/// All advisories are PGP-signed
Advisories
Published when something needs action from member institutions. Verify the signature against our key before acting on anything that claims to come from us.
Active phishing campaign targeting garnet.edu.gh webmail accounts
GARNET CSIRT is tracking a credential-harvesting campaign that impersonates the IT service desk and directs users to a fake webmail login page. Do not enter your credentials; report suspicious messages.
OpenSSH "regreSSHion" remote code execution (CVE-2024-6387)
A signal-handler race condition in OpenSSH's server (sshd) can allow unauthenticated remote code execution as root on glibc-based Linux systems. Patch or mitigate all internet-facing SSH servers.
Recommended: enable multi-factor authentication on GARNET accounts
As phishing activity against the community increases, GARNET CSIRT strongly recommends enabling multi-factor authentication (MFA) on all accounts that support it. This advisory explains why and how.