Over 338K FortiGate firewalls remain unpatched to critical bug

A critical vulnerability in FortiGate firewalls, known as CVE-2023-27997, has left more than 338,000 devices exposed to potential exploitation.

The flaw, which allows for remote code execution, was patched by Fortinet last month, but a significant number of devices have yet to be updated.

Infosec company Bishop Fox has even developed an example exploit to demonstrate the severity of the vulnerability.

Rated 9.8 out of 10 in terms of CVSS severity, the...

Russian cybercriminals attack US government agencies

Several US federal government agencies have fallen victim to a global cyberattack by Russian cybercriminals.

The attack exploits a vulnerability in widely used software, leading to concerns about data breaches and potential disruptions. The US Cybersecurity and Infrastructure Security Agency (CISA) is working urgently to understand the impacts and facilitate timely remediation.

Colin Little, Security Engineer at Centripetal, said:

"Given the scope of this...

Nozomi introduces AI cybersecurity engine to protect critical infrastructure

vantage iq iot security cybersecurity networks

IoT security solutions firm Nozomi has announced the launch of Vantage IQ, an AI-based analysis and response engine designed to address security gaps and resource limitations in critical operational infrastructure.

Vantage IQ is an add-on to Nozomi’s SaaS-based security management platform, Vantage, and leverages artificial intelligence (AI) and machine learning (ML) to automate time-consuming tasks related to network analysis, asset management, and alert...

NATO CCDCOE welcomes Ukraine, Japan, Iceland and Ireland as members

nato ccdcoe ukraine japan ireland iceland cybersecurity security infosec members

NATO Cooperative Cyber Defence Centre of Excellence (CCDCOE) celebrated its 15th anniversary by welcoming Ukraine, Japan, Iceland, and Ireland as new member nations. 

The CCDCOE’s headquarters in Tallinn raised the flags of each nation, signifying their integration into the cyber defense family. The inclusion of these nations is expected to enhance cooperation, knowledge sharing, and collective efforts in addressing cyber threats.

CCDCOE Director Mart Noorma expressed...

BT launches Fortinet-secured SD-WAN service

BT has announced the launch of a new all-in-one networking and security service that will enable its business and public sector customers to manage their connectivity across multiple sites.

The service will bring together SD-WAN, SD-Branch, and security in one place. It will be fully managed by BT’s expert team, reducing cyber risk and supporting customers in moving data and applications into the cloud. The service is purpose-built to support retailers better in meeting customer...

Russia-linked hackers seek to ‘disrupt or destroy’ UK infrastructure

UK Cabinet Office Minister Oliver Dowden has warned that Russia-aligned hackers are seeking to disrupt or destroy Britain's critical infrastructure.

In a speech at the CyberUK conference in Belfast, Dowden unveiled new measures to support businesses "on the front line of our cyber defences" and described the hackers as "Wagner-like," a reference to the Russian mercenaries fighting in Ukraine that have been repeatedly accused of war crimes.

The National Cyber Security...

Hackers steal the data of millions of AT&T customers

A vendor hack has resulted in the data of millions of AT&T customers being stolen.

AT&T is sending emails to around nine million customers to alert them of the theft of their data.

The attackers did not breach AT&T directly but compromised the systems of a marketing vendor used by the US telecom giant.

All impacted users had CPNI (Customer Proprietary Network Information) stolen, including phone numbers, full names, and email addresses. A smaller...

Russian hackers disrupt NATO comms used for earthquake relief

Russian hacking group Killnet has claimed responsibility for disrupting communications between NATO and other organisations providing earthquake relief in Turkey and Syria.

The devastating earthquake has claimed at least 28,000 lives and efforts continue to pull victims from the rubble. Countries and NGOs worldwide dispatched resources to provide humanitarian aid, including aircraft with transport and airlift capabilities.

Strategic Airlift Capability (SAC) is a...

Surveillance balloons spotted over the US and Canada

High-altitude surveillance balloons have been spotted by US and Canadian authorities over their respective territories.

The first balloon was spotted in the US over sensitive American national security installations, including the Malmstrom Air Force Base. 150 nuclear-armed Minuteman III intercontinental ballistic missiles are located at the base.

The Pentagon claims the balloon belongs to China. Beijing has not taken responsibility but says that it’s looking into the...

CUJO AI: 67% of home networks are targeted every month

CUJO AI’s latest cybersecurity report states that over two-thirds of home networks are targeted by online threats every month.

The cybersecurity firm uses AI-powered software to protect networks. CUJO AI bases its annual reports on anonymised data from the 1.8 billion real-world devices that it defends.

Between 1 May 2002 and 1 November 2022, CUJO says it blocked over two billion threats. The average number of blocked threats swelled to 8,000 per...