security

📅 Kalender

< March 2026 >
Mo
Di
Mi
Do
Fr
Sa
So
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
1718192021222324
25
26
27
28
29
30
31
Gefiltert nach: 24. März 2026
security

Detecting IP KVMs, (Tue, Mar 24th)

I have written about how to&&#x23;x26;&#x23;xc2;&&#x23;x26;&#x23;xa0;use IP KVMs securely, and recently, researchers at Eclypsium published yet another report on IP KVM vulnerabilities.&&#x23;x26;&#x23;xc2;&&#x23;x26;&#x23;xa0;But there is another issue I haven&&#x23;x26;&#x23;39;t mentioned yet with IP KVMs: rogue IP KVMs. IP KVMs are often used by criminals. For example, North Koreans used KVMs to connect remotely to laptops sent to them by their employers. The laptops were located in the US, and the North Korean workers used IP KVMs to remotely connect to them. IP KVMs could also be used to access office PCs, either to enable undetected „work from home“&&#x23;x26;&#x23;xc2;&&#x23;x26;&#x23;xa0;or by threat actors who use them to gain remote access after installing the device on site.

Mehr lesen →
soc

CVE-2026-3055: NetScaler Memory Disclosure Puts SAML-Enabled Edge Devices at Risk

CVE-2026-3055: NetScaler Memory Disclosure Puts SAML-Enabled Edge Devices at Risk Citrix has released fixes for two NetScaler vulnerabilities that security teams should review right away: CVE-2026-3055 and CVE-2026-4368. The first is a critical memory overread issue while the second is a race condition that can cause user session mix-ups. Both matter because NetScaler ADC and […]

Mehr lesen →