The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
North Korean threat actors behind the ongoing Contagious Interview campaign have been observed dropping a new JavaScript malware called OtterCookie.Contagious …
The threat actor known as Cloud Atlas has been observed using a previously undocumented malware called VBCloud as part of its cyber attack campaigns targeting …
Cybersecurity researchers are warning about a spike in malicious activity that involves roping vulnerable D-Link routers into two different botnets, a Mirai va…
The recent emergence of the Interlock ransomware group has put Linux security admins on high alert, particularly those overseeing FreeBSD servers. Launched in …
The technology is advancing at an unprecedented rate, fueling cybersecurity concerns. Experts have gone the extra mile to tackle this issue, but they will not …
Cybersecurity researchers have discovered several security flaws in the cloud management platform developed by Ruijie Networks that could permit an attacker to…
Cybersecurity researchers have discovered several security flaws in the cloud management platform developed by Ruijie Networks that could permit an attacker to…
The Apache Software Foundation (ASF) has shipped security updates to address a critical security flaw in Traffic Control that, if successfully exploited, could…
The Iranian nation-state hacking group known as Charming Kitten has been observed deploying a C++ variant of a known malware called BellaCiao.Russian cybersecu…
As Linux security admins, keeping abreast of the latest updates and releases is crucial to our role. The newest release candidate from Linus Torvalds, Linux 6.…
Agility and scalability are paramount for us Linux security admins, and traditional software deployment methods often fall short in these critical areas. Conta…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a now-patched high-severity security flaw impacting Acclaim Systems USAHERDS t…
The Apache Software Foundation (ASF) has released a security update to address an important vulnerability in its Tomcat server software that could result in re…
Cybersecurity researchers have found that it's possible to use large language models (LLMs) to generate new variants of malicious JavaScript code at scale in a…
LockBit ransomware group recently made headlines when they revealed their upcoming version, LockBit 4.0, signaling an imminent increase in sophisticated cybera…
Linux security administrators take note: Doctor Web has identified numerous advanced malware trends that pose a severe threat to your systems. Extended Berkele…
The online world never takes a break, and this week shows why. From ransomware creators being caught to hackers backed by governments trying new tricks, the me…
The 2025 cybersecurity landscape is increasingly complex, driven by sophisticated cyber threats, increased regulation, and rapidly evolving technology. In 2025…
A dual Russian and Israeli national has been charged in the United States for allegedly being the developer of the now-defunct LockBit ransomware-as-a-service …
Linux security admins must be wary of an emerging and dangerous threat: the cShell DDoS bot malware. Recently discovered by researchers at ASEC, this sophistic…
Open-source data and intelligence availability have partly enabled legal and illegal actions. These resources leverage public data to address cyber threats whi…
In recent months, serious vulnerabilities have been discovered in widely used TP-Link routers including Archer and Deco models . These flaws, CVE-2024-21833 an…
The Lazarus Group, an infamous threat actor linked to the Democratic People's Republic of Korea (DPRK), has been observed leveraging a "complex infection chain…
The developers of Rspack have revealed that two of their npm packages, @rspack/core and @rspack/cli, were compromised in a software supply chain attack that al…