Cyber risk and advisory programs that identify security gaps and build strategies to address them.
MDR that provides improved detection, 24/7 threat hunting, end-to-end coverage and most of all, complete Response.
Our team delivers the fastest response time in the industry. Threat suppression within just 4 hours of being engaged.
Be protected by the best from Day 1.
24/7 Threat Investigation and Response.
Expert hunting, research and content.
Defend brute force attacks, active intrusions and unauthorized scans.
Safeguard endpoints 24/7 by isolating and remediating threats to prevent lateral spread.
Investigation and enhanced threat detection across multi-cloud or hybrid environments.
Configuration escalations, policy and posture management.
Detects malicious insider behavior leveraging Machine Learning models.
Customer testimonials and case studies.
Stories on cyberattacks, customers, employees, and more.
Cyber incident, analyst, and thought leadership reports.
Demonstrations, seminars and presentations on cybersecurity topics.
Information and solution briefs for our services.
MITRE ATT&CK Framework, Cybersecurity Assessment, SOC Calculator & more
eSentire will be a Sponsor at the NetDeligence Cyber Risk Summit in Fort…
eSentire will be a Sponsor at the NetDeligence Cyber Risk Summit in…
eSentire is an exhibitor at RSAC 2023. Visit us at Booth 0535.
THE THREAT
Update 2020/04/16: On April 14, 2020, Microsoft released security patches for both of the vulnerabilities mentioned in this advisory (CVE-2020-0938, CVE-2020-1020). After performing a business impact review, organizations should apply the latest Microsoft security patches to avoid impact.
Microsoft has announced two un-patched vulnerabilities affecting all supported versions of Windows and Windows Servers [1]. Limited attacks exploiting the vulnerabilities have been identified in the wild. If exploited, a remote and unauthenticated attacker could execute code on vulnerable systems. Successful exploitation could lead to the full compromise of targeted devices. Microsoft is actively developing a security patch for these vulnerabilities; once released, applying the patches should be high priority for organizations.
What we’re doing about it
What you should do about it
Additional information
The vulnerabilities reside in the Windows Adobe Type Manager Library and affects all supported Windows versions including:
In order to exploit this vulnerability, threat actors would need to convince the victim to view a maliciously crafted document. Attacks employing this vulnerability are likely email based, increasing the importance of user awareness and email security.
Attacks exploiting this vulnerability in the wild have been limited and targeted in nature; at the time of writing, Windows 10 machines have not been a part of this activity [1].
Official CVE numbers for these vulnerabilities have not been made public at this time.
References:
[1] https://portal.msrc.microsoft.com/en-us/security-guidance/advisory/adv200006
[2] https://digitalguardian.com/blog/what-email-security-data-protection-101