Access publications and alerts / Alerts and advisories / Archived alerts and advisories / Widespread exposure of vulnerability in cPanel Widespread exposure of vulnerability in cPanel 09 May 2023 Alert Alert on cPanel vulnerability: ASD’s ACSC urges Australian organisations to apply available patches and remind staff not to click suspicious links.
Access publications and alerts / Alerts and advisories / Archived alerts and advisories / Supply chain compromise of 3CX DesktopApp Supply chain compromise of 3CX DesktopApp 31 Mar 2023 Alert Alert on leaked Fortinet SSL VPN credentials and IPs. Review patching, check exposed devices, and reset passwords for affected users.
Access publications and alerts / Alerts and advisories / Archived alerts and advisories / High Severity Vulnerability present in Microsoft Outlook for Windows High Severity Vulnerability present in Microsoft Outlook for Windows 29 Mar 2023 Alert Alert on a high-severity vulnerability in Microsoft Outlook for Windows that could enable remote code execution; apply security updates promptly.
Access publications and alerts / Alerts and advisories / Archived alerts and advisories / 2023-01: ASD's ACSC Ransomware Profile - Royal 2023-01: ASD's ACSC Ransomware Profile - Royal 24 Jan 2023 Advisory Advisory on Royal ransomware, outlining global targeting, key attack methods, data encryption, and extortion risks to organisations.
Access publications and alerts / Alerts and advisories / Archived alerts and advisories / Gootkit Loader continues to be used on multiple Australian networks Gootkit Loader continues to be used on multiple Australian networks 23 Dec 2022 Advisory Alert on Gootkit Loader malware activity targeting Australian networks; strengthen defences and monitor for signs of compromise.
Access publications and alerts / Alerts and advisories / Archived alerts and advisories / Critical vulnerabilities in Citrix Gateway and Application Delivery Controller (ADC) devices Critical vulnerabilities in Citrix Gateway and Application Delivery Controller (ADC) devices 14 Dec 2022 Alert Alert on a critical Citrix Gateway and ADC vulnerability (CVE-2022-27518).