Collected every two hours from specialised publications — each link leads to the original article.
Google has formally attributed the supply chain compromise of the popular Axios npm package to a financially motivated North Korean threat activity cluster tra…
You’ve probably already moved some of your business to the cloud—or you’re planning to. That’s a smart move. It helps you work faster, serve your customers bet…
SonicWall has formally implicated state-sponsored threat actors as behind the September security breach that led to the unauthorized exposure of firewall confi…
Google Mandiant and Google Threat Intelligence Group (GTIG) have disclosed that they are tracking a new cluster of activity possibly linked to a financially mo…
SonicWall is urging customers to reset credentials after their firewall configuration backup files were exposed in a security breach impacting MySonicWall acco…
Google has announced the launch of a new initiative called OSS Rebuild to bolster the security of the open-source package ecosystems and prevent software suppl…
The threat actor known as Storm-0501 has targeted government, manufacturing, transportation, and law enforcement sectors in the U.S. to stage ransomware attack…
Users in Russia have been the target of a previously undocumented Android post-compromise spyware called LianSpy since at least 2021.Cybersecurity vendor Kaspe…
Cloud computing and analytics company Snowflake said a "limited number" of its customers have been singled out as part of a targeted campaign."We have not iden…
The release of Google Chrome 124 addresses four vulnerabilities, including a critical security flaw enabling remote attackers to execute arbitrary code, potent…
Researchers have found numerous security vulnerabilities in Google Workspace that risk breaches. While the vulnerabilities…Google Workspace Vulnerabilities Ris…
A little over a week afterJumpCloud reset API keys of customersimpacted by a security incident, the company said the intrusion was the work of a sophisticated …
A chain of two critical flaws has been disclosed in Alibaba Cloud's ApsaraDB RDS for PostgreSQL and AnalyticDB for PostgreSQL that could be exploited to breach…
Google is calling attention to a set of severe security flaws in Samsung's Exynos chips, some of which could be exploited remotely to completely compromise a p…
Chinese-speaking individuals in Southeast and East Asia are the targets of a new rogue Google Ads campaign that delivers remote access trojans such as FatalRAT…
The Russian state-sponsored hacking collective known as APT29 has been attributed to a new phishing campaign that takes advantage of legitimate cloud services …
Lookout, an endpoint-to-cloud cyber security company, have put together their cyber security predictions for 2022.1—Cloud connectivity and cloud-to-cloud conne…
Another victim of ransomware surfaces online. The latest incident hit the cloud hosting service provider…Swiss Cloud Hosting Provider Suffered Ransomware Attac…
Joining the trail of ransomware attack victims, cloud service provider Blackbaud has now joined the list. The company disclosed aCloud Provider Blackbaud Endur…
Researchers reported on Monday that hackers are now exploiting Google's Analytics service to stealthily pilfer credit card information from infected e-commerce…
Heads up all Google AdSense users. A new email extortion scam is in the wild that threatens website owners servingNew Email Extortion Scam Threatens Banning of…
With its latest announcement to increase bug bounty rewards for finding and reporting critical vulnerabilities in the Android operating system, Google yesterda…
The U.S. multinational computer software company Adobe has suffered a serious security breach earlier this month that exposed user records' database belonging …
Microsoft has disclosed details of two campaigns in which threat actors are abusing third-party email delivery infrastructure to blast financial fraud scam mes…