Nov. 8, 2023, 3:02 a.m. | Security Now

Security Now www.youtube.com

• Microsoft announced storing their Azure keys in an HSM after previously losing control of a private signing key
• A quartet of new 0-day vulnerabilities in Exchange Server that Microsoft declined to fix
• Apache ActiveMQ servers under attack exploiting a 0-day, with over half of publicly exposed servers vulnerable
• Update on the Citrix Bleed vulnerability with evidence of hackers gaining access and post-exploitation activity
• CVSS version 4 released with new metrics for better granularity and clarity …

ace ace hardware activemq apache apache activemq article attack azure bitwarden citrix citrix bleed control cyberattack exchange exchange server exploiting fix hardware hsm key keys losing control microsoft passkeys private server servers signing signing key under update vulnerabilities

Information Security Engineers

@ D. E. Shaw Research | New York City

Technology Security Analyst

@ Halton Region | Oakville, Ontario, Canada

Senior Cyber Security Analyst

@ Valley Water | San Jose, CA

Sr. Staff Firmware Engineer – Networking & Firewall

@ Axiado | Bengaluru, India

Compliance Architect / Product Security Sr. Engineer/Expert (f/m/d)

@ SAP | Walldorf, DE, 69190

SAP Security Administrator

@ FARO Technologies | EMEA-Portugal