Skip to main content

Alerts and Advisories

Local Bank Phone Scam

10 Nov 2022

BruCERT has received several reports of a phone scam impersonating a local bank in an attempt to obtain sensitive information such as name, identity card number, credit card details and other personally identifiable information (PII).

See more

High Severity OpenSSL Vulnerabilities

3 Nov 2022

Two new buffer overflow vulnerabilities with the formal assignments of CVE-2022-3602 (“X.509 Email Address 4-byte Buffer Overflow”) and CVE-2022-3786 (“X.509 Email Address Variable Length Buffer Overflow”) has just been disclosed in Open SSL version 3.0.0 to 3.0.6.

See more

Group Privacy Settings for WhatsApp and Telegram

13 Oct 2022

Most instant messaging apps including WhatsApp and Telegram will allow anyone to message or add users to a group chat even if they are not in the user’s contact list.

See more

Authentication Bypass Vulnerability in Fortinet Products (CVE-2022-40684)

12 Oct 2022

Fortinet has released a critical warning of a high severity vulnerability, CVE-2022-40684, which is affecting FortiOS, FortiProxy and FortiSwitchManager.

See more

Zero Day Exchange Vulnerabilities CVE-2022-41040 and CVE-2022-41082

7 Oct 2022

Microsoft security researchers announced two new zero-day vulnerabilities, CVE-2022-41040 and CVE-2022-41082 affecting Microsoft Exchange Server.

See more

Hacked Business Instagram Account

6 Oct 2022

BruCERT has received an alarming number of reports from users whose Instagram account has been taken over, with a demand for ransom to be paid in order to regain access to their account.

See more