FortiSIEM Basic XSS: What to Know
FortiSIEM is affected by a Basic XSS vulnerability related to improper neutralization of script-related HTML tags. In certain cases, a privileged administrator could execute unauthorized commands.
FortiSIEM is affected by a Basic XSS vulnerability related to improper neutralization of script-related HTML tags. In certain cases, a privileged administrator could execute unauthorized commands.
FortiGuard Labs disclosed a FortiOS buffer over-read issue affecting FortiOS, FortiProxy, and FortiSASE. Authenticated attackers may obtain a portion of device memory via a crafted redirect request.
A Russian-linked group used an Exchange OWA zero-day to deliver OWAReaper via half-click XSS emails. The malware can maintain mailbox access even after clean-up and credential changes.
Once an attacker gets in, the goal often shifts from “steal and run” to establishing persistence. This incident shows how attackers rework the environment before anyone can stop them.
Analog Devices reports an unauthorized party accessed some systems and exfiltrated files. The company says it hasn’t found evidence of stolen data being leaked or impacting operations.
Attackers used vishing via Microsoft Teams to impersonate IT support staff, trick employees into granting remote access, and then deploy Chaos ransomware. Sophos observed fast intrusions, sometimes within 17 hours.
Brinks Home says it detected an intrusion in late July and launched an incident response. Meanwhile, ShinyHunters claims it stole millions of Salesforce and support-chat records and threatens to leak them.
Broadcom has published emergency patches for several VMware products. The updates address, among other things, a VMware critical auth bypass and a flaw that enables VM escapes.
Amazon connected several high-profile NPM supply-chain attacks to North Korean hackers. The report also describes how malicious updates spread and why detection is getting harder.
The Anti Phishing Shield pilot blocked more than two million attempts to access phishing and fraudulent sites. Over 200,000 users opted in to the protection via participating internet providers.