Atlassian Confluence Remote Code Execution Vulnerability (CVE-2022-26134) Notification

junho 17, 2022 | Jie Ji

Overview Recently, NSFOCUS CERT detected that Atlassian officially released a security bulletin for Confluence Server and Data Center OGNL injection vulnerability (CVE-2022-26134). Remote attackers can construct OGNL expressions for injection without authentication to execute arbitrary code on Confluence Server or Data Center, with a CVSS score of 10. At present, the details of the vulnerability […]

Deepening Engagement with Telcos, ISPs and MSPs to Create More Values for the Interconnected World

junho 14, 2022 | Jie Ji

Santa Clara, Calif. June 13, 2022 – NSFOCUS, a leader in holistic hybrid security solutions, attended the RSA Conference 2022 held in San Francisco on June 6 – 9 in person. From a small cryptography conference at the beginning to a conference now attracting an average of over 40,000 attendees every year including many security companies […]

Insight into RSA 2022: API Security

junho 10, 2022 | Jie Ji

Overview The rapid growth of cloud computing and the rise of today’s dynamic workforce have spurred organizations of all sizes to accelerate their move to the cloud. To adapt such changes, many applications that heavily rely on the call of application programming interfaces (APIs) are developed. Alongside the increase of the APIs and exponentially-growing data […]

How to Protect MEC from DDoS Attacks in 5G Networks

junho 8, 2022 | Jie Ji

NSFOCUS at RSAC 2022 Why MEC is so important to the 5G Network? MEC (Multiple-access Edge Computing) is an important part of the 5G architecture, which is a type of distributed computing used to reduce bandwidth and improve response time, allowing operators to deploy their applications from centralized data centers to the edge of the […]

NSFOCUS Empowers ISP/MSP with Zero Trust and Security Access Service Edge (SASE) Solution

junho 7, 2022 | Jie Ji

Transform One of the most important industry events – RSA Conference 2022 just had its opening both offline and online this year on June 6th, 2022. RSAC 2022 has selected the word “Transform” as the theme this year. It says “The security needs of organizations are expanding, and companies of all sizes across the globe […]

RSA Conference 2022

junho 6, 2022 | NSFOCUS

RSA Conference 2022 June 6-9, 2022 Moscone Center, San Francisco, CA

NSFOCUS to Unveil New Capabilities for NSFOCUS Cloud Security Services at RSA 2022

junho 4, 2022 | Jie Ji

Santa Clara, Calif. June 4, 2022 – NSFOCUS, a leader in holistic hybrid security solutions, today announced it launch new capabilities to NSFOCUS Cloud Security Services at RSA Conference 2022 to be held in San Francisco at Moscone Center from June 6 to 9, with the aim of offering extensive security protection to customers.  The new […]

Come and Meet NSFOCUS Next Week at RSA Conference 2022

junho 3, 2022 | Jie Ji

RSA Conference 2022 will kick off in San Francisco on June 6, 2022. The theme of RSA Conference 2022 is Transform[i], which is a further extension of last year’s theme Resilience. Resilience can be the emergency and recovery capabilities of small and medium organizations facing cyber threats, and the survival and adaption capabilities of large […]

Millions of Devices May Be Affected, and Yeskit Botnet Family Spreads on a Massive Scale by Exploiting F5 BIG-IP Vulnerability

junho 2, 2022 | Jie Ji

Background   On May 4, 2022, F5 issued a security bulletin regarding a remote code execution vulnerability in iControlREST component of BIG-IP products. The CVE number of the vulnerability is CVE-2022-1388. The vulnerability can bypass authentication and remotely execute arbitrary code with a vulnerability score of CVSS up to 9.8. Since the bulletin, attackers have […]

Research and Analysis of Middlebox-based TCP Reflective Amplification Attacks

maio 31, 2022 | Jie Ji

Abstract In August 2021, Kevin Bock and his team from the University of Maryland and the University of Colorado Boulder proposed a new TCP reflective amplification attack method initiated by the middlebox at the USENIX conference. (See more details at https://geneva.cs.umd.edu/papers/usenix-weaponizing-ddos.pdf) In mid-April this year, NSFOCUS spotted that one of its Cloud DDoS Protection Service […]

Procurar