Blog

OpenSSH Remote Code Execution Vulnerability (CVE-2024-6387) Notification

julho 2, 2024 | NSFOCUS

Overview Recently, NSFOCUS CERT detected that OpenSSH issued a security announcement and fixed the remote code execution vulnerability of OpenSSH (CVE-2024-6387). Due to a signal handler race condition issue in OpenSSH Server (sshd) under the default configuration, if the client does not authenticate within seconds of LoginGraceTime (120 seconds by default and 600 seconds in […]

NSFOCUS Named a Leader for Its ISOP in IDC MarketScape for China’s Extended Detection and Response (XDR) Platform Vendor Assessment

julho 1, 2024 | NSFOCUS

SANTA CLARA, Calif., July 01, 2024 — IDC, a leading global IT market research and consulting company, recently released IDC MarketScape: China’s Extended Detection and Response Platform 2024 Vendor Assessment (Doc# CHC51540824, June 2024, hereinafter referred to as the “Report”) to provide in-depth analysis and assessment of the XDR market trends, technological developments, and major […]

NSFOCUS Awarded Frost & Sullivan’s 2024 Best Practices Award for Managed Detection and Response Services

junho 28, 2024 | NSFOCUS

BEIJING, CHINA, June 28, 2024 – NSFOCUS, a leading global cybersecurity solution provider with over 20 years of industry experience, has been honored with the prestigious Frost & Sullivan 2024 Best Practices Award for its managed detection and response (MDR) services. This accolade recognizes NSFOCUS’s outstanding performance and innovation in the cybersecurity market. As cybersecurity […]

Uma imagem que ilustra um cadeado aberto em forma de computação.

Segurança de rede: o que é, soluções e para que serve?

junho 27, 2024 | Eduardo Guerra

A segurança de rede é fundamental para a proteção dos negócios. Por isso, estar por dentro de todas as informações essenciais é fundamental para mantê-la sempre protegida. Neste guia, você encontrará o que precisa para manter a segurança da rede da sua empresa e conhecerá soluções efetivas, como a da NSFOCUS, para garantir que todos […]

Efficiency is Key to Cybersecurity in the Post-Cloud Era

junho 26, 2024 | NSFOCUS

SANTA CLARA, Calif., June 26, 2024 — At the 16th Information Security Forum and 2024 RSAC Hot Topics Seminar held on June 7, 2024, Richard Zhao, Chief Operating Officer of International Business at NSFOCUS, presented the new picture of cybersecurity in the post-cloud era with his professional insights. Key Highlights Richard’s speech focused on three […]

Uma imagem que ilustra um cadeado aberto em forma de computação.

Cibersegurança: o que é e como se proteger das ameaças virtuais?

junho 22, 2024 | Eduardo Guerra

Seja em casa ou no ambiente de trabalho, a segurança digital é essencial e abrange diversos aspectos, desde a segurança de rede até a proteção das informações.  Neste artigo, vamos explicar o que é cibersegurança e como se proteger das ameaças virtuais que rondam diariamente. Confira! O que é cibersegurança? A cibersegurança é a área […]

Multiple High-risk Vulnerabilities (CVE-2024-37079/CVE-2024-37080/CVE-2024-37081) in VMware vCenter Server Notification

junho 20, 2024 | NSFOCUS

Overview Recently, NSFOCUS CERT detected that VMware released a security announcement to fix the heap overflow vulnerability (CVE-2024-37079/CVE-2024-37080) and privilege escalation vulnerability (CVE-2024-37081) in VMware vCenter Server. At present, the official version has been fixed. Please take measures for protection. CVE-2024-37079/CVE-2024-37080: Because the vCenter Server has a heap overflow vulnerability when executing the DCERPC protocol, […]

NSFOCUS Leads the Market with Advanced WAAP Technology

junho 19, 2024 | NSFOCUS

SANTA CLARA, Calif., June 19, 2024 – NSFOCUS, a global leader in cybersecurity solutions, proudly announces that in the recently released IDC report, China WAAP Vendor Technology Capability Assessment, 2024, NSFOCUS’s WAAP technology received outstanding evaluations with perfect scores in five key areas: Web Application Firewall (WAF), Bot Traffic Management, Threat Intelligence, Application-layer DDoS Protection, […]

Microsoft’s Security Update Notification in June of High-Risk Vulnerabilities in Multiple Products

junho 18, 2024 | NSFOCUS

Overview Recently, NSFOCUS CERT detected that Microsoft released a security update patch for June, which fixed 49 security issues involving widely used products such as Windows, Azure, Microsoft Office and Microsoft Visual Studio, including high-risk vulnerabilities such as privilege escalation and remote code execution. Among the vulnerabilities fixed in Microsoft’s monthly update this month, there […]

PHP CGI Windows Platform Remote Code Execution Vulnerability (CVE-2024-4577) Advisory

junho 12, 2024 | NSFOCUS

Overview NSFOCUS CERT has monitored the disclosure of a PHP CGI Windows platform remote code execution vulnerability (CVE-2024-4577) on the internet recently. Due to PHP’s oversight of the Best-Fit character mapping feature of the Windows system during its design, running PHP in CGI mode on the Windows platform and using the following language settings (Simplified […]