Security updates
Stay up to date with the latest security announcements.
General
- Oracle zero-day in its E-Business Suite (EBS) exploited by Clop Group
- Actively exploited: Cisco ASA and FTD hit via two zero-day flaws
- October 2025 security update: September’s biggest ransomware, AI, and vulnerability exploits
- September 2025 security update: Data breaches spread while AI battles AI
- August 2025 security update: AI cybercrime and regulation are the new norm
- 2025-08-12: Newly-discovered critical CodeIgniter4 flaw requires immediate action
- 2025-07-21: Critical SharePoint vulnerability - immediate action required
- July 2025 security update: Nation-state attacks and cyber security as integral to defense are the new norm
- June 2025 security update: AI & big industry moves take on cybercrime
- May 2025 security update: New flaws & big industry moves
- April 2025 security update: Geopolitics and exploited vulnerabilities fill headlines
- March 2025 security update: Cyber warfare heats up across Europe
- Security newsletter October 2024
- Critical Vulnerability in Palo Alto: OS Command Injection (CVE-2024-3400)
- Critical Vulnerability in: Google Chromes Use After Free component (CVE-2024-4671)
- Critical vulnerabilities in ConnectWise ScreenConnect CVE-2024-1708 & CVE-2024-1709
- How does Holm Security support detection for GoAnywhere MFT (CVE-2024-0204)?
- How does Holm Security support detection for Ivanti Connect Secure (CVE-2023-46805, CVE-2024-21887)?
- How does Holm Security support detection for Cisco's IOS XE software Privilege Escalation Vulnerability (CVE-2023-20198)?
- How does Holm Security support detection of the Log4j (Log4Shell) vulnerability?
- How does Holm Security support detection of the Spring4shell vulnerability?
- How do I scan for Zerologon vulnerability?
- How do I detect Microsoft Outlook 2013/2016 Privilege Escalation Vulnerability?