Security news that informs and inspires

2376 articles by

Q&A: Andrew Morris

Removing the background noise from the Internet can give security analysts the context necessary to find the attacks that matter, says GreyNoise founder Andrew Morris.

Network Security

ProxyLogon Bug Still Haunting Thousands of Exchange Servers

There are still nearly 30,000 Exchange servers vulnerable to the ProxyLogon bug, with ransomware attacks and public exploits circulating.

Microsoft

Exploits Target F5 BIG-IP Flaw

Full chain exploits are in use against a critical flaw (CVE-2021-22986) in the F5 BIG-IP system.

F5

Requiring a VDP for Suppliers Won’t Fix Supply Chain Security

Extending the requirement for vulnerability disclosure policies from federal agencies to their suppliers is not a quick fix for supply chain security issues.

Solarwinds, Government

SolarWinds Attackers Accessed Mimecast Source Code

The attackers behind the SolarWinds breach also gained access to and downloaded some Mimecast source code repositories.

Solarwinds, Email