CISA Adds Four More Known Exploited Vulnerabilities to their Catalog

LINK The four added are CVE Number CVE Title Required Action Due Date CVE-2006-1547 Apache Struts 1 ActionForm Denial of Service Vulnerability 07/21/2022 CVE-2012-0391 Apache Struts 2 Improper Input Validation Vulnerability 07/21/2022 CVE-2018-8453 Microsoft Windows Win32k Privilege Escalation Vulnerability 07/21/2022 CVE-2021-35247 SolarWinds Serv-U Improper Input Validation Vulnerability 02/04/2022 The download for the full CSV is […]

Breach Announcements – January 20, 2022 (cryptocurrency trading site) – 483 large customers data and currency withdrawn\ Red Cross (humanitarian organization) – half a million users PII exfiltrated R.R. Donnelly (integrated services company) – unspecified intrusion Above is a list of Companies I have information for that have confirmed some sort of Breach (its obviously not complete since most never […]