2022 Cybersecurity Predictions – From Ransomware and Supply Chain Risks to Operational Technology and IoT

As we look ahead to 2022, we should pause to reflect on the trends of the past year. Ransomware and supply chain attacks have become two of the top concerns for organizations ...
Forescout Research Labs: INFRA:HALT Vulnerabilities with Stanislav Dashevskyi

New Critical Operational Technology Vulnerabilities Found on NicheStack – Mitigation Advised

Forescout Research Labs and JFrog Security Research have discovered a set of 14 new vulnerabilities affecting the NicheStack TCP/IP stack, which we are collectively calling INFRA:HALT. The new vulnerabilities allow for remote ...
Thousands of companies compromised by REvil Ransomware – the supply chain strikes again

Thousands of companies compromised by REvil Ransomware – the supply chain strikes again

On July 2, news emerged of a large-scale attack leveraging the Kaseya VSA network monitoring and management solution to deploy a variant of the REvil ransomware. The attackers claimed that more than ...
Thousands of companies compromised by REvil Ransomware – the supply chain strikes again

Thousands of companies compromised by REvil Ransomware – the supply chain strikes again

On July 2, news emerged of a large-scale attack leveraging the Kaseya VSA network monitoring and management solution to deploy a variant of the REvil ransomware. The attackers claimed that more than ...
PrintNightmare

PrintNightmare

The Infamous Windows Print Spooler Service Hit Again During June’s 2021 Patch Tuesday, Microsoft addressed a minor local privilege escalation (LPE) vulnerability (CVE-2021-1675) in the Windows Print Spooler service (spoolsv.exe), which is ...
PrintNightmare

PrintNightmare

The Infamous Windows Print Spooler Service Hit Again During June’s 2021 Patch Tuesday, Microsoft addressed a minor local privilege escalation (LPE) vulnerability (CVE-2021-1675) in the Windows Print Spooler service (spoolsv.exe), which is ...
PrintNightmare

PrintNightmare

The Infamous Windows Print Spooler Service Hit Again During June’s 2021 Patch Tuesday, Microsoft addressed a minor local privilege escalation (LPE) vulnerability (CVE-2021-1675) in the Windows Print Spooler service (spoolsv.exe), which is ...

The impact of TCP/IP vulnerabilities in healthcare devices

Forescout Research Labs found and disclosed several critical vulnerabilities on TCP/IP stacks that affect hundreds of millions of IT, OT, IoT and IoMT devices: AMNESIA:33, NUMBER:JACK and NAME:WRECK. This research – collectively ...

Forescout and JSOF Disclose New DNS Vulnerabilities, Impacting Millions of Enterprise and Consumer Devices

Today, Forescout Research Labs, partnering with JSOF Research, disclose NAME:WRECK, a set of nine vulnerabilities affecting four popular TCP/IP stacks (FreeBSD, Nucleus NET, IPnet and NetX). These vulnerabilities relate to Domain Name ...

The Mission of Supporting Healthcare Providers Continues…

Along with many of my colleagues and Healthcare industry peers, I have been energized recently, as COVID cases ease and optimism takes root. After a six-month professional hiatus, I decided back in ...