Three serious flaws, including an authentication bypass, a shared hard-coded encryption key, and an open redirect, have been patched in the SonicWall SMA 1000 SSL VPNs.
A local government and philanthropic company have been targeted by the known Cobalt Mirage Iran-linked threat group in recent months.
Welcome back to Source Code, Decipher’s weekly security news podcast.
Google is creating a new Open Source Maintenance Crew to aid critical open source projects up their security game.
Researchers have discovered a sophisticated post-exploitation framework being deployed on Microsoft Exchange servers to assist threat actors with credential harvesting and local reconnaissance.