CISA Urges Federal Agencies to Patch Citrix RCE Vulnerability Within Seven Days

CISA Urges Federal Agencies to Patch Citrix RCE Vulnerability Within Seven Days

The Cybersecurity and Infrastructure Security Agency (CISA) has directed US federal agencies to defend their systems against three zero-day vulnerabilities in Citrix NetScaler and Google Chrome. These vulnerabilities have been patched but are actively being exploited in attacks, making them high-risk for federal enterprises. Citrix has advised its customers to immediately patch their Internet-exposed NetScaler … Read more

ROSEN Urges Intel Corporation Investors to Seek Counsel Before Key Securities Deadline – INTC

ROSEN Urges Intel Corporation Investors to Seek Counsel Before Key Securities Deadline – INTC

Trusted investor advisor Rosen is advising Intel Corporation investors to seek counsel before an important deadline in a securities class lawsuit. The lead plaintiff deadline is July 2, 2024, for investors who purchased Intel securities between January 25, 2024, and April 25, 2024. Rosen Law Firm, a global investor rights law firm, is reminding investors … Read more

HHS-HC3 Urges Hospitals to Act Quickly to Safeguard Against ‘Citrix Bleed’ Vulnerability and Ransomware Threat | AHA News

HHS-HC3 Urges Hospitals to Act Quickly to Safeguard Against ‘Citrix Bleed’ Vulnerability and Ransomware Threat | AHA News

The Health Sector Cybersecurity Coordination Center of the Department of Health and Human Services is warning hospitals and other critical infrastructure about a serious ransomware threat known as the “Citrix Bleed” vulnerability. This vulnerability is being exploited by ransomware gangs like LockBit 3.0 to bypass password requirements and multi-factor authentication measures. It is crucial for … Read more

Bragar Eagel & Squire, P.C. Advises Investors of Class Action Lawsuits Against Intel, AXT, and Li Auto and Urges Investors to Reach Out to the Firm

Bragar Eagel & Squire, P.C. Advises Investors of Class Action Lawsuits Against Intel, AXT, and Li Auto and Urges Investors to Reach Out to the Firm

Bragar Eagel & Squire, PC, a prominent shareholder rights law firm, has filed class action lawsuits on behalf of shareholders of Intel Corporation (NASDAQ: INTC), AXT., Inc. (NASDAQ: AXTI), and Li Auto Inc. (NASDAQ: LI). The deadlines for shareholders to request to be lead plaintiff in these lawsuits are approaching. For Intel Corporation (NASDAQ: INTC), … Read more

CONTACT THE FIRM: The Schall Law Firm Urges Intel Corporation Investors with Losses to Take Action

CONTACT THE FIRM: The Schall Law Firm Urges Intel Corporation Investors with Losses to Take Action

The Schall Law Firm, a national shareholder rights litigation firm, is reminding investors of a class action lawsuit against Intel Corporation for violations of securities laws. Investors who purchased Intel’s securities between January 25, 2024, and April 25, 2024, are encouraged to contact the firm before July 2, 2024. The lawsuit alleges that Intel made … Read more

Bragar Eagel & Squire, P.C. Alerts Investors of Class Action Lawsuits Against Intel, AXT, and Li Auto and Urges Investors to Reach Out to the Firm

Bragar Eagel & Squire, P.C. Advises Investors of Class Action Lawsuits Against Intel, AXT, and Li Auto and Urges Investors to Reach Out to the Firm

Bragar Eagel & Squire, PC, a well-known shareholder rights law firm, has issued reminders to investors regarding class action lawsuits filed on behalf of shareholders of Intel Corporation, AXT, Inc., and Li Auto Inc. The deadlines for shareholders to request to be the lead plaintiff in each case are provided in the announcement. Regarding Intel … Read more

CISA Urges Immediate Action on Critical Citrix Vulnerability, Recommends Attention to Second Bug

This week, two bugs in Citrix technology have caught the attention of the Cybersecurity and Infrastructure Security Agency (CISA). One of the vulnerabilities, labeled CVE-2023-6548, must be patched by federal agencies by January 24, while the other bug, labeled CVE-2023-6549, must be fixed by February 7. This quick fix timeline is unusual for CISA, but … Read more

VMware Urges Immediate Patching for Critical Hypervisor Escape Vulnerabilities

VMware Urges Immediate Patching for Critical Hypervisor Escape Vulnerabilities

VMware, a leading innovator in enterprise software, has issued an urgent advisory for customers to patch critical vulnerabilities across its product suite, including ESXi, Workstation, Fusion, and Cloud Foundation. A constellation of four flaws, with two rated at a severe 9.3 out of 10, threatens the core security feature of VMware products, enabling attackers to … Read more

VMWare Urges Users to Uninstall EAP Immediately

VMWare Urges Users to Uninstall EAP Immediately

VMware has issued a no-patch advisory urging users to take swift action by removing the deprecated Enhanced Authentication Plug-in (EAP). EAP was deprecated nearly three years ago, in March 2021, with the rollout of vCenter Server 7.0 Update 2. However, the discovery of an arbitrary authentication relay flaw in EAP, identified as CVE-2024-22245 with a … Read more

VMware urges admins to remove deprecated, vulnerable auth plug-in

VMware urges admins to remove deprecated, vulnerable auth plug-in

VMware urged admins today to remove a discontinued authentication plugin exposed to authentication relay and session hijack attacks in Windows domain environments via two security vulnerabilities left unpatched. The vulnerable VMware Enhanced Authentication Plug-in (EAP) enables seamless login to vSphere’s management interfaces via integrated Windows Authentication and Windows-based smart card functionality on Windows client systems. VMware … Read more