Our Latest News
Vulnerability Summary for the Week of June 20, 2022
Rails::Html::Sanitizer -- Rails::Html::Sanitizer # Possible XSS Vulnerability in Rails::Html::SanitizerThere is a possible XSS vulnerability with certain configurations of Rails::Html::Sanitizer.This vulnerability has been assigned the CVE identifier...
Military Consumer Month 2022
VM Backup Tiering with Azure Automation
Hi folks! My name is Felipe Binotto, Senior Azure Customer Engineer, based in Australia. The purpose of this article is to demonstrate how you can have different Backup Tiers for your VMs and how you can automate the backup configuration leveraging Azure Tags...
Exchange Server 2013 End of Support Reminder
Just a reminder that Exchange Server 2013 reaches End of Support on April 11, 2023. That's a little more than 9 months from now. After that date, Microsoft will no longer provide: Technical support for problems that may occur Bug fixes for issues that are...
MTC Weekly Roundup – June 24
Hello MTC-ers and welcome to the first Weekly Roundup of summer! Hope everyone is staying cool, at least in the Northern hemisphere anyways. MTC Moments of the Week This week we had an AMA with the Windows 365 team, featuring @Tristan Scott , @Scott...
Citrix Releases Security Updates for Hypervisor
Citrix has released security updates to address vulnerabilities that could affect Hypervisor. An attacker could exploit one of these vulnerabilities to take control of an affected system.CISA encourages users and administrators to review Citrix Security Update...
Malicious Cyber Actors Continue to Exploit Log4Shell in VMware Horizon Systems
CISA and the United States Coast Guard Cyber Command (CGCYBER) have released a joint Cybersecurity Advisory (CSA) to warn network defenders that cyber threat actors, including state-sponsored advanced persistent threat (APT) actors, have continued to exploit...
Malicious Cyber Actors Continue to Exploit Log4Shell in VMware Horizon Systems
Actions to take today:• Install fixed builds, updating all affected VMware Horizon and UAG systems to the latest versions. If updates or workarounds were not promptly applied following VMware’s release of updates for Log4Shell in December 2021, treat all affected...
New identity security posture assessment: Unsecure domain configurations
“The tyranny of the default” has been a phrase that has worried many a security professional over the years; the constant struggle to make sure their systems are configured for optimal security, which often requires them to examine each feature individually. To...
CISA Releases Cloud Security Technical Reference Architecture
CISA has released its Cloud Security (CS) Technical Reference Architecture (TRA) to guide federal civilian departments and agencies in securely migrating to the cloud. Co-authored by CISA, the United States Digital Service, and the Federal Risk and Authorization...
Recent Comments