Skip to main content

Tag: vpn security

4 articles

Technicians work on networking equipment in a well-lit network operations center with rows of servers and IT infrastructure.

NCSC Urges Vendors to Embed Forensic Observability in Network Devices

When cyber incidents strike, organizations need a reliable way to piece together what happened and determine if a device is still trustworthy - that's where forensic observability comes in. The NCSC is urging vendors to build this capability into network devices, like firewalls and VPN gateways, to help defenders quickly investigate and respond to threats.

Analyst 207
Outdated VPN server equipment sits in a government office with ambient daylight.

Wyden Urges Feds to Phase Out Insecure Public-Facing VPNs

Senator Ron Wyden is calling on federal agencies to ditch outdated, vulnerable VPNs and upgrade to modern, secure remote-access technology to protect against devastating cyberattacks. In a letter to top officials, he urged a coordinated effort to safeguard government employees' remote access and prevent further breaches.

Analyst 207
Smartphone on a neutral surface with Google Play Store open, surrounded by app icons and a blurred cityscape or home office…

Free Android VPN Apps Expose User Traffic, Fail Basic Security Tests

Over 2.4 billion installs of free Android VPN apps have potentially exposed users to security risks, according to a recent study that revealed these apps fail basic security tests. A new testing framework called MVPNalyzer was used to evaluate the apps and uncovered alarming vulnerabilities, including the serious flaw of tunnel hijacking.

Analyst 207
Blurred network equipment and generic devices in a brightly-lit tech infrastructure setting.

CISA Warns of Widespread FortiBleed Attacks on 86,644 Devices

The US Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning after a massive cyberattack, dubbed FortiBleed, compromised a staggering 86,644 FortiGate devices, putting countless networks at risk. Take immediate action to protect yourself: shut down active SSL VPN and admin sessions, reset passwords, and enforce strong password policies.

Analyst 207