Search Results

The default setting for search results displays All Content. If you prefer to see recent content only, please adjust the date filter.

877 Results Found

Public

H-ISAC TLP White Threat Bulletin Ivanti Connect Secure Vulnerability Actively Exploited By China-Nexus Group

On April 3, 2025, Ivanti released a security advisory regarding the active exploitation of a critical security flaw affecting vulnerable Ivanti Connect Secure, Pulse Connect Secure, Policy Secure, and ZTA gateway product.
Public

H-ISAC TLP White Critical CrushFTP Flaw Actively Exploited, PoC Exploit Code Available

A critical vulnerability, tracked as CVE-2025-2825, affecting CrushFTP is actively being exploited following the release of proof-of-concept exploit code.

H-ISAC TLP White Threat Bulletin: Critical Authorization Bypass Vulnerability Announced For Next.js Middleware (CVE-2025-29927)

On March 23, 2025, a critical vulnerability in Next.js middleware was disclosed and tracked as CVE-2025-29927.

H-ISAC TLP White Threat Bulletin Palo Alto PAN-OS Firewall Flaw CVE-2025-0111 Used in Exploit Chaining Attacks

Palo Alto recently disclosed that PAN-OS firewalls vulnerable to CVE-2025-0111 are being used in exploit chain attacks.
Member

H-ISAC TLP Green Announcements - March 2025: Health-ISAC Cyber Threat Level Maintained at Yellow (Elevated)

On March 20, 2025, the Health-ISAC Threat Intelligence Committee (TIC) evaluated the current Cyber Threat Level and collectively decided to maintain the Cyber Threat Level at Yellow (Elevated).
Public

H-ISAC TLP White: Hacking Healthcare - Weekly Blog - March 14, 2025

This week, Health-ISAC®'s Hacking Healthcare® examines a new report from the European Union Agency for Cybersecurity (ENISA) to assess what it says about the cybersecurity maturity and criticality of various sectors in the EU.

H-ISAC TLP White Vulnerability Bulletin Elastic Patches Critical Kibana Flaw CVE-2025-25015

On March 5, 2025, Elastic released a security update to fix a critical vulnerability in Kibana, data visualization dashboard software.
Public

TLP White 2024 Health-ISAC Discussion Based Exercise Series After-Action Report

From March to November 2024, Health-ISAC held ten workshops as part of the Discussion Based Exercise Series, involving over 100 member organizations, potential members, and strategic partners.
Public

H-ISAC TLP White Threat Bulletin Microsoft Releases New Report on Silk Typhoon’s Evolving TTPs

On March 5, 2025, Microsoft released a report identifying the Silk Typhoon’s evolving tactics.
Member

H-ISAC TLP White Hacking Healthcare - Weekly Blog – March 4, 2025

This week, Health-ISAC®'s Hacking Healthcare® examines a new policy shift that will affect how the public is