Cybersecurity

New PoC Exploit for Apache OfBiz Vulnerability Poses Risk to ERP Systems

Jan 11, 2024NewsroomVulnerability / Cyber Attack Cybersecurity researchers have developed a proof-of-concept (PoC) code that exploits a recently disclosed critical flaw in the Apache OfBiz open-source Enterprise Resource Planning (ERP) system to execute a memory-resident payload. The vulnerability in question is CVE-2023-51467 (CVSS score: 9.8), a bypass for another severe shortcoming in the same software […]

Cybersecurity

EU Enhances Cybersecurity Requirements for Agencies

Governance & Risk Management , IT Risk Management Cyber Regulation Requires EU Agencies to Assess Risks and Report Incidents Akshaya Asokan (asokan_akshaya) • January 10, 2024     The European Union adopted a regulation intended to strengthen institutional cybersecurity. (Image: Shutterstock) The European Union adopted a regulation on mandatory cyber hygiene intended to beef up […]

Cybersecurity

Malware Takedowns Show Progress, But Fight Against Cybercrime Not Over

Takedown of malware infrastructure by law enforcement has proven to have an impact, albeit limited, on cybercriminal activity, according to threat intelligence provider Recorded Future. In its 2023 Adversary Infrastructure Report, published on January 9, 2024, Recorded Future analyzed the effect of three malware takedown operations that took place in 2023 or before: The Emotet […]