Security

LATEST

Security

Microsoft Defender Gets New Security Tools Powered By RiskIQ’s Threat Intelligence

Microsoft has announced two new security services to enhance the threat intelligence capabilities of its Microsoft Defender platform. The new Defender Threat Intelligence and Defender External Attack Surface Management tools are a result of Microsoft’s acquisition of the cybersecurity company RiskIQ in July 2021. First up, the Microsoft Defender Threat Intelligence (MDTI) service provides enterprise…

View Article
Security

Microsoft Exchange Servers Hit By Stealthy IIS Backdoors

Microsoft has published a security advisory about a new wave of malware attacks that target Exchange Servers. The company has warned IT admins that threat actors are increasingly using malicious Internet Information Services (IIS) modules to install backdoors and steal credentials. For those unfamiliar, Internet Information Services (IIS) is a web server that lets developers…

View Article
Security – 4

Securing IoT with Azure Sphere

In this article, we are going to take a brief look at what Azure Sphere is and how it is helping to protect Internet of Things (IoT) devices with additional security overlay. In today’s world, we are surrounded by billions of devices – all with microcontrollers embedded in them for control and to add logic….

View Article
Security

Microsoft Patches Five Critical Security Flaws in Azure Defender for IoT

Last Update: Jul 25, 2022

Security researchers have uncovered five critical vulnerabilities in Microsoft Azure Defender for IoT. The Redmond giant has already released new security patches to address these exploits, and it recommends all enterprise customers to install them as soon as possible. According to a report from SentinelOne‘s SentinelLabs, these security vulnerabilities were first discovered by researchers Kasif…

View Article
PowerShell

PowerShell Remoting Basics

Last Update: Jul 23, 2022

Missy Januszko provides an overview of PowerShell remoting and explains the use of different cmdlets for managing multiple machines at once.

View Article
Security

Microsoft Retires Windows Information Protection in Favor of New Purview Service

Microsoft has announced its plans to retire the built-in Windows Information Protection (WIP) feature in its client operating system. The software giant has decided to sunset the data leak prevention capability in favor of its paid subscription service, Microsoft Purview. Windows Information Protection (previously known as enterprise data protection (EDP) is a useful feature that…

View Article
Security – 5

Atlassian Releases Patches to Fix Critical Confluence Flaw

Atlassian has disclosed a new critical flaw in its Confluence Server and Data Center products. The company explained in its security advisory that the vulnerability (CVE-2022-26138) lets unauthorized users use hardcoded credentials to get full access to Confluence. According to Atlassian, the flaw exists in its Questions for Confluence app. It is designed to help…

View Article
Cloud Computing

Inspire 2022: Microsoft Launches Cloud for Sovereignty to Protect Government Customers

Microsoft is launching today Microsoft Cloud for Sovereignty, a new cloud offering for the government sector. The new cloud solution is meant to help government and public sector customers build, move, and operate sensitive data and workloads in the cloud while supporting the highest security and compliance standards. A sovereign cloud is a cloud infrastructure…

View Article
Security – 4

DHS Review Board Warns Log4j Flaw to Affect Vulnerable Systems Until At Least 2032

The US Department of Homeland Security has issued a security advisory about the risks associated with Log4j vulnerabilities. The DHS’ Cyber Safety Review Board (CSRB) warned that the security flaw is expected to affect federal agencies and organizations until at least 2032. For those unfamiliar, Apache Log4j is a popular open-source Java-based logging framework. It…

View Article
Security

Cloudflare Issues Advisory About Mantis Botnet Behind the Most Powerful DDoS Attack

The internet infrastructure firm Cloudflare has released an advisory about a powerful botnet dubbed Mantis. The botnet was behind the largest-ever HTTPS-based distributed-denial-of-service (DDoS) attack in June 2022 and has targeted around 1,000 customers in the past few weeks. Cloudflare explained that its security team mitigated the record-breaking DDoS attack last month that reached a…

View Article
Go to page