Nov. 9, 2023, 1:25 p.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

On November 2nd, an alarming zero-day vulnerability was identified within the SysAid on-premises software. This discovery prompted an immediate incident response, involving communications with on-premise customers and collaboration with Profero, a cybersecurity incident response firm. The vulnerability, exploited by the hacker group DEV-0950 (Lace Tempest), presents significant risks for users of affected SysAid software versions.


1. Nature and Severity of the Vulnerability in SysAid (CVE-2023-47246)


This zero-day vulnerability, a path traversal flaw leading to code execution, was exploited to …

collaboration communications compromise customers cve cve-2023-47246 cybersecurity cybersecurity incident dev discovery exploited hacker hacker group incident incident response lace tempest november on-prem path path traversal premise response risks software sysaid tempest vulnerability zero-day zero-day vulnerability

Social Engineer For Reverse Engineering Exploit Study

@ Independent study | Remote

Data Privacy Manager m/f/d)

@ Coloplast | Hamburg, HH, DE

Cybersecurity Sr. Manager

@ Eastman | Kingsport, TN, US, 37660

KDN IAM Associate Consultant

@ KPMG India | Hyderabad, Telangana, India

Learning Experience Designer in Cybersecurity (f/m/div.) (Salary: ~113.000 EUR p.a.*)

@ Bosch Group | Stuttgart, Germany

Senior Security Engineer - SIEM

@ Samsara | Remote - US