Articles tagged "HP"

Found 5 articles

Everest Ransomware Claims 90GB Data Theft Involving Legacy Polycom Systems

Hackread – Cybersecurity News, Data Breaches, AI and More

Actively Exploited

Everest ransomware has claimed responsibility for a data breach involving legacy Polycom systems, which are now part of HP Inc. The attackers allege that they have stolen 90GB of internal data from these systems. This incident raises concerns about the security of older technology that may not receive regular updates or patches, leaving them vulnerable to exploitation. Organizations using such legacy systems should assess their security measures and consider upgrading to more secure solutions. The breach not only threatens sensitive internal information but also highlights the risks associated with maintaining outdated technology in a rapidly evolving cybersecurity landscape.

Impact: Legacy Polycom systems, HP Inc.
Remediation: Organizations should assess their security measures for legacy systems and consider upgrading to more secure solutions.
Read Original
Everest Ransomware Claims 90GB Data Theft From HP Inc’s Polycom Systems

Hackread – Cybersecurity News, Data Breaches, AI, and More

Everest ransomware has claimed responsibility for a data breach affecting legacy Polycom systems owned by HP Inc. The attackers allege that they have stolen around 90GB of internal data. HP has yet to confirm the breach or provide details about the incident. This situation raises concerns about the security of legacy systems, which often have vulnerabilities that can be exploited by cybercriminals. As organizations increasingly rely on such systems, the potential for significant data theft becomes a pressing issue that companies need to address.

Impact: Polycom systems under HP Inc.
Remediation: N/A
Read Original

Check Point Research has reported a significant increase in attacks exploiting a vulnerability in HPE OneView, a management tool for Hewlett Packard Enterprise systems. The Linux-based RondoDox botnet is behind this wave of attacks, which raises concerns for organizations using HPE's software. The vulnerability allows attackers to take control of affected systems, potentially leading to data breaches or service disruptions. Companies using HPE OneView should take immediate action to secure their systems. The situation emphasizes the ongoing risk that vulnerabilities pose to enterprise environments and the need for timely patching and vigilance against emerging threats.

Impact: HPE OneView
Remediation: Users should apply the latest patches from HPE for OneView and ensure all systems are updated to the most secure versions.
Read Original

Hewlett Packard Enterprise (HPE) has addressed a serious security vulnerability in its OneView software that allows unauthenticated remote code execution. This flaw, identified as CVE-2025-37164, has been rated with a CVSS score of 10.0, indicating its critical nature. HPE OneView, used for managing IT infrastructure, could potentially allow attackers to take control of affected systems without needing to authenticate. This vulnerability can impact organizations relying on this software for IT operations, making it crucial for users to apply the necessary updates to safeguard their environments. HPE's prompt action to patch this flaw is vital in preventing potential exploitation by malicious actors.

Impact: HPE OneView software
Remediation: Users should update to the latest version of HPE OneView as soon as possible to mitigate the risk posed by this vulnerability. Specific patch numbers or versions were not mentioned, but applying any available updates from HPE is recommended.
Read Original

Hewlett Packard Enterprise (HPE) has released a critical patch for a severe vulnerability in its HPE OneView software that allows attackers to execute arbitrary code remotely. This flaw poses a significant risk as it could enable cybercriminals to take control of affected systems without any user intervention. Organizations using HPE OneView are urged to apply the patch immediately to protect their infrastructure from potential exploitation. The impact of this vulnerability could be extensive, affecting businesses that rely on this software for managing their IT environments. Users should ensure they are running the latest version to mitigate this serious threat.

Impact: HPE OneView software
Remediation: Users should apply the latest patch provided by HPE to address the vulnerability.
Read Original