GitLab has issued a critical security alert regarding a severe vulnerability in its GitLab Community and Enterprise editions, potentially allowing attackers to execute pipeline jobs as other users. With over 30 million registered users and adoption by more than 50% of Fortune 100 companies, including T-Mobile, Goldman Sachs, Airbus, Lockheed Martin, Nvidia, and UBS, this […]
Microsoft’s July security update reveals significant vulnerabilities, with attackers already exploiting flaws in the system. The update addresses a staggering 139 CVEs in Microsoft products and four in non-Microsoft products. The July update necessitates prompt action from administrators, given the patching requirements for 139 unique CVEs. Among these, two are actively exploited by attackers, and […]
A critical security flaw discovered in the RADIUS protocol, nicknamed BlastRADIUS (CVE-2024-3596), makes a wide range of networking equipment susceptible to MitM attacks. Although complex to exploit, a successful attack could have serious consequences. To mitigate BlastRADIUS, network devices like switches, routers, firewalls, VPN concentrators, access points, and DSL gateways need updates that add integrity […]