Pergi ke luar talian dengan aplikasi Player FM !
CISA Alert AA22-228A – Threat actors exploiting multiple CVEs against Zimbra Collaboration suite.
Manage episode 354338035 series 3444271
CISA and the Multi-State Information Sharing & Analysis Center, or MS-ISAC are publishing this joint Cybersecurity Advisory in response to active exploitation of multiple Common Vulnerabilities and Exposures against Zimbra Collaboration Suite, an enterprise cloud-hosted collaboration software and email platform.
AA22-228A Alert, Technical Details, and Mitigations
Volexity’s Mass Exploitation of (Un)authenticated Zimbra RCE: CVE-2022-27925
Hackers are actively exploiting password-stealing flaw in Zimbra
CISA adds Zimbra email vulnerability to its exploited vulnerabilities catal…
Mass exploitation of (un)authenticated Zimbra RCE: CVE-2022-27925
Authentication bypass in MailboxImportServlet vulnerability
UnRAR vulnerability exploited in the wild, likely against Zimbra servers
Zimbra Collaboration Kepler 9.0.0 patch 25 GA release
Operation EmailThief: Active exploitation of zero-day XSS vulnerability in…
Hotfix available 5 Feb for zero-day exploit vulnerability in Zimbra 8.8.15
All organizations should report incidents and anomalous activity to CISA’s 24/7 Operations Center at central@cisa.dhs.gov or (888) 282-0870 and to the FBI via your local FBI field office or the FBI’s 24/7 CyWatch at (855) 292-3937 or CyWatch@fbi.gov.
Learn more about your ad choices. Visit megaphone.fm/adchoices
52 episod
Manage episode 354338035 series 3444271
CISA and the Multi-State Information Sharing & Analysis Center, or MS-ISAC are publishing this joint Cybersecurity Advisory in response to active exploitation of multiple Common Vulnerabilities and Exposures against Zimbra Collaboration Suite, an enterprise cloud-hosted collaboration software and email platform.
AA22-228A Alert, Technical Details, and Mitigations
Volexity’s Mass Exploitation of (Un)authenticated Zimbra RCE: CVE-2022-27925
Hackers are actively exploiting password-stealing flaw in Zimbra
CISA adds Zimbra email vulnerability to its exploited vulnerabilities catal…
Mass exploitation of (un)authenticated Zimbra RCE: CVE-2022-27925
Authentication bypass in MailboxImportServlet vulnerability
UnRAR vulnerability exploited in the wild, likely against Zimbra servers
Zimbra Collaboration Kepler 9.0.0 patch 25 GA release
Operation EmailThief: Active exploitation of zero-day XSS vulnerability in…
Hotfix available 5 Feb for zero-day exploit vulnerability in Zimbra 8.8.15
All organizations should report incidents and anomalous activity to CISA’s 24/7 Operations Center at central@cisa.dhs.gov or (888) 282-0870 and to the FBI via your local FBI field office or the FBI’s 24/7 CyWatch at (855) 292-3937 or CyWatch@fbi.gov.
Learn more about your ad choices. Visit megaphone.fm/adchoices
52 episod
Semua episod
×

1 CISA Alert AA23-158A – #StopRansomware: CL0P Ransomware Gang Exploits CVE-2023-34362 MOVEit Vulnerability. 2:41

1 CISA Alert AA23-144A – People's Republic of China state-sponsored cyber actor living off the land to evade detection. 2:43



1 CISA Alert AA23-108A – APT28 exploits known vulnerability to carry out reconnaissance and deploy malware on Cisco routers. 2:45

1 CISA Alert AA23-074A – Threat actors exploit progress telerik vulnerability in U.S. government IIS server. 2:48

1 CISA Alert AA23-059A – CISA red team shares key findings to improve monitoring and hardening of networks. 2:46

1 CISA Alert AA23-040A – #StopRansomware: ransomware attacks on critical infrastructure fund DPRK malicious cyber activities. 3:01


1 CISA Alert AA23-025A – Protecting against malicious use of remote monitoring and management software 2:41
Selamat datang ke Player FM
Player FM mengimbas laman-laman web bagi podcast berkualiti tinggi untuk anda nikmati sekarang. Ia merupakan aplikasi podcast terbaik dan berfungsi untuk Android, iPhone, dan web. Daftar untuk melaraskan langganan merentasi peranti.