One known vulnerability added to the CISA database

The US Cybersecurity and Infrastructure Security Agency (CISA) has added a Microsoft vulnerability to it’s Known Exploited Vulnerabilities Catalog: CISA Adds One Known Exploited Vulnerability to Catalog | CISA This vulnerability was addressed in June’s Microsoft Patch Tuesday. Guidance on Applying June Microsoft Patch | CISA

The Follina threat has not gone away just because Microsoft has issued a patch – Octagon has the solution

Follina email phishing

The threat actors are still attempting to exploit the Follina flaw in Microsoft Word – looking for those of you out there who have not bothered to run the updates: XFiles info-stealing malware adds support for Follina delivery (bleepingcomputer.com) Have you checked all the machines in your organisation have run …

Early Lessons from the Ukraine Russia cyber conflict

Brad Smith, President & Vice Chair at Microsoft discusses what has been learnt, so far, from the Ukraine Russia cyber conflict and looks at how this can easily spread beyond the borders of the conflicting nations: Defending Ukraine: Early Lessons from the Cyber War – Microsoft On the Issues