Cybersecurity researchers are being warned of a fake PoC exploit for CVE-2024-49113 called ‘LDAPNightmare’, which targets Windows Lightweight Directory Access Protocol (LDAP) vulnerabilities in order to exfiltrate computer and network data. Researchers are advised to verify repository authenticity, prioritize official sources and monitor for suspicious activity to stay safe.

The NCSC wants developers to get serious on software security
The NCSC’s new Software Security Code of Practice has been praised by cyber professionals as a significant advancement in enhancing software supply chain security.