Microsoft server's and VPNs unpatched vulnerabilities are being exploited by hackers
CISA has claimed that Chinese hackers are targeting cyber environment of various countries.
In the advisory released by CISA, the agency has asked to patch flaws in several critical software and devices, including F5 BIG-IP devices, Pulse Secure VPNs, Citrix VPN, and Microsoft Exchange servers.
Hacker have been found to perform various malicious activities to jeopardize cyber security of various countries. Some of these instances include leaking data of 900 secure VPN servers, exploiting Microsoft Exchange server, and stealing 6 TB of data from Citrix VPN.
The agency stated that threat actors affiliated with the Chinese Ministry of State Security are using commercially available information sources and open-source exploitation tools to target various networks.
All the listed vulnerabilities have already being tackled by security patches that are available. The point of concern is that the organizations under threat have not yet upgraded their systems. Latency in the upgrade can cost the security and data theft of the organization.
There are mainly two vulnerabilities which are being targeted by the hackers. Big-IP Traffic Management User Interface and Pulse Secure VPN appliances are the reason behind most of these attacks.
NPAV recommends organizations and individual to always keep a proper check for the updates and patches of the software that are being used. Updating any software makes it more secure and hard to hack.
Install NPAV on your devices to protect them from all kinds of cyber attacks. Use NPAV and join us on a mission to secure the cyber world.
- Other (42)
- Ransomware (123)
- Events and News (26)
- Features (44)
- Security (422)
- Tips (79)
- Google (22)
- Achievements (8)
- Products (33)
- Activation (7)
- Dealers (1)
- Bank Phishing (42)
- Malware Alerts (187)
- Cyber Attack (219)
- Data Backup (11)
- Data Breach (75)
- Phishing (138)
- Securty Tips (1)
- Browser Hijack (16)
- Adware (15)
- Email And Password (67)
- Android Security (55)
- Knoweldgebase (38)
- Botnet (15)
- Updates (3)
- Alert (70)
- Hacking (57)
- Social Media (7)
- vulnerability (53)
- Hacker (31)
- Spyware (8)
- Windows (6)
- Microsoft (21)
- Uber (1)
- YouTube (1)
- Trojan (2)
- Website hacks (3)
- Paytm (1)
- Credit card scam (1)
- Telegram (3)
- RAT (5)
- Bug (3)
- Twitter (2)
- Facebook (7)
- Banking Trojan (5)
- Mozilla (2)
- COVID-19 (5)
- Instagram (2)
- NPAV Announcement (5)
- IoT Security (1)
- Deals and Offers (1)
- Cloud Security (8)
- Offers (5)
- Gaming (1)
- FireFox (2)
- LinkedIn (2)
- WhatsApp (4)
- Amazon (1)
- DMart (1)
- Payment Risk (4)
- Occasion (2)
- firewall (1)
- Cloud malware (2)
- Cloud storage (2)
- Financial fraud (4)
- Impersonation phishing (1)
- DDoS (4)
- Smishing (2)
- Whale (0)
- Whale phishing (3)
- WINRAR (2)
- ZIP (2)