Search Results
Results For:
Kubernetes tools are helpful for your team and sadly, your attacker
Overview Defenders must constantly stay aware of the latest attacker trends to ensure their organizations’ assets are protected. In recent years, leveraging commonly found… Read More
Read MoreSecurity Advisory: CVE-2022-26134 RCE in multiple Atlassian products
Summary On Jun 2nd Lacework Labs was made aware of CVE-2022-26134, a critical unauthenticated remote code execution vulnerability within… Read More
Read MoreSecurity Advisory: Critical vulnerabilities in VMware
CVE(s) (if available): CVE-2022-22954, CVE-2022-22955,CVE-2022-22956, CVE-2022-22957, CVE-2022-22958, CVE-2022-22959, CVE-2022-22960, CVE-2022-22961, CVE-2022-22972, CVE-2022-22973 Summary In early April VMware released patches for remote code… Read More
Read MoreMalware targeting latest F5 vulnerability
On May 9th, 2022 a remote code execution vulnerability in F5’s Big IP suite of appliances under CVE-2022-1388. Per… Read More
Read MoreNginxDay
Lacework Labs Advisory – “Nginx Day” “Nginx Day”, a zero day targeting Nginx was announced by “AgainstTheWest” via their Twitter account. On April 11th,… Read More
Read MoreNew Lacework report reveals increase in sophisticated cloud attacks
Security in the cloud continues to prove a challenge for organizations around the world. Threat actors are refining their techniques to gain… Read More
Read MoreA guide to responding to the Log4j vulnerability
On December 10th, 2021, CVE-2021-44228 took the security industry by storm when a remote code execution vulnerability was discovered in the… Read More
Read MoreLog4j heute – und was die Zukunft bereithält
Greg Foss, Lacework Labs The holiday season is never complete without a significant security event unfolding as the year comes to an end. Read More
Read MoreLog4j-Angriffe – Eine Woche im Rückblick
Key Takeaways Log4J Vulnerabilities (CVE-2021-44228, CVE-2021-45046) are being exploited by opportunistic attackers. Evasion techniques are being employed to subvert detection. Overview A week… Read More
Read MoreCVE-2021-43326: Ausweitung der Berechtigungen von Automox
Lacework Labs researcher Greg Foss (@35Foss) spent some time analyzing the Automox Windows agent and ultimately… Read More
Read More