Known Exploited Vulnerabilities and counting....
A known exploited vulnerability (KEV) refers to a software vulnerability that is being actively exploited by cybercriminals or threat actors. When a vulnerability becomes known to be exploited in the wild, it signals that the vulnerability poses a significant and imminent risk to organizations.
Common Vulnerability and Exposure
CVEs form a database of known security vulnerabilities that are actively tracked and managed by a group of organizations, such as the U.S. National Cyber Security Alliance. CVEs are an important tool for network security management because they not only provide an inventory of existing vulnerabilities, but also provide information about how the vulnerability can be exploited and instructions on how to protect against it.
Search Known Exploits
Search for CVEs by vendor to identify known exploited vulnerabilities in your environment
CVE = Common Vulnerability and Exposure
CVE OF THE WEEK:
Palo Alto Networks
PAN-OS
Patch deadline: 10 months ago on 01/20/2025
CVE-2024-3393
Palo Alto Networks PAN-OS contains a vulnerability in parsing and logging malformed DNS packets in the DNS Security feature that, when exploited, allows an unauthenticated attacker to remotely reboot the firewall. Repeated attempts to trigger this condition will cause the firewall to enter maintenance mode.
Palo Alto Networks PAN-OS Malformed DNS Packet Vulnerability
Learn more about this CVE: paloaltonetworks.com
Cyber Security News
You may have missed...
*
Inside a cyberattack: How hackers steal data
The truth about cybersecurity is that it's almost impossible to keep hackers outside of an organization, particularly as the cybercrime industry ...
Chinese Citizen Sentenced for ÂŁ5 Billion Money Laundering Scheme Defrauding More Than ...
Crypto Crime Prevention and Victim Impact. Law enforcement leaders and public officials, including Mayor Sadiq Khan and Security Minister Dan ...
ÂŁ5B Bitcoin bandit sent down for 11 years - The Register
The Met remains committed to protecting the public and this outcome shows the lengths we will go to secure justice for victims." Another associate of ...
SEC Chair Paul Atkins unveils plan for 'token taxonomy' to redefine crypto regulation
Cryptocurrencies can be a part of an investment contract, but it doesn't mean they will stay that way forever, Atkins later added. Securities and ...
SEC Chair Paul Atkins Reveals Which Crypto Tokens He Thinks Are Securities
... security under the SEC's stringent jurisdiction. While many crypto tokens, if not most, are bought by holders in expectation of future profits ...
Crypto “Kill Switch” Exposed: Bybit Warns 16 Blockchains Can Freeze User Funds
A new report from Bybit's Lazarus Security Lab has revealed that 16 blockchain networks possess built-in mechanisms that can freeze or restrict ...
China's Cyber Silence is More Worrying Than Russia's Noise, Chief Cybersecurity Strategist Says
NTT's chief cybersecurity strategist Mihoko Matsubara on the new geopolitics of hacking, the “chicken and egg” problem of 5G, and the AGI threat ...
Companies want more from their threat intelligence platforms | Cybersecurity Dive
Customers expect faster, more accurate and more relevant data, Recorded Future found in a new report.
British government unveils long-awaited landmark cybersecurity bill - Therecord.media
After years of delays, the British government introduced its landmark Cyber Security and Resilience Bill to Parliament, threatening large fines ...
Updated daily
