The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
The most dangerous vulnerability you’ve never heard of.In the world of cybersecurity, vulnerabilities are discovered so often, and at such a high rate, that it…
Cybersecurity researchers have disclosed a new campaign that potentially targets users in the Middle East through malware that disguises itself as Palo Alto Ne…
Threat actors with ties to North Korea have been observed publishing a set of malicious packages to the npm registry, indicating "coordinated and relentless" e…
Threat actors are actively exploiting a now-patched, critical security flaw impacting the Atlassian Confluence Data Center and Confluence Server to conduct ill…
U.S. cybersecurity and intelligence agencies have called out an Iranian hacking group for breaching multiple organizations across the country and coordinating …
Attackers are increasingly using new phishing toolkits (open-source, commercial, and criminal) to execute adversary-in-the-middle (AitM) attacks.AitM enables a…
Microsoft’s AI flagship, Copilot Studio, potentially threatened the firm’s internal infrastructure. Specifically, a critical SSRF…Microsoft Copilot Studio Vuln…
WordPress admins should once again update their websites to receive plugin updates, particularly if they…WPML WP Plugin Vulnerability Risked 1M+ WordPress Webs…
A serious code execution vulnerability compromised the security of the GiveWP WordPress plugin, risking thousands…GiveWP Plugin Vulnerability Risked 100,000+ W…
Fortra has addressed a critical security flaw impacting FileCatalyst Workflow that could be abused by a remote attacker to gain administrative access.The vulne…
The threat actors behind the BlackByte ransomware group have been observed likely exploiting a recently patched security flaw impacting VMware ESXi hypervisors…
Google has revealed that a security flaw that was patched as part of a software update rolled out last week to its Chrome browser has come under active exploit…
WordPress admins using the Litespeed Cache plugin must update their sites with the latest plugin…LiteSpeed Cache Plugin Vulnerability Risked 5+ Million WordPre…
Researchers have identified security issues with most existing digital wallets, making them vulnerable to fraudulent…Digital Wallets Found Vulnerable To Fraudu…
Amidst the rising security threats for the aviation industry, the Federal Aviation Authority (FAA) proposed…FAA Proposed New Cybersecurity Rules Addressing Thr…
Google Chrome users must rush to update their systems with the latest browser release as…Google Patched A Chrome Zero-Day With Multiple Vulnerabilities on Late…
Researchers discovered a serious vulnerability in the popular communication tool’s special service, Slack AI. An…Slack AI Vulnerability Exposed Data From Priva…
Business users need to update their systems with the latest GitHub Enterprise Server release, as…Critical Auth Bypass Vulnerability Affected GitHub Enterprise …
SonicWall has released security updates to address a critical flaw impacting its firewalls that, if successfully exploited, could grant malicious actors unauth…
Cybersecurity researchers have uncovered new Android malware that can relay victims' contactless payment data from physical credit and debit cards to an attack…
Cybersecurity researchers have uncovered a new stealthy piece of Linux malware that leverages an unconventional technique to achieve persistence on infected sy…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has placed a security flaw impacting Versa Director to its Known Exploited Vulnerabilities (KE…
Digital transformation, powered by the principles of open-source security , is vital for businesses looking to excel in today's technology-driven landscape. Cu…
Cybersecurity researchers have uncovered a never-before-seen dropper that serves as a conduit to launch next-stage malware with the ultimate goal of infecting …