Stay Informed

Cybersecurity News

Home / News

Quick searches: Linux Windows Microsoft 365 AWS OVH VMware WordPress Fortinet Citrix VPN

What it means for your servers

The security stories that matter, explained by our team — with the concrete steps to take.

Latest headlines from security outlets

Collected every two hours from specialised publications — each link leads to the original article.

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Recent OpenSSH RCE Bug Explained: Impact & Mitigations

In an era where cybersecurity threats loom larger than ever, the discovery of a Remote Code Execution (RCE) vulnerability in OpenSSH by Qualys' Threat Research…

OpenSSH

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Exim 4.98 Addresses Critical Vulnerabilities, Bolsters Email Server Security

Exim is one of Unix-like systems' most widely used mail transfer agents. It's essential for email delivery and handling and is a significant part of the Intern…

The Hacker News
The Hacker News Vulnerabilities

CISA Adds Twilio Authy and IE Flaws to Exploited Vulnerabilities List

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added two security flaws to its Known Exploited Vulnerabilities (KEV) catalog, based on ev…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Breaches & leaks

Play Ransomware Group's New Linux Variant Targets ESXi, Shows Ties With Prolific Puma

The Play ransomware group, well-known for its double-extortion tactics, recently unveiled a Linux variant targeting ESXi environments. This development represe…

Linux VMware

The Hacker News
The Hacker News

Chinese Hackers Target Taiwan and US NGO with MgBot Malware

Organizations in Taiwan and a U.S. non-governmental organization (NGO) based in China have been targeted by a Beijing-affiliated state-sponsored hacking group …

The Hacker News
The Hacker News

Chinese Hackers Target Taiwan and U.S. NGO with MgBot and MACMA Malware

Organizations in Taiwan and a U.S. non-governmental organization (NGO) based in China have been targeted by a Beijing-affiliated state-sponsored hacking group …

The Hacker News
The Hacker News

New ICS Malware 'FrostyGoop' Targeting Critical Infrastructure

Cybersecurity researchers have discovered what they say is the ninth Industrial Control Systems (ICS)-focused malware that has been used in a disruptive cyber …

The Hacker News
The Hacker News Alerts

Ukrainian Institutions Targeted Using HATVIBE and CHERRYSPY Malware

The Computer Emergency Response Team of Ukraine (CERT-UA) has alerted of a spear-phishing campaign that targeted a scientific research institution in the count…

Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses
Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses

How to Enhance Your System’s Security with Master Data Governance

Data security has always been a priority. Thanks to AI and machine learning’s massive boost…How to Enhance Your System’s Security with Master Data Governance o…

Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses
Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses Vulnerabilities

Multiple Vulnerabilities Found In XenForo Internet Forum Solution

Numerous security vulnerabilities riddled the XenForo Internet Forum solution, one of which could even allow…Multiple Vulnerabilities Found In XenForo Internet…

The Hacker News
The Hacker News

PINEAPPLE and FLUXROOT Hacker Groups Abuse Google Cloud for Credential Phishing

A Latin America (LATAM)-based financially motivated actor codenamed FLUXROOT has been observed leveraging Google Cloud serverless projects to orchestrate crede…

Google Cloud

The Hacker News
The Hacker News

MSPs & MSSPs: How to Increase Engagement with Your Cybersecurity Clients Through vCISO Reporting

As a vCISO, you are responsible for your client's cybersecurity strategy and risk governance. This incorporates multiple disciplines, from research to executio…

The Hacker News
The Hacker News Breaches & leaks

SocGholish Malware Exploits BOINC Project for Covert Cyberattacks

The JavaScript downloader malware known as SocGholish (aka FakeUpdates) is being used to deliver a remote access trojan called AsyncRAT as well as a legitimate…

The Hacker News
The Hacker News Breaches & leaks

New Linux Variant of Play Ransomware Targeting VMware ESXi Systems

Cybersecurity researchers have discovered a new Linux variant of a ransomware strain known as Play (aka Balloonfly and PlayCrypt) that's designed to target VMw…

Linux VMware

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles

The Risks Inherent in Including Security Modules At Kernel Level: Lessons From CrowdStrike Incident

Balancing strong security measures while minimizing operational risks is a constant juggling act in cybersecurity. The recent global outage caused by that bad …

The Hacker News
The Hacker News Vulnerabilities

Cybercriminals Exploit CrowdStrike Update Mishap to Distribute Remcos RAT Malware

Cybersecurity firm CrowdStrike, which is facing the heat for causing worldwide IT disruptions by pushing out a flawed update to Windows devices, is now warning…

Windows

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles

Navigating the Cybersecurity Maze: Advanced Linux Security Practices for Professionals

As cyber threats rapidly advance, Linux administrators and InfoSec professionals are essential defenders against increasingly sophisticated threats. Protectors…

Linux

The Hacker News
The Hacker News Breaches & leaks

Two Russian Nationals Plead Guilty in LockBit Ransomware Attacks

Two Russian nationals have pleaded guilty in a U.S. court for their participation as affiliates in the LockBit ransomware scheme and helping facilitate ransomw…

The Hacker News
The Hacker News Breaches & leaks

WazirX Cryptocurrency Exchange Loses $230 Million in Major Security Breach

Indian cryptocurrency exchange WazirX has confirmed that it was the target of a security breach that led to the theft of $230 million in cryptocurrency assets.…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles

The Urgent Need for Secure Software Development: New Report Serves as a Wake-Up Call for the Industry

The Linux Foundation and Open Source Security Foundation recently published a report entitled "Secure Software Development Education 2024 Survey''Understanding…

Linux

The Hacker News
The Hacker News

Alert: HotPage Adware Disguised as Ad Blocker Installs Malicious Kernel Driver

Cybersecurity researchers have shed light on an adware module that purports to block ads and malicious websites, while stealthily offloading a kernel driver co…

Windows

The Hacker News
The Hacker News Vulnerabilities

AppSec Webinar: How to Turn Developers into Security Champions

Let's face it: AppSec and developers often feel like they're on opposing teams. You're battling endless vulnerabilities while they just want to ship code. Soun…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Breaches & leaks

Severe Linux Kernel Privilege Escalation Bugs Could Compromise Entire Systems

The Cybersecurity and Infrastructure Security Agency (CISA) recently added a new Linux kernel privilege escalation bug ( CVE-2024-1086 ) to its Known Exploited…

Linux

The Hacker News
The Hacker News Vulnerabilities

SAP AI Core Vulnerabilities Expose Customer Data to Cyber Attacks

Cybersecurity researchers have uncovered security shortcomings in SAP AI Core cloud-based platform for creating and deploying predictive artificial intelligenc…