As the saying goes, one should never work on an empty stomach! Combining technologies along with food and summer vibe! Delinea had the pleasure of working with Ingram Micro Sp. z o.o. (Polska) and Forcepoint to host an amazing event "Jak ochronić zapomniane dane i zapomniane tożsamości, How to protect forgotten data and forgotten identities."
Identity Protection #CIEM & #ITDR is at the forefront of everything nowadays! And along with data security, Delinea and Forcepoint are helping customers move security in the right direction.
Thank you!!
Pawel (Paul) Franka
Radoslaw Rafinski
Piotr Jasinski
Maciej Pawelczyk
#delinea #pam #events
Security Week reports that the Delinea security incident from Friday 12 April 2024 stemmed from a failed responsible disclosure attempt. Technical details of an authentication bypass vulnerability in the Secret Server SOAP API along with proof-of-concept (PoC) code were made public that day. The vulnerability has not been assigned a CVE ID. 🔗 https://www.securityweek.com/delinea-scrambles-to-patch-critical-flaw-after-failed-responsible-disclosure-attempt/
Customers of Delinea's Secret Server, a privileged access management (PAM) product, are urged to immediately apply the latest patches after a critical vulnerability was discovered. This vulnerability could allow attackers to gain admin-level access, potentially compromising sensitive information of an organization's top-tier staff. The vulnerability was found in both on-premises and cloud deployments of Secret Server. Researcher Johnny Yu (@straight_blast ) discovered this issue and attempted to disclose it to Delinea, but his efforts were unsuccessful. Delinea acknowledged the vulnerability on April 13 and released a fix in version 11.7.000001. The company also stated that there's no evidence the vulnerability was exploited before the patch was released, ensuring customer data safety. The patch release followed a seven-hour outage on April 12, which Delinea attributed to a security incident. The company did not link the disclosed vulnerability to the security incident but did mention that SOAP (Simple Object Access Protocol) endpoints were limited for Secret Server Cloud customers.
https://trust.delinea.com/?tcuUid=17aaf4ef-ada9-46d5-bf97-abd3b07daae3
https://docs.delinea.com/online-help/secret-server/release-notes/ss-rn-11-7-000001.htm
#cybersecurity #delinea #secretserver #vulnerability #patch #release
By way of #introduction...
I'm a software engineer living in the #Denver area. I WFH with #Delinea as a team lead, building our #SaaS offerings using #dotnet, #Kubernetes, #Azure and many others.
Father of five, married to an amazing writer (I hope she joins soon!)
I mess around making #music (drums & vocals mostly). I love #hiking, #camping, & #books.
I love tinkering with #software of all kinds, such as this self-hosted #Mastodon server.
I left the 🐦 years ago; time to give this a try.
👋