H-ISAC: White Reports

Recent reporting indicates that threat actors are exploiting patched vulnerabilities in SimpleHelp Remote Monitoring and Management (RMM) software to gain unauthorized access to private networks.
Health Sector Cybersecurity Coordination Center (HC3) has shared a report regarding vulnerabilities impacting information systems relevant to the health sector for December 2024.
Ivanti released a security advisory regarding two vulnerabilities, CVE-2025-0282 and CVE-2025-0283, affecting its Connect Secure, Policy Secure, and Neurons for ZTA Gateways.
H-ISAC TLP Green Daily Cyber Headlines for January 3, 2025.
Strategic Intelligence: Health-ISAC TLP Green Biweekly Geopolitical Watchlist update.
On December 18, 2024, FortiGuard Labs published a security advisory disclosing a vulnerability in FortiWLM, a wireless device management application by Fortinet.
On December 27, 2024, Palo Alto Networks disclosed a high-severity vulnerability, tracked as CVE-2024-3393, in its PAN-OS software that affects the DNS Security feature. According to the advisory, the flaw has already been exploited.
On December 2, 2024, Cisco updated its security advisory concerning a decade-old flaw tracked as CVE-2014-2120 to warn about its exploitation.
On Thursday, November 7, 2024, Palo Alto Networks updated the security advisory for the critical vulnerability, CVE-2024-5910, to reflect the reported exploitation of the flaw.