SecurityBrief Canada - Technology news for CISOs & cybersecurity decision-makers

Common Vulnerabilities and Exposures (CVE) stories - Page 2

Techday f c8cba525d68bdc0d379c

Red Hat Enterprise Linux 10 brings AI & post-quantum security

Wed, 21st May 2025
#
cve
Red Hat launches Enterprise Linux 10, featuring AI integration, enhanced security with post-quantum cryptography, and hybrid cloud support for enterprises.
Techday f 6f1ad67e5de750c54dd1

Emojis used to hide attacks & bypass major AI guardrails

Wed, 7th May 2025
#
cve
Mindgard reveals emoji smuggling can bypass AI guardrails from Microsoft, Meta, Nvidia, and others with up to 100% attack success, raising serious security concerns.
Techday f 5181b50a78f4a9393490

Black Kite launches tool for third-party vulnerability insight

Fri, 2nd May 2025
#
cve
Black Kite launches Vulnerability Intelligence Briefs to help organisations identify and manage third-party cyber risks, enhancing supply chain security.
Techday f fdc2407ad31076bf45e6

Minimus launches with USD $51 million to cut 95% of CVEs

Wed, 30th Apr 2025
#
cve
Minimus launches with USD $51 million to cut 95% of CVEs in software supply chains, offering secure components and faster vulnerability reduction.
Techday f 8260c5171e8784aa0e54

Armis offers free access to real-time cyber threat database

Thu, 24th Apr 2025
#
cve
Armis launches free Vulnerability Intelligence Database to help security teams anticipate and tackle cyber threats with real-time, AI-driven insights.
Techday f d9ab3199ad1a796e3d1e

Funding crisis sparks fears for future of global CVE system

Thu, 17th Apr 2025
#
cve
US government funding for the crucial CVE cybersecurity programme is set to lapse, raising fears over global vulnerability tracking and defence efforts.
Techday f d4b1ceb2605416444d03

CVE system secures 11-month extension worth USD $44 million

Thu, 17th Apr 2025
#
cve
CISA extends its contract with MITRE for another 11 months at USD $44 million, securing the critical CVE vulnerability programme amid funding concerns.
Techday f baf9fd9d2acc248ec010

Future of CVE repository in doubt as MITRE contract ends

Thu, 17th Apr 2025
#
cve
Concerns rise as MITRE's contract to manage the CVE vulnerability database nears expiry, risking disruption to global cybersecurity infrastructure.
Techday f 9184a27e187c1e60bc47

US funding lapse casts uncertainty over global CVE system

Thu, 17th Apr 2025
#
cve
US government funding for MITRE's CVE programme has expired, risking disruption to global cybersecurity efforts and vulnerability tracking systems.
Ps rashid mohiuddin

How to protect legacy medical devices from modern cyber threats

Tue, 15th Apr 2025
#
cve
Healthcare providers in Australia and New Zealand face growing cyber threats, with legacy medical devices proving vulnerable due to outdated security measures.
Techday f 79b96508a8d794789418

Microsoft April Patch Tuesday highlights zero-day risks

Fri, 11th Apr 2025
#
cve
Microsoft's recent Patch Tuesday sparked scrutiny with a 40-minute delay in updates and notable vulnerabilities, including a critical zero-day in the CLFS Driver.
Techday f efc9ba3070861ef7fadd

Zscaler report urges shift from VPNs to Zero Trust

Fri, 11th Apr 2025
#
cve
Zscaler's 2025 ThreatLabz VPN Risk Report reveals soaring VPN usage in Australia but warns of heightened security risks, urging a shift to Zero Trust architectures.
Techday f 98f575a5e8a51a996324

N-able launches new feature to boost vulnerability management

Fri, 11th Apr 2025
#
cve
N-able has launched a new Vulnerability Management feature for its UEM products, enhancing risk mitigation for organisations amid rising cyber threats.
Techday f 54e826eb84f7decbc874

April Patch Tuesday: Microsoft announces 121 vulnerabilities

Wed, 9th Apr 2025
#
cve
Microsoft has unveiled 121 vulnerabilities in its April 2025 Patch Tuesday update, marking a significant increase from last month's total.
Techday f 35018f305bd0d626e0a1

RunZero expands platform for enhanced exposure management

Tue, 8th Apr 2025
#
cve
runZero has unveiled an expanded platform to enhance exposure management, promising to aid organisations in effectively managing risk across their attack surfaces.
Techday b80e586b58ecbe1e7ea4

Kaspersky discovers & patches zero-day Chrome flaw

Thu, 3rd Apr 2025
#
cve
Kaspersky has uncovered and patched a critical zero-day vulnerability in Google Chrome, enabling attackers to bypass sandbox protections via malicious links.
Techday fb14eafa47d80817b71b

GitHub Action compromise affects over 23,000 repositories

Thu, 20th Mar 2025
#
cve
A malicious commit in the tj-actions/changed-files GitHub Action, used in over 23,000 repositories, threatens software security across numerous CI pipelines.
Ps jack meltzer headshot 2023  2

Building a culture of cyber hygiene

Tue, 18th Mar 2025
#
cve
As cyber attacks surge, the World Economic Forum warns of a widening skills gap, urging organisations to foster a culture of cyber hygiene for better security.
Techday aabb68e53e66032247be

Microsoft patches 56 vulnerabilities, 7 zero days fixed

Tue, 18th Mar 2025
#
cve
Microsoft has patched 56 vulnerabilities in its latest update, including seven zero-day flaws, six of which have been actively exploited.
Techday eb33571295140d6fed56

JFrog & Hugging Face join forces to secure AI models

Tue, 18th Mar 2025
#
cve
JFrog has partnered with Hugging Face to enhance security for machine learning models, boosting safety measures on the Hugging Face Hub against potential threats.