During routine patching in December, SAP and VMware have also mitigated major vulnerabilities in their products. Users should be vigilant and install patches as soon as possible. Among them, SAP has patched 4 major vulnerabilities this time. It is worth noting that two of them are related to the components they use. One is the Chrome web browser component used by Business Client, and the other is Apache of SAP Commerce. Commons Text element. Hackers have also seen new ways of abusing drivers in attacks. In a recent wave of attacks, hackers began to use malicious drivers with Microsoft’s signature to launch ransomware attacks, thereby bypassing resources. Security system detection. Microsoft also confirmed that several developer accounts were abused.
![[Information Security Daily]On December 15, 2022, SAP patched 4 CVSS risk level near-perfect major vulnerabilities, ransomware attacks abused Microsoft-signed drivers 1 20221215](https://mlmanfsmq3vm.i.optimole.com/w:1280/h:560/q:mauto/rt:fill/g:sm/f:avif/https://urbantechstory.com/wp-content/uploads/2022/12/20221215.png)