Stay Informed

Cybersecurity News

Home / News

Clear

Quick searches: Linux Windows Microsoft 365 AWS OVH VMware WordPress Fortinet Citrix VPN

What it means for your servers

The security stories that matter, explained by our team — with the concrete steps to take.

Latest headlines from security outlets

Collected every two hours from specialised publications — each link leads to the original article.

The Hacker News
The Hacker News Vulnerabilities
Security Bug in StealC Malware Panel Let Researchers Spy on Threat Actor Operations

Cybersecurity researchers have disclosed a cross-site scripting (XSS) vulnerability in the web-based control panel used by operators of the StealC information …

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities
Cisco Snort 3 Affected By Important Inspection Flaws - Advisory 376186

Snort 3 flaws don't matter because they are unusual. They matter because they are predictable.

Cisco

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities
When Security Tools Become a Risk: Cisco Snort 3 Flaws & Network Security Threats

Snort 3 flaws don't matter because they are unusual. They matter because they are predictable.

Cisco

The Hacker News
The Hacker News Vulnerabilities
Hackers Exploit c-ares DLL Side-Loading to Bypass Security and Deploy Malware

Security experts have disclosed details of an active malware campaign that's exploiting a DLL side-loading vulnerability in a legitimate binary associated with…

The Hacker News
The Hacker News Vulnerabilities
Critical Node.js Vulnerability Can Cause Server Crashes via async_hooks Stack Overflow

Node.js has released updates to fix what it described as a critical security issue impacting "virtually every production Node.js app" that, if successfully exp…

The Hacker News
The Hacker News Vulnerabilities
CISA Warns of Active Exploitation of Gogs Vulnerability Enabling Code Execution

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has warned of active exploitation of a high-severity security flaw impacting Gogs by adding it…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities
Web Application Firewall Overview: Enhancing Linux Security

If you manage Linux systems in production, you already operate with multiple layers in place. Network firewalls, SELinux or AppArmor, IDS and IPS, and regular …

Linux

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities
What Is a WAF? A Linux Security Admins Practical Guide

If you manage Linux systems in production, you already operate with multiple layers in place. Network firewalls, SELinux or AppArmor, IDS and IPS, and regular …

Linux

The Hacker News
The Hacker News Vulnerabilities
CISA Retires 10 Emergency Cybersecurity Directives Issued Between 2019 and 2024

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday said it's retiring 10 emergency directives (Eds) that were issued between 2019 and…

Windows

The Hacker News
The Hacker News Breaches & leaks
ThreatsDay Bulletin: RustFS Flaw, Iranian Ops, WebUI RCE, Cloud Leaks, and 12 More Stories

The internet never stays quiet. Every week, new hacks, scams, and security problems show up somewhere.This week’s stories show how fast attackers change their …

The Hacker News
The Hacker News Vulnerabilities
Cisco Patches ISE Security Vulnerability After Public PoC Exploit Release

Cisco has released updates to address a medium-severity security flaw in Identity Services Engine (ISE) and ISE Passive Identity Connector (ISE-PIC) with a pub…

Cisco

The Hacker News
The Hacker News Vulnerabilities
Critical n8n Vulnerability (CVSS 10.0) Allows Unauthenticated Attackers to Take Full Control

Cybersecurity researchers have disclosed details of yet another maximum-severity security flaw in n8n, a popular workflow automation platform, that allows an u…

The Hacker News
The Hacker News Vulnerabilities
n8n Warns of CVSS 10.0 RCE Vulnerability Affecting Self-Hosted and Cloud Versions

Open-source workflow automation platform n8n has warned of a maximum-severity security flaw that, if successfully exploited, could result in authenticated remo…

The Hacker News
The Hacker News Vulnerabilities
Veeam Patches Critical RCE Vulnerability with CVSS 9.0 in Backup & Replication

Veeam has released security updates to address multiple flaws in its Backup & Replication software, including a "critical" issue that could result in remote co…

Databases

The Hacker News
The Hacker News Vulnerabilities
Ongoing Attacks Exploiting Critical RCE Vulnerability in Legacy D-Link DSL Routers

A newly discovered critical security flaw in legacy D-Link DSL gateway routers has come under active exploitation in the wild.The vulnerability, tracked as CVE…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities
Red Team Blue Team Insights for Linux Admins: Key Security Roles Explained

If you manage Linux systems long enough, you start to notice that most security conversations are not really about attackers or tools. They are about pressure.…

Linux Windows

The Hacker News
The Hacker News Vulnerabilities
New n8n Vulnerability (9.9 CVSS) Lets Authenticated Users Execute System Commands

A new critical security vulnerability has been disclosed in n8n, an open-source workflow automation platform, that could enable an authenticated attacker to ex…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Breaches & leaks
MongoDB 8.2: Memory Leak Risk CVE-2025-14847 Critical Exploit

MongoBleed, tracked as CVE-2025-14847, is a high-severity flaw in MongoDB that allows unauthenticated attackers to read small pieces of a server's memory. In s…

Databases

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Breaches & leaks
MongoBleed MongoDB Memory Leak Under Active Exploitation Distros Lag on Updates

MongoBleed, tracked as CVE-2025-14847, is a high-severity flaw in MongoDB that allows unauthenticated attackers to read small pieces of a server's memory. In s…

Databases

The Hacker News
The Hacker News Breaches & leaks
ThreatsDay Bulletin: GhostAd Drain, macOS Attacks, Proxy Botnets, Cloud Exploits, and 12+ Stories

The first ThreatsDay Bulletin of 2026 lands on a day that already feels symbolic — new year, new breaches, new tricks. If the past twelve months taught defende…

Apple

The Hacker News
The Hacker News Breaches & leaks
MongoDB Vulnerability CVE-2025-14847 Under Active Exploitation Worldwide

A recently disclosed security vulnerability in MongoDB has come under active exploitation in the wild, with over 87,000 potentially susceptible instances ident…

Databases

The Hacker News
The Hacker News Breaches & leaks
Traditional Security Frameworks Leave Organizations Exposed to AI-Specific Attack Vectors

In December 2024, the popular Ultralytics AI library was compromised, installing malicious code that hijacked system resources for cryptocurrency mining. In Au…

GitHub

The Hacker News
The Hacker News Vulnerabilities
Critical LangChain Core Vulnerability Exposes Secrets via Serialization Injection

A critical security flaw has been disclosed in LangChain Core that could be exploited by an attacker to steal sensitive secrets and even influence large langua…

The Hacker News
The Hacker News Vulnerabilities
ThreatsDay Bulletin: Stealth Loaders, AI Chatbot Flaws AI Exploits, Docker Hack, and 15 More Stories

It’s getting harder to tell where normal tech ends and malicious intent begins. Attackers are no longer just breaking in — they’re blending in, hijacking every…

Docker