Day: October 13, 2022

Enterprise Vulnerabilities

Siemens patches vulnerability that allows attackers to irreparably compromise entire SIMATIC S7-1200/1500 PLC product lines

Update to new versions of the vulnerable PLC and engineering workstation or implement the workarounds [300 words]. What: A critical vulnerability (CVE-2022-38465 ) exists within Siemens SIMATIC S7-1200, S7-1500 programmable logic controllers (PLCs) and TIA Portal that gives attackers a way to extract “heavily guarded, hardcoded, global private cryptographic keys” in the vulnerable products. Threat actors […]

Read More
Breaches Vulnerabilities

Multiple APTs Exploiting Zimbra Vulnerability CVE-2022-41352

Patch or mitigate now [300 words] What: Organizations using Zimbra Collaboration suite (ZCS) 8.8.15 and 9.0 should immediately update to Zimbra 9.0.0 P27 released on October 10. Those that cannot should implement Zimbra’s recommended workaround which is to install the pax utility and restart Zimbra services. Ubuntu-based Zimbra installations are not impacted because pax is […]

Read More