• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
  • Skip to footer

My TechDecisions

  • Best of Tech Decisions
  • Topics
    • Video
    • Audio
    • Mobility
    • Unified Communications
    • IT Infrastructure
    • Network Security
    • Physical Security
    • Facility
    • Compliance
  • RFP Resources
  • Resources
  • Podcasts
  • Project of the Week
  • About Us
    SEARCH

Vulnerability Management

Microsoft Apple macOS bug

Apple Fixes Actively Exploited Bug in WebKit Impacting Wide Range of Devices

December 15, 2022 Zachary Comeau Leave a Comment

Apple this week has patched a wide range of security fixes, including one in WebKit that is being actively exploited and impacting all supported iPhones. The security update, included in iOS 16.1.2, macOS Ventura, macOS Big Sur, macOS Monterey, Apple TV, fixes a bug that would allow arbitrary code execution if maliciously crafted web content […]

Read More

Palo Alto Networks Prisma SASE Accenture

Palo Alto Networks Launches New Tool To Help Automate Vulnerability Remediation

December 12, 2022 Zachary Comeau Leave a Comment

Palo Alto Networks is releasing Xpanse Active Attack Surface Management, a new tool built into the cybersecurity solution provider’s Cortex platform designed to help security teams actively find and fix known and unknown internet-connected risks. According to the Santa Clara, Calif.-based company, Xpanse Active Attack Surface management (Xpanse Active ASM) is designed with automation to […]

Read More

Microsoft Defender for APIs

Microsoft Defender for Vulnerability Management Now Offers Hardware, Firmware Assessments

December 2, 2022 Zachary Comeau Leave a Comment

Microsoft is launching the public preview for hardware and firmware assessments in Microsoft Defender Vulnerability Management, a new feature designed to give organizations full visibility into device manufacturer, processor and BIOS information. According to the Redmon, Wash. IT giant, firmware and hardware attacks are on the rise as hackers target hardware components to gain high […]

Read More

Log4Shell, Log4j, CVE-2021-44228

Three-quarters of Organizations are Still Vulnerable to Log4Shell

November 30, 2022 Zachary Comeau Leave a Comment

New research from vulnerability management software company Tenable finds that nearly three-quarters of organizations remain vulnerable to the Log4Shell vulnerability as of Oct. 1, nearly a full calendar year after the critical bug in the widely used Java logging tool Log4j was discovered. When Log4Shell was discovered in December 2021, Tenable found that one in […]

Read More

Fortinet Vulnerability, Fortigate

Tenable Launches Initiative to Help Organizations Remediate Vulnerabilities Faster

October 12, 2022 Zachary Comeau Leave a Comment

Vulnerability management company Tenable is creating a new research alliance program designed to share information prior to vulnerability disclosures and reduce the window of opportunity threat actors have to exploit newly disclosed vulnerabilities. According to the company, the Tenable Research Alliance Program allows security teams and system administrators to address attack paths and mitigate vulnerabilities […]

Read More

June 2023 Patch Tuesday. Patch Tuesday,

October 2022 Patch Tuesday: 13 Critical, One Actively Exploited

October 11, 2022 Zachary Comeau Leave a Comment

Microsoft has released fixes for 85 vulnerabilities as part of the October 2022 Patch Tuesday, including 15 that are rated critical and one listed as being exploited in the wild. However, the company still has yet to release patches for the two Exchange vulnerabilities that were reported as being actively exploited last week. Admins should […]

Read More

Tenable One

Tenable Releases Exposure Management Platform Tenable One for Unified Visibility

October 4, 2022 Zachary Comeau Leave a Comment

Vulnerability management software provider Tenable is releasing Tenable One, a new exposure management platform designed to unify discovery and visibility into all assets and asses their exposures and vulnerabilities across the entire attack surface for proactive risk management. The company says Tenable One combines vulnerability management, external attack surface management, identity management and cloud security […]

Read More

Microsoft Security RSA Conference

Two New Exchange Vulnerabilities Are Being Actively Exploited

October 3, 2022 Zachary Comeau Leave a Comment

Microsoft is warning organizations to mitigate two zero-day vulnerabilities in Exchange Server that are being actively exploited in the wild and can result in hands-on-keyboard access and Active Directory reconnaissance and data exfiltration. The vulnerabilities are CVE-2022-41040–a server-side request forgery (SSRF) vulnerability–and CVE-2022-41082–a remote code execution bug via Exchange PowerShell. According to Microsoft, CVE-2022-41040 can enable […]

Read More

This Week in IT, IT News

This Week in IT: DevSecOps, OT Security, SMB Tech Spending, Gartner’s IT Conference

September 22, 2022 Zachary Comeau Leave a Comment

Editor’s note: There is a lot going on in the world of IT, from emerging technologies to digital transformation and new cybersecurity threats. However, we can’t possibly cover it all, so we’ll bring you This Week in IT, a curated summary of IT and enterprise technology stories each week. The difficulties of vulnerability management in […]

Read More

Microsoft Apple macOS bug

Patch Now: Apple Releases Fixes for Two Actively Exploited Zero-Day Bugs

August 19, 2022 Zachary Comeau Leave a Comment

Apple has discovered two actively exploited zero-day vulnerabilities that could give attackers full access to a wide range of Apple devices, prompting the company to release security updates and urging users to apply the fixes immediately. According to Apple, the two zero-day out-of-bounds write bugs affect iPhone 6s and later, all iPad Pro models, iPad […]

Read More

  • « Go to Previous Page
  • Page 1
  • Page 2
  • Page 3
  • Go to Next Page »

Primary Sidebar

Would you like your latest project featured on TechDecisions as Project of the Week?

Apply Today!

More from Our Sister Publications

Get the latest news about AV integrators and Security installers from our sister publications:

Commercial Integrator Security Sales

AV-iQ

Footer

TechDecisions

  • Home
  • Welcome to TechDecisions
  • Contact Us
  • Comment Guidelines
  • RSS Feeds
  • Twitter
  • Facebook
  • Linkedin

Free Technology Guides

FREE Downloadable resources from TechDecisions provide timely insight into the issues that IT, A/V, and Security end-users, managers, and decision makers are facing in commercial, corporate, education, institutional, and other vertical markets

View all Guides
TD Project of the Week

Get your latest project featured on TechDecisions Project of the Week. Submit your work once and it will be eligible for all upcoming weeks.

Enter Today!
Emerald Logo
ABOUTCAREERSAUTHORIZED SERVICE PROVIDERSYour Privacy ChoicesTERMS OF USEPRIVACY POLICY

© 2025 Emerald X, LLC. All rights reserved.