May 2, 2024, 1:18 p.m. | SC Staff

SC Magazine feed for Strategy www.scmagazine.com

Ongoing intrusions targeting GitLab instances impacted by the maximum severity account takeover vulnerability, tracked as CVE-2023-7028, have prompted the flaw's inclusion in the Cybersecurity and Infrastructure Security Agency's Known Exploited Vulnerabilities catalog, with federal agencies urged to remediate the security issue by May 22, reports BleepingComputer.

account account takeover agency attacks bleepingcomputer catalog cisa cve cybersecurity devsecops exploited exploited vulnerabilities federal federal agencies flaw gitlab inclusion infrastructure infrastructure security issue known exploited known exploited vulnerabilities known exploited vulnerabilities catalog may network security remediation reports security severity takeover targeting third-party-code vulnerabilities vulnerability

Information Security Engineers

@ D. E. Shaw Research | New York City

Technology Security Analyst

@ Halton Region | Oakville, Ontario, Canada

Senior Cyber Security Analyst

@ Valley Water | San Jose, CA

Senior Product Delivery Associate - Cybersecurity | CyberOps

@ JPMorgan Chase & Co. | NY, United States

Security Ops Infrastructure Engineer (Remote US):

@ RingCentral | Remote, USA

SOC Analyst-1

@ NTT DATA | Bengaluru, India