Saturday , October 19 2024

infosecbulletin

Google says new Android Zero-day vulnerability was exploited

google

Google has patched a “high-severity” vulnerability that may be “under limited, targeted exploitation” in Android devices. Google issued an advisory stating that the bug, known as CVE-2024-36971, affects the Linux kernel. This kernel is a crucial part of an operating system, connecting the software to the computer’s hardware. According to …

Read More »

Critical Vulnerability in Apache OFBiz Requires Patching

apache

The Mirai botnet is exploiting a new directory traversal vulnerability in Apache OFBiz. This Java framework is supported by the Apache Foundation. It is used to create ERP (Enterprise Resource Planning) applications that manage sensitive business data. Despite being less common than commercial alternatives, ERP applications are crucial for businesses. Vulnerability …

Read More »

EU’s World-First Artificial Intelligence Rules Officially Taking Effect

EU flag

The European Union’s artificial intelligence law, the first of its kind in the world, officially came into effect on Thursday. This is a significant step in the EU’s efforts to regulate this technology. The Artificial Intelligence Act aims to protect the “fundamental rights” of citizens in the 27-nation bloc and …

Read More »

CISA issues nine industrial control system advisories

CISA

CISA released nine advisories about Industrial Control Systems (ICS) on August 1, 2024. They give important information about security issues, vulnerabilities, and exploits related to ICS. ICSA-24-214-01 Johnson Controls exacqVision Client and exacqVision Server ICSA-24-214-02 Johnson Controls exacqVision Web Service ICSA-24-214-03 Johnson Controls exacqVision Web Service ICSA-24-214-04 Johnson Controls exacqVision …

Read More »

Ransomware Attack Forces 300 Indian Banks To Temporarily Stop Payment Systems

banking

A ransomware attack on a tech provider has caused payment systems in nearly 300 local Indian banks to temporarily shut down, according to two reliable sources. The attack affected C-Edge Technologies, a provider of banking technology systems to small banks across the country, they said. C-Edge Technologies did not respond …

Read More »