The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
Apple last year fixed a new set of macOS vulnerabilities that exposed Safari browser to attack, potentially allowing malicious actors to access users' online a…
Apple on WednesdayreleasediOS 15.3 and macOS Monterey 12.2 with a fix for the privacy-defeating bug in Safari, as well as to contain a zero-day flaw, which it …
The Qualys Research Team reached out to LinuxSecurity after discovering a memory corruption vulnerability in polkit's pkexec. Pkexec is a SUID-root program tha…
Researchers have disclosed details of two critical security vulnerabilities (CVE-2021-45467) in Control Web Panel, an open-source Linux control panel software …
A serious code injection vulnerability riddled the WordPress HTML Mail plugin, thus potentially putting thousands…Code Injection Vulnerability Found In HTML Ma…
Researchers found a bug in content management software “Box” that would allow an adversary to…MFA Bypass Vulnerability Found In Box CMS And File Sharing Softwa…
A heap overflow vulnerability has been discovered that reportedly affects multiple distributions. Thankfully, a patch…This Linux Kernel Bug Affects Numerous Di…
Researchers have discovered a severe bug in the Safari 15 browser that potentially leaks a…Safari 15 Browser Vulnerability Potentially Exposes User Data – Appl…
Cisco Systems has rolled out fixes for a critical security flaw affecting Redundancy Configuration Manager (RCM) for Cisco StarOS Software that could be weapon…
Potential connections between a subscription-based crimeware-as-a-service (CaaS) solution and a cracked copy of Cobalt Strike have been established in what the…
A heap overflow bug was recently discovered in the Linux kernel. The patch is available now in most major Linux distributions.
Way back in August Intel posted a set of Linux kernel patches for supporting "unaccepted memory" by the Linux kernel in preparation for next-generation Xeon pr…
The coordinated cyberattacks targetingUkrainian government websitesand the deployment of a data-wiper malware calledWhisperGateon select government systems are…
Researchers have disclosed a security shortcoming affecting three different WordPress plugins that impact over 84,000 websites and could be abused by a malicio…
A security researcher has recently disclosed serious vulnerabilities affecting NUUO NVRmini2 devices. The researcher claims…Researcher Discloses Unpatched Vuln…
Microsoft January Patch Tuesday update bundle has arrived with significant security fixes. Specifically, it includes…Microsoft January Patch Tuesday Addresses …
Lots of people ''run Linux'' without really knowing or caring '' many home routers, navigational aids, webcams and other IoT devices are based on it; the major…
Microsoft on Tuesday kicked off its first set of updates for 2022 byplugging 96 security holesacross its software ecosystem, while urging customers to prioriti…
An Iranian state-sponsored actor has been observed scanning and attempting to abuse the Log4Shell flaw in publicly-exposed Java applications to deploy a hither…
Tech giants and federal agencies meet at the White House to discuss open-source software security, a response to the widespread Log4j vulnerability that's worr…
Apple on Wednesday rolled out software updates for iOS and iPadOS to remediate a persistentdenial-of-service (DoS) issueaffecting the HomeKit smart home framew…
Cybercriminals are constantly looking for new opportunities to exploit and even though the majority of…Is Cloud-Based Ransomware the Future of Cyber Crime? on …
Researchers have identified a new phishing attack where the hackers exploit the Google Docs Comment…New Phishing Campaign Exploits Google Docs Comment Feature …
A security researcher has explained how Java RMI services remain at risk of developing SSRF…Researchers Explain How SSRF Vulnerabilities Risk Java RMI Services…