The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
The Open Source Security Foundation (OpenSSF) on Tuesday announced that 19 more organizations have joined the initiative, showing commitment towards identifyin…
An analysis of data crowdsourced from more than 200,000 network-connected infusion pumps used in hospitals and healthcare entities has revealed that 75% of tho…
Critical security vulnerabilities have been uncovered in VoIPmonitor software that, if successfully exploited, could allow unauthenticated attackers to escalat…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA)expandedits Known Exploited Vulnerabilities Catalog to include a recently disclosed zero-day fl…
Users of Horde Webmail are being urged to disable a feature to contain a nine-year-old unpatched security vulnerability in the software that could be abused to…
Severe vulnerabilities in the Zenly app risked users’ privacy as the app exposed phone numbers…Zenly App Vulnerabilities Could Allow Account Takeover on Latest…
A researcher has recently disclosed a severe vulnerability in the Visual Voice Mail app affecting…Android Visual Voice Mail App Vulnerability Allows For Eavesd…
A severe vulnerability riddled the free browser-based groupware Horde Webmail allowing account takeovers. Despite the…Horde Webmail XSS Vulnerability Allows fo…
Researchers have recently disclosed details about multiple security vulnerabilities in Extensis Portfolio software. These include…Extensis Portfolio Vulnerabil…
Here we go again. Another obnoxious security bug, CVE-2022-0435: A Remote Stack Overflow in The Linux Kernel was found by Appgate senior exploit developer Samu…
Researchers have warned users of numerous security vulnerabilities in the Zabbix monitoring platform. Exploiting the…Multiple Vulnerabilities Found In Zabbix I…
There's a lot of FUD about how Linux is being shown recently to be less secure than proprietary systems. That's nonsense. But, now there are hard facts from Go…
Researchers have detailed what they call the "first successful attempt" at decrypting data infected with Hive ransomware without relying on the private key use…
For the last few years, the cybersecurity threat landscape has gotten progressively more complex and dangerous. The online world is now rife with data thieves,…
Multiple security vulnerabilities have been disclosed in Canonical's Snap software packaging and deployment system, the most critical of which can be exploited…
A severe vulnerability in the UpdraftPlus WordPress plugin could expose backups to subscribers. Thankfully, the…Vulnerability In UpdraftPlus WordPress Plugin C…
Researchers have found a new malware campaign exploiting vulnerable Microsoft Exchange Servers. The threat actors…Squirrelwaffle Malware Loader Exploits Vulner…
Cisco has released security updates to contain three vulnerabilities affecting its products, including one high-severity flaw in its Email Security Appliance (…
An exploitable bug sitting in a popular Linux kernel module has been found after five years. A patch is finally available, experts say.
A month after the disruptive data breach, Red Cross has shared more details about the…Red Cross Cyberattack Links Back To A Zoho ManageEngine Vulnerability on …
A "potentially destructive actor" aligned with the government of Iran is actively exploiting the well-knownLog4j vulnerabilityto infect unpatched VMware Horizo…
VMware on Tuesday patched severalhigh-severityvulnerabilitiesimpacting ESXi, Workstation, Fusion, Cloud Foundation, and NSX Data Center for vSphere that could …
Researchers have found a high-severity bug in Apache Cassandra allowing code execution attacks. Since the…Remote Code Execution Bug Found In Apache Cassandra –…
Google raises rewards for its kCTF exploit-focussed vulnerability bounty focussing on Linux kernel zero-day flaws. And changes some rules.