The US Cybersecurity and Infrastructure Security Agency is a good source of cyber security information – which is why I try and pass on those that are relevant to my readers. Here are two of the latest: Their Known Exploited Vulnerabilities Catalog is a resource for tracking flaws and issues …
US Cybersecurity and Infrastructure Security Agency security advisories
The US government Cybersecurity and Infrastructure Security Agency (CISA) has issued security advisories for Zimbra and Oracle: CISA Updates Advisory on Threat Actors Exploiting Multiple CVEs Against Zimbra Collaboration Suite | CISA Oracle Releases October 2022 Critical Patch Update | CISA
Microsoft updates – not on Patch Tuesday
The issues with Microsoft’s Windows SSL/TLS handshake failures is too important to wait for next month’s Patch Tuesday: Microsoft fixes Windows TLS handshake failures in out-of-band updates (bleepingcomputer.com)
CISA issues a notice on Adobe security updates
The US Cybersecurity and Infrastructure Security Agency has issued an advisory on various Adobe products: Adobe Releases Security Updates for Multiple Products | CISA
CISA adds two vulnerabilities to the Known Exploited Vulnerabilities Catalog
The release says one vulnerability, but if you check there are two, for Microsoft and Fortinet. CISA Has Added One Known Exploited Vulnerability to Catalog | CISA
