Actively exploited zero-day flaw in Google Chrome now patched – is yours? Could you check?

software patches are essential cybersecurity

Make sure your Google Chrome patching is up to date. Google has just released a patch to fix a flaw in Chrome that was being actively exploited by threat actors. The attack is directed at the WebRTC system – which is a component used in web based comms, so avoid …

One known vulnerability added to the CISA database

The US Cybersecurity and Infrastructure Security Agency (CISA) has added a Microsoft vulnerability to it’s Known Exploited Vulnerabilities Catalog: CISA Adds One Known Exploited Vulnerability to Catalog | CISA This vulnerability was addressed in June’s Microsoft Patch Tuesday. Guidance on Applying June Microsoft Patch | CISA

The Follina threat has not gone away just because Microsoft has issued a patch – Octagon has the solution

Follina email phishing

The threat actors are still attempting to exploit the Follina flaw in Microsoft Word – looking for those of you out there who have not bothered to run the updates: XFiles info-stealing malware adds support for Follina delivery (bleepingcomputer.com) Have you checked all the machines in your organisation have run …