Tyler Reguly, Associate Director of Security R&D at Fortra, was featured in a recent CSO article examining the exploitation of a two-year-old Oracle WebLogic Server vulnerability. The piece explains why CVE-2024-21182 was recently added to CISA’s Known Exploited Vulnerabilities catalog and what that signals about real-world attacker activity. Tyler shared insight on why older vulnerabilities often resurface and how patching gaps continue to create opportunities for attackers.
Excerpt: “To make the CISA KEV means that we’re seeing active exploitations,” Reguly said. “Given that this CVE was patched by Oracle in the July 2024 Critical Patch Update, I would expect most admins to have patched this by now.”
Read the full article in CSO.