🚨 CRITICAL: CVE-2026-2409 in Delinea Cloud Suite (<25.2 HF1) enables remote SQL Injection by low-priv users — risking sensitive data. Patch urgently, validate inputs, and monitor DB activity! https://radar.offseq.com/threat/cve-2026-2409-cwe-89-improper-neutralization-of-sp-62e3fd17 #OffSeq #SQLInjection #Delinea #Vuln
Secret Server Cloud: Remote Password Changing (RPC) and Heartbeat failures

Delinea's Status Page - Secret Server Cloud: Remote Password Changing (RPC) and Heartbeat failures.

As the saying goes, one should never work on an empty stomach! Combining technologies along with food and summer vibe! Delinea had the pleasure of working with Ingram Micro Sp. z o.o. (Polska) and Forcepoint to host an amazing event "Jak ochronić zapomniane dane i zapomniane tożsamości, How to protect forgotten data and forgotten identities."

Identity Protection #CIEM & #ITDR is at the forefront of everything nowadays! And along with data security, Delinea and Forcepoint are helping customers move security in the right direction.

Thank you!!
Pawel (Paul) Franka
Radoslaw Rafinski
Piotr Jasinski
Maciej Pawelczyk
#delinea #pam #events

It was a privilege to showcase our latest advancements in protecting passwords and interact with intelligent individuals committed to enhancing digital security. A big shoutout to Softinet for organizing such an outstanding event. The enriching conversations, innovative ideas, and valuable networking opportunities made this conference exceptional. To all the participants, speakers, and collaborators we engaged with - your dedication and knowledge are truly motivating. Here's to a future with more robust and resilient password security! Special thanks to Paweł Płachecki for the engaging discussion and co-presentation! #SecurityConference2024 #delinea #cybersecurity #PasswordSecurity #innovation #networking

Security Week reports that the Delinea security incident from Friday 12 April 2024 stemmed from a failed responsible disclosure attempt. Technical details of an authentication bypass vulnerability in the Secret Server SOAP API along with proof-of-concept (PoC) code were made public that day. The vulnerability has not been assigned a CVE ID. 🔗 https://www.securityweek.com/delinea-scrambles-to-patch-critical-flaw-after-failed-responsible-disclosure-attempt/

#Delinea #vulnerability #SecretServer

Delinea Scrambles to Patch Critical Flaw After Failed Responsible Disclosure Attempt

Delinea rushed to patch a critical authentication bypass vulnerability after it apparently ignored the researcher who found the flaw.

SecurityWeek

Customers of Delinea's Secret Server, a privileged access management (PAM) product, are urged to immediately apply the latest patches after a critical vulnerability was discovered. This vulnerability could allow attackers to gain admin-level access, potentially compromising sensitive information of an organization's top-tier staff. The vulnerability was found in both on-premises and cloud deployments of Secret Server. Researcher Johnny Yu (@straight_blast ) discovered this issue and attempted to disclose it to Delinea, but his efforts were unsuccessful. Delinea acknowledged the vulnerability on April 13 and released a fix in version 11.7.000001. The company also stated that there's no evidence the vulnerability was exploited before the patch was released, ensuring customer data safety. The patch release followed a seven-hour outage on April 12, which Delinea attributed to a security incident. The company did not link the disclosed vulnerability to the security incident but did mention that SOAP (Simple Object Access Protocol) endpoints were limited for Secret Server Cloud customers.

https://trust.delinea.com/?tcuUid=17aaf4ef-ada9-46d5-bf97-abd3b07daae3

https://docs.delinea.com/online-help/secret-server/release-notes/ss-rn-11-7-000001.htm

#cybersecurity #delinea #secretserver #vulnerability #patch #release

Morning peeps! Just got some free time on my hands! Is anyone familiar with #Delinea when it comes to #Cybersecurity and their privilege access management options?
Former Bugcrowd, Cylance, Optiv, RSA Leader Focused on Expanding Delinea in Europe and Asia https://www.healthcareinfosecurity.com/delinea-snags-david-castignola-as-cro-to-push-beyond-banking-a-21020 Privileged access management vendor Delinea has hired l David Castignola as chief revenue officer. Michael Novinson #delinea #cybersecurity
Delinea Snags David Castignola as CRO to Push Beyond Banking

Privileged access management vendor Delinea has hired longtime RSA sales leader David Castignola to expand beyond North America as well as in nonregulated

By way of #introduction...

I'm a software engineer living in the #Denver area. I WFH with #Delinea as a team lead, building our #SaaS offerings using #dotnet, #Kubernetes, #Azure and many others.

Father of five, married to an amazing writer (I hope she joins soon!)

I mess around making #music (drums & vocals mostly). I love #hiking, #camping, & #books.

I love tinkering with #software of all kinds, such as this self-hosted #Mastodon server.

I left the 🐦 years ago; time to give this a try.

👋