Wednesday , April 2 2025

infosecbulletin

CISA issued two advisories for industrial control systems

ics

CISA released two advisories about Industrial Control Systems (ICS) on June 25, 2024. The advisories contain important information about security issues, vulnerabilities, and exploits related to ICS. ICSA-24-177-01 ABB Ability System 800xA: Successful exploitation of these vulnerabilities could cause services to crash and restart. ICSA-24-177-02 PTC Creo Elements/Direct License Server: …

Read More »

Indonesia’s National data center compromised, $8M ransom demand

Data center

Cyber attack compromised Indonesia’s national data center, causing trouble with immigration checks at airports. Attacker demanded an $8 million ransom, Reuters reported. The attack caused problems for government services, especially at airports, with long lines at immigration desks. The communications ministry said that automated passport machines are now working. Minister …

Read More »

ESET Issues Security Patch for Privilege Escalation Flaw

eset

ESET Issued security patch for privilege escalation flaw in its Windows security products. This flaw, called CVE-2024-2003 (CVSS 7.3), was found by the Zero Day Initiative (ZDI). It could have let attackers gain access to important files and folders without permission. The vulnerability exploited ESET’s file operations while restoring quarantined …

Read More »

Azad selected expert reviewer for CISA Review Manual 28th Edition

cisa

Certified Information Systems Auditor (CISA) is a globally recognized professional certification for information systems audit, control, and security. It’s offered by ISACA (Information Systems Audit and Control Association). CISA holders demonstrate expertise in assessing an organization’s IT controls and processes to identify and manage risks. The CISA Review Manual, 28th …

Read More »