Collected every two hours from specialised publications — each link leads to the original article.
An update that fixes two vulnerabilities is now available.
An update that fixes 21 vulnerabilities is now available.
An update that fixes 5 vulnerabilities is now available.
An update that fixes 5 vulnerabilities is now available.
An update that fixes 5 vulnerabilities is now available.
An update that fixes 5 vulnerabilities is now available.
Google plans to add a hacked-password alert system into its browser by the end of year; Firefox aims to do much the same thing this month. Learn more in an inf…
An update that fixes four vulnerabilities is now available.
An update that fixes four vulnerabilities is now available.
An update that fixes four vulnerabilities is now available.
A malicious cross-store Twitch browser extension has leaked OAuth tokens associated with nearly 31,000 users to proxy servers operated by a Russian commercial …
A malicious cross-store Twitch browser extension has leaked OAuth tokens associated with nearly 31,000 users to proxy servers operated by a Russian commercial …
Malware running as an ordinary user on a Windows machine can sign into a victim's passkey-protected accounts without a fingerprint, a PIN, or anything at all a…
Cisco Talos has detailed msaRAT, a Rust-based RAT used by the Chaos ransomware crew that drives a headless Chrome or Edge session over CDP to smuggle C2 traffi…
Cybersecurity researchers have disclosed details of a now-patched vulnerability chain in the Adobe Acrobat Chrome extension that has over 314 million users, wh…
The North Korean threat actors linked to the Contagious Interview campaign have been observed publishing 108 unique packages and web browser extensions spannin…
The Computer Emergencies Response Team of Ukraine (CERT-UA) has disclosed details of a new campaign that has targeted governments and municipal healthcare inst…
Update to cef-146.0.9+g3ca6a87 + chromium 146.0.7680.164 High CVE-2026-4673: Heap buffer overflow in WebAudio High CVE-2026-4674: Out of bounds read in CSS Hig…
Cybersecurity researchers have flagged a new evolution of the GlassWorm campaign that delivers a multi-stage framework capable of comprehensive data theft and …
Bump to cef-145.0.28+g51162e8 + chromium 145.0.7632.159 (rhbz#2437035) CVE-2026-3536: Integer overflow in ANGLE CVE-2026-3537: Object lifecycle issue in PowerV…
Bump to cef-145.0.28+g51162e8 + chromium 145.0.7632.159 (rhbz#2437035) CVE-2026-3536: Integer overflow in ANGLE CVE-2026-3537: Object lifecycle issue in PowerV…
Bump to cef-145.0.28+g51162e8 + chromium 145.0.7632.159 (rhbz#2437035) CVE-2026-3536: Integer overflow in ANGLE CVE-2026-3537: Object lifecycle issue in PowerV…
Update to cef-145.0.25 + chromium 145.0.7632.75 CVE-2026-1861: Heap buffer overflow in libvpx CVE-2026-1862: Type Confusion in V8 CVE-2026-2313: Use after free…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added four security flaws to its Known Exploited Vulnerabilities (KEV) catalog, cit…