Hive Ransomware – Vulnerbility Alert

Ransomware has continued to be a significant threat not just to the education and research sectors but to all industries this year. A new ransomware group, known as Hive, is rising in prominence due to their sophisticated… More »

Active exploitation of Apache vulnerability (CVE-2021-41773)

On October 5, 2021, The Apache Software Foundation disclosed a path traversal and file disclosure vulnerability (CVE-2021-41773) that affects Apache HTTP Server version 2.4.49. Path traversal attacks (also known as directory traversal, dot-dot-slash, directory climbing,… More »

VMWare vCenter Server & Cloud Foundation – Multiple Vulnerabilities

VMware have published a Security Bulletin announcing patches for multiple vulnerabilities in vCenter Server and Cloud Foundation appliances. Exploitation of the vulnerabilities could result in the full takeover of the affected system, exploitation is possible… More »

Update on Microsoft Print Spooler Issues (CVE-2021-36958)

As posted previously there have been a number of vulnerabilities to Microsoft’s Print Spooler services based on an update to CVE-2021-36958 – 7.3 RCE Vulnerability, has now been patched by Microsoft. The final Pinter Spooler… More »

Microsoft vulnerability - Remote Code Execution (CVE-2021-40444) 

update from our previous post – Active exploitation of Microsoft vulnerability Summary  Microsoft is investigating reports of a remote code execution vulnerability in MSHTML that affects Microsoft Windows. Microsoft is aware of targeted attacks that… More »

Active exploitation of Microsoft vulnerability (CVE-2021-40444)

On September 7, 2021, Microsoft disclosed a remote code execution vulnerability (CVE-2021-40444) in the Internet Explorer MSHTML browser engine (also known as Trident). As of this publication, threat actors are actively exploiting the flaw using… More »

Active exploitation of Confluence vulnerability (CVE-2021-26084)

On August 25, 2021, Atlassian disclosed a critical remote execution vulnerability (CVE-2021-26084) that affects multiple versions of Confluence Server and Data Center. Several proof-of-concept (PoC) exploits have been published, and the flaw is under active… More »

Update on Microsoft ProxyShell vulnerabilities exploited

Please see the latest two updates on the current Print Spooler Issues: Our network security partner Secureworks are monitoring reports that attackers are actively exploiting the ProxyShell vulnerabilities in on-premises Microsoft Exchange Servers. Despite the… More »

Update on Microsoft Print Spooler Issues (CVE-2021-34481 and CVE-2021-36958)

Please see the latest two updates on the current Print Spooler Issues: CVE-2021-34481 – 7.8 LPE Vulnerability: Security Updates are now available for this local privilege escalation vulnerability which does not require user interaction, the… More »


Keeping Up To Date With Us Is Easy, Sign Up To Our Newsletter Today!

Stay in touch with emPSN, so that you get the latest e-safety advice and invites to our community events.

    Our partners