July 13, 2024
Instantly rip out and substitute our safety {hardware} • Graham Cluley

The URL ought to have given away that issues have been critical.

https://www.barracuda.com/firm/authorized/esg-vulnerability

Filed under "Legal"
Barracuda Networks filed the safety advisory underneath “Authorized”

After which there was the very eager try to underline the agency’s dedication to securing your knowledge… they positively didn’t need you to overlook that.

Barracuda friendly

We’re dedicated to securing your knowledge

The massive pleasant letters jogged my memory – fairly aptly – of the well-known phrases “Don’t panic!” on the entrance of the “HitchHiker’s Information to the Galaxy”…

However if you happen to have been feeling a way of panic, I most likely couldn’t blame you, as a result of safety agency Barracuda Networks is warning individuals of a safety vulnerability in its Electronic mail Safety Gateway (ESG) equipment.

However greater than that, Barracuda is taking the weird step for a community safety vendor of telling its prospects to physically remove and decommission its hardware.

ACTION NOTICE: Impacted ESG home equipment have to be instantly changed no matter patch model stage. You probably have not changed your equipment after receiving discover in your UI, contact assist now ([email protected]).

Barracuda’s remediation advice presently is full substitute of the impacted ESG.

That’s proper. Barracuda just isn’t telling you to use a patch to the equipment that scans your incoming and outgoing electronic mail for malware. They need you to tear it out and substitute it as an alternative.

Signal as much as our free e-newsletter.
Safety information, recommendation, and suggestions.

Clearly hackers have managed to take advantage of safety vulnerabilities on the Barracuda Electronic mail Safety Gateway equipment to such an extent that any patch merely isn’t as much as the job of kicking them out.

There are prone to be 10,000+ Barracuda ESG home equipment in use around the globe. And it seems malicious exploitation of susceptible Barracuda ESG home equipment has been going down since no less than October 2022.

No marvel Barracuda is getting some authorized recommendation on find out how to talk this to its prospects.

“Don’t panic?”

Discovered this text fascinating? Follow Graham Cluley on Twitter or Mastodon to learn extra of the unique content material we submit.


Graham Cluley is a veteran of the cybersecurity business, having labored for quite a few safety corporations for the reason that early Nineteen Nineties when he wrote the primary ever model of Dr Solomon’s Anti-Virus Toolkit for Home windows. Now an unbiased analyst, he frequently makes media appearances and is a world public speaker on the subject of cybersecurity, hackers, and on-line privateness.
Observe him on Twitter, Mastodon, Bluesky, or drop him an electronic mail.