FortiClient Remote Access vulnerability

We’re aware of a Cleartext Storage of Sensitive Information vulnerability impacting FortiClient, a remote access solution used by some schools. The vulnerability impacts users on Windows and Linux devices that have updated FortiClient to version 7 (full list of...

Phishing email scam circulating in some schools

We’re aware of a phishing scam circulating via email in some schools. The phishing email is crafted to appear legitimate, being sent from legitimate email addresses of schools and other New Zealand organisations, and including school logos and email signatures. The...

Advisory: XZ Utils vulnerability (CVE-2024-3094)

We’re aware of a critical vulnerability impacting XZ Utils, where malicious code was inserted into a library that could allow for remote code execution via Secure Shell Protocol (SSH).  XZ is a general-purpose data compression format present in nearly every Linux...