Cybersecurity Alert: Exploited Vulnerabilities in AMI BMC and FortiOS Resurface!

CISA warns that the AMI BMC vulnerability, CVE-2024-54085, is causing a cyber stir. With a perfect 10/10 CVSS score, it’s the equivalent of a vulnerability rockstar. Hackers can bypass authentication, take control, and even damage motherboards. Time to patch up before your tech turns into a rebellious teenager!

Pro Dashboard

Hot Take:

In the eternal battle of cybersecurity, even old bugs are rising from their digital graves to haunt us! Who knew that a FortiOS bug patched over half a decade ago would stage a comeback like a washed-up rock star? It’s a stark reminder that in the realm of cybersecurity, the past is never truly in the past. Dust off those patching skills, folks, because it looks like we’re in for a blast from the past!

Key Points:

  • Critical AMI BMC vulnerability (CVE-2024-54085) and an old FortiOS bug are being exploited in the wild.
  • AMI BMC flaw impacts HPE, Asus, Asrock, and Lenovo, allowing attackers to control machines and potentially damage motherboards.
  • FortiOS bug involves a hardcoded cryptographic key, enabling attackers to decipher sensitive data.
  • CISA added these vulnerabilities to the Known Exploited Vulnerabilities catalog.
  • Agencies have a deadline to patch affected systems, with no public attack reports yet for the AMI BMC flaw.

Membership Required

 You must be a member to access this content.

View Membership Levels
Already a member? Log in here
The Nimble Nerd
Confessional Booth of Our Digital Sins

Okay, deep breath, let's get this over with. In the grand act of digital self-sabotage, we've littered this site with cookies. Yep, we did that. Why? So your highness can have a 'premium' experience or whatever. These traitorous cookies hide in your browser, eagerly waiting to welcome you back like a guilty dog that's just chewed your favorite shoe. And, if that's not enough, they also tattle on which parts of our sad little corner of the web you obsess over. Feels dirty, doesn't it?