LockBit affiliates exploiting “Citrix Bleed” vulnerability (CVE-2023-4966) – Action Recommended

Summary: Our Security Partner (Secureworks Counter Threat Unit researchers) are aware of at least two incidents where affiliates of the LockBit ransomware group have exploited the Citrix Bleed vulnerability (CVE-2023-4966) to access environments. It is… More »

Cisco IOS XE vulnerability (CVE-2023-20198) in active exploitation – Action Recommended

Summary: On October 16, 2023, Cisco disclosed a critical privilege escalation vulnerability (CVE-2023-20198) that affects the web user interface (web UI) used in Cisco IOS XE software. Cisco observed this vulnerability being actively exploited since… More »

NetScaler ADC and NetScaler Gateway vulnerabilities in active exploitation – Action Recommended

Summary: On July 18, 2023, Citrix disclosed multiple vulnerabilities (CVE-2023-3519, CVE-2023-3466, CVE-2023-3467) that impact NetScaler ADC (formerly Citrix ADC) and NetScaler Gateway (formerly Citrix Gateway). Only customer-managed platforms are affected. CVE-2023-3519 is under active exploitation… More »

AI – Artificial Intelligence in Education

Why has AI suddenly become a hot topic? Why should schools be interested and/or concerned? The NEN (National Education Network) have developed a broad overview of AI and the potential challenges for the education sector.… More »

Critical MOVEit Transfer vulnerability in active exploitation – Action Recommended

Summary: On May 31, 2023, Progress Software disclosed a critical vulnerability that impacts the MOVEit Transfer web application, which transfers files. Exploitation can lead to the deployment of a web shell and exfiltration of data.… More »

Cybersecurity in Schools

In todays digital age, cybersecurity is an increasingly critical concern for schools and colleges. As schools rely more on technology to enhance learning. They also become more vulnerable to cyber threats. Why is Cyber security… More »

Critical and High Vulnerabilities in PaperCut – Actively Exploited

Summary: As identified by Jisc, one of our trusted support partners a pair of vulnerabilities have been identified in PaperCut MF/NG print solutions. ZDI-CAN-18987 allows an attacker to bypass authentication on a vulnerable PaperCut Application… More »

emPSN & Ark Connectivity & Innovation Expo

We very much look forward to welcoming you to our event. Please complete the questions below.

Financial BEC through M365 AiTM Attack

Summary: Our Security Partner, Jisc is currently investigating multiple incidents of business email compromise (BEC) leading to financial fraud. These incidents are targeting both high-value and lower-level user accounts with particular focus on those linked… More »


Keeping Up To Date With Us Is Easy, Sign Up To Our Newsletter Today!

Stay in touch with emPSN, so that you get the latest e-safety advice and invites to our community events.

Our partners