News
Expert Insights Cybersecurity Vendor News Recap: November 7 –14, 2024
10 big headlines driving the news this week
Welcome to your weekly vendor news, M&As, and investments recap.
🤔 Have any thoughts or stories to share? Get in touch with [email protected].
In the news:
- Cybereason (an endpoint detection and response firm) and Trustwave (an MSSP) have announced plans to merge. (MSSP alert)
- Palo Alto Networks has issued advisory actions for customers to respond to claims of an RCE vulnerability in PAN-OS. (SecurityWeek)
- VMWare has unveiled new SMB security packages after claims that small customers were looking to move off the platform following the Broadcom acquisition. (Ars Technica)
- Microsoft’s November 2024 ‘Patch Tuesday’ released this week, including updates for 89 security flaws – including four zero-day exploits. (BleepingComputer)
- Apple’s IOS 18.1 update has quietly included a new security feature that reboots iPhones after four days of inactivity. After reboot, the device requires a password to be accessed. (CyberNews)
- Google has announced that from now on it will assign CVEs to all critical vulnerabilities found in its products, even where users do not need to take any action, as part of a commitment to transparency. (SecurityWeek)
- Ivanti released patches for almost 50 security vulnerabilities this week, including critical bugs in their Connect Secure, Policy Secure, and Endpoint Manager products. (SecurityWeek)
- Bitdefender has released a decryptor for the ShrinkLocker ransomware malware, as well as releasing research as to how the ransomware works. Several researchers have previously expressed concern about the unique approach it used to decrypt systems. (The Record)
- Amazon have confirmed that employee data was stolen after a ‘security event’ impacted a third-party information. Amazon and AWS systems remain secure. (TechCrunch)
- Google Cloud has released fixes for two bugs in Vertex AI, it’s platform for custom dev and deployment of LLMs that could have allowed hackers to exfiltrate models from the system. The flaws were uncovered by Palo Alto Networks. (Dark Reading)
We’ll be back next week with another roundup of the biggest cybersecurity vendor stories. Until then!
Expert Insights’ Cybersecurity Resources
- The Top RMM Solutions For MSPs
- The Top Mobile Device Management (MDM) Solutions
- The Top Email Security Solutions For Office 365
- The Top Email Security Gateways
- The Top Multi-Factor Authentication (MFA) Solutions For Business
- The Top Phishing Protection Solutions
- The Top Cyber Threat Intelligence Solutions