credentials ever seen on the BreachForums criminal underground forum, reports Forbes. Hacker named ObamaCare ...
Read More »Chinese Hackers Exploit Zero-Day Cisco Switch Flaw to Gain System Control
Chinese Hackers Exploit Zero-Day Cisco Switch Flaw to Gain System Control https://firewall.firm.in/wp-content/uploads/2024/08/cisco.png Aug 22, 2024Ravie LakshmananNetwork Security / Zero-Day Details have emerged about a China-nexus threat group’s exploitation of a recently disclosed, now-patched security flaw in Cisco switches as a zero-day to seize control of the appliance and evade detection. The activity, attributed to Velvet Ant, was observed early this ...
Read More »HealthEquity data breach exposes protected health information – ET CISO
HealthEquity data breach exposes protected health information – ET CISO https://etimg.etb2bimg.com/thumb/msid-111594116,imgsize-41420,width-1200,height=765,overlay-etciso/data-breaches/healthequity-data-breach-exposes-protected-health-information.jpg Healthcare fintech firm HealthEquity has disclosed a data breach following the compromise of a partner’s account, which was used to infiltrate the company’s systems and steal protected health information. The breach was identified after the company detected “anomalous behavior” from a partner’s personal device, prompting an investigation. The investigation ...
Read More »Hardcoded Credential Vulnerability Found in SolarWinds Web Help Desk
Hardcoded Credential Vulnerability Found in SolarWinds Web Help Desk https://firewall.firm.in/wp-content/uploads/2024/08/solarwinds.png Aug 22, 2024Ravie LakshmananVulnerability / Network Security SolarWinds has issued patches to address a new security flaw in its Web Help Desk (WHD) software that could allow remote unauthenticated users to gain unauthorized access to susceptible instances. “The SolarWinds Web Help Desk (WHD) software is affected by a hardcoded credential ...
Read More »Personal data of nearly 8 million Angel One customers leaked online – ET CISO
Personal data of nearly 8 million Angel One customers leaked online – ET CISO https://etimg.etb2bimg.com/thumb/msid-111613595,imgsize-2403626,width-1200,height=765,overlay-etciso/data-breaches/personal-data-of-nearly-8-million-angel-one-customers-leaked-online.jpg AI generated image In a major breach of user data, around 7.9 million personally identifiable information (PII) data belonging to the customers of Mumbai-based stock broking firm Angel One, was released in an online hacker portal on Tuesday. Details like names, addresses, contact numbers and ...
Read More »
Firewall Security Company India Complete Firewall Security Solutions Provider Company in India











