Security Knowledge Graph – APT Group Profiling and Attribution

August 5, 2022 | Jie Ji

The security knowledge graph, a knowledge graph specific to the security domain, is the key to realizing cognitive intelligence in cyber security, and it also lays an indispensable technological foundation for dealing with advanced, continuous and complex threats and risks in cyberspace. NSFOCUS will publish a series of articles about the application of the security […]

Multiple High-Risk Vulnerability Alerts in Atlassian

August 1, 2022 | Jie Ji

Overview Recently, NSFOCUS CERT has detected that Atlassian has officially released a security bulletin, which has fixed several high-risk vulnerabilities in Atlassian products, and relevant users are requested to take measures to protect them. Arbitrary Servlet Filter Bypass Vulnerability (CVE-2022-26136): Vulnerabilities in multiple Atlassian products allow unauthenticated remote attackers to bypass servlet filters used by […]

IDNOG Workshop & Conference

July 29, 2022 | NSFOCUS

IDNOG | 2022 July 25-28, 2022 | Sheraton Grand Jakarta Gandaria City Hotel, Indonesia INDONESIA NETWORK OPERATORS GROUP (IDNOG) founded in Jakarta On June 24, 2014. IDNOG initiated by a group of volunteers from Internet Service Provider (ISP) companies, Network Access Providers (NAP) and Stake Holders. It is a non-profit organization, which is independent and do […]

Critical Patch Update for All Oracle Products in July

July 27, 2022 | Jie Ji

Overview On July 20, 2022, NSFOCUS CERT monitored and found that Oracle officially released the CPU (Critical Patch Update) in July. A total of 349 vulnerabilities of varying degrees were fixed this time. This security update involves Oracle WebLogic Server, Oracle MySQL, Oracle Java SE, Oracle Retail Applications and many other common products. Oracle strongly […]

Apache Spark Shell Command Injection Vulnerability (CVE-2022-33891) Alerts

July 21, 2022 | Jie Ji

Overview Recently, NSFOCUS CERT detected that Apache officially released a security bulletin and fixed a command injection vulnerability (CVE-2022-33891) in Apache Spark. Since the Apache Spark UI enables acl through the configuration option Spark.acl.enable, by using an authentication filter, it is possible to check if a user has access to view or modify the application. […]

Microsoft’s July security update for multiple high-risk product vulnerabilities

July 18, 2022 | Jie Ji

Overview On July 13, NSFOCUS CERT detected that Microsoft released the July security update patch, which fixed 84 security issues, involving widely used products such as Windows, Microsoft Office, Windows Print Spooler Components, Windows Hyper-V, and Azure Site Recovery, and included high-risk vulnerability types such as privilege escalation and remote code execution. Among the vulnerabilities […]

Security Knowledge Graph | Build an APT Group Graph to Avoid the Information Island Effect

July 13, 2022 | Jie Ji

The security knowledge graph, a knowledge graph specific to the security domain, is the key to realizing cognitive intelligence in cyber security, and it also lays an indispensable technological foundation for dealing with advanced, continuous and complex threats and risks in cyberspace. NSFOCUS will publish a series of articles about the application of the security […]

PhNOG

July 12, 2022 | NSFOCUS

Philippine Network Operators Group 2022 June 11-13, 2022 New World Hotel Makati, Philippines

NSFOCUS was listed in 2022 Gartner® Market Guide for Security Orchestration, Automation and Response Solutions

July 6, 2022 | Jie Ji

Santa Clara, Calif. July 6, 2022 – We are pleased to announce that NSFOCUS has been listed as a Representative Vendor in 2022 Gartner® released Market Guide for Security Orchestration, Automation and Response Solutions report for our product ISOP. ISOP has flexible out-of-the-box capabilities, automated orchestration capabilities and rich intelligence operations and management capabilities to provide […]

Multiple High-Risk Vulnerability Alerts of GitLab

July 3, 2022 | Jie Ji

Overview On July 1, 2022, NSFOCUS CERT detected that GitLab officially released a security bulletin and fixed multiple security vulnerabilities in GitLab Community Edition (CE) and Enterprise Edition (EE). Please take measures to protect it as soon as possible. GitLab Remote Code Execution Vulnerability (CVE-2022-2185): A remote code execution vulnerability exists in GitLab Community Edition […]

Search

Subscribe to the NSFOCUS Blog