Cyber Security

Articles on SystemTek’s website that relate to cyber security.

NewsCyber Security

UK law firm fined £60,000 following cyber attack

In June 2022, Merseyside-based DPP Law Ltd (DPP) suffered a cyber attack which affected access to the firm’s IT systems for over a week. A third-party consulting firm established that a brute force attempt gained access to an administrator account that was used to access a legacy case management system.

Read More
NewsSecurity Vulnerabilities

SonicWALL Connect Tunnel Link Following Denial-of-Service Vulnerability (CVE-2025-32817)

CVE-2025-32817 – This vulnerability allows local attackers to create a denial-of-service condition on affected installations of SonicWALL Connect Tunnel.

Read More
Tech TipsCyber SecurityInternet

Uncovering Your Business’s Hidden Cybersecurity Vulnerabilities

By now, most organizations have a pretty good understanding of the importance of cybersecurity. Each coming year  introduces a completely new list of threats to look out for and updated strategies on how to avoid them, it is constantly evolving.

Read More
NewsSecurity Vulnerabilities

Cisco Webex App Client-Side Remote Code Execution Vulnerability (CVE-2025-20236)

A vulnerability in the custom URL parser of Cisco Webex App could allow an unauthenticated, remote attacker to persuade a user to download arbitrary files, which could allow the attacker to execute arbitrary commands on the host of the targeted user.

Read More
NewsSecurity Vulnerabilities

SonicWall Authenticated SMA100 Arbitrary Command Injection Vulnerability Is Been Exploited (CVE-2021-20035)

CVE number – CVE-2021-20035 Improper neutralization of special elements in the SMA100 management interface allows a remote authenticated attacker to

Read More
NewsSecurity Vulnerabilities

Microsoft Windows NTLM Hash Disclosure Spoofing Vulnerability (CVE-2025-24054)

CVE number = CVE-2025-24054 This is a spoofing vulnerability involving the Windows New Technology LAN Manager (NTLM) hash, which Microsoft

Read More
NewsCyber Security

CISA Extends Funding to Support MITRE’s Critical CVE Program

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has announced the continuation of government funding for the Common Vulnerabilities and Exposures (CVE) program, securing its ongoing operations.

Read More
NewsCyber Security

MITRE Issues Warning: CVE Program Funding Runs Out Today

MITRE Vice President Yosry Barsoum has issued a warning that U.S. government funding for the Common Vulnerabilities and Exposures (CVE) and Common Weakness Enumeration (CWE) programs is set to expire today—an event that could significantly disrupt the global cybersecurity landscape.

Read More
NewsSecurity Vulnerabilities

Jenkins Host key reuse in SSH build agent Docker images (CVE-2025-32754 and CVE-2025-32755)

CVE numbers CVE-2025-32754 and CVE-2025-32755. In jenkins/ssh-slave Docker images based on Debian, SSH host keys are generated on image creation

Read More
Tech TipsCyber SecurityInternet

Warning issued over MOONSHINE and BADBAZAAR malware

MOONSHINE and BADBAZAAR are examples of apps that embed harmful functionalities within seemingly legitimate software—a method known as trojanising.

Read More