Stay Informed

Cybersecurity News

Home / News

Quick searches: Linux Windows Microsoft 365 AWS OVH VMware WordPress Fortinet Citrix VPN

What it means for your servers

The security stories that matter, explained by our team — with the concrete steps to take.

Latest headlines from security outlets

Collected every two hours from specialised publications — each link leads to the original article.

The Hacker News
The Hacker News Breaches & leaks

China-Linked UAT-7290 Targets Telecoms with Linux Malware and ORB Nodes

A China-nexus threat actor known as UAT-7290 has been attributed to espionage-focused intrusions against entities in South Asia and Southeastern Europe.The act…

Linux

The Hacker News
The Hacker News Breaches & leaks

ThreatsDay Bulletin: RustFS Flaw, Iranian Ops, WebUI RCE, Cloud Leaks, and 12 More Stories

The internet never stays quiet. Every week, new hacks, scams, and security problems show up somewhere.This week’s stories show how fast attackers change their …

The Hacker News
The Hacker News Vulnerabilities

Cisco Patches ISE Security Vulnerability After Public PoC Exploit Release

Cisco has released updates to address a medium-severity security flaw in Identity Services Engine (ISE) and ISE Passive Identity Connector (ISE-PIC) with a pub…

Cisco

The Hacker News
The Hacker News

Black Cat Behind SEO Poisoning Malware Campaign Targeting Popular Software Searches

A cybercrime gang known as Black Cat has been attributed to a search engine optimization (SEO) poisoning campaign that employs fraudulent sites advertising pop…

The Hacker News
The Hacker News Vulnerabilities

Critical n8n Vulnerability (CVSS 10.0) Allows Unauthenticated Attackers to Take Full Control

Cybersecurity researchers have disclosed details of yet another maximum-severity security flaw in n8n, a popular workflow automation platform, that allows an u…

The Hacker News
The Hacker News Vulnerabilities

n8n Warns of CVSS 10.0 RCE Vulnerability Affecting Self-Hosted and Cloud Versions

Open-source workflow automation platform n8n has warned of a maximum-severity security flaw that, if successfully exploited, could result in authenticated remo…

The Hacker News
The Hacker News

The Future of Cybersecurity Includes Non-Human Employees

Non-human employees are becoming the future of cybersecurity, and enterprises need to prepare accordingly. As organizations scale Artificial Intelligence (AI) …

The Hacker News
The Hacker News Vulnerabilities

Veeam Patches Critical RCE Vulnerability with CVSS 9.0 in Backup & Replication

Veeam has released security updates to address multiple flaws in its Backup & Replication software, including a "critical" issue that could result in remote co…

Databases

The Hacker News
The Hacker News Vulnerabilities

Ongoing Attacks Exploiting Critical RCE Vulnerability in Legacy D-Link DSL Routers

A newly discovered critical security flaw in legacy D-Link DSL gateway routers has come under active exploitation in the wild.The vulnerability, tracked as CVE…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Red Team Blue Team Insights for Linux Admins: Key Security Roles Explained

If you manage Linux systems long enough, you start to notice that most security conversations are not really about attackers or tools. They are about pressure.…

Linux Windows

The Hacker News
The Hacker News Vulnerabilities

New n8n Vulnerability (9.9 CVSS) Lets Authenticated Users Execute System Commands

A new critical security vulnerability has been disclosed in n8n, an open-source workflow automation platform, that could enable an authenticated attacker to ex…

The Hacker News
The Hacker News

The State of Cybersecurity in 2025:Key Segments, Insights, and Innovations

Featuring:Cybersecurity is being reshaped by forces that extend beyond individual threats or tools. As organizations operate across cloud infrastructure, distr…

The Hacker News
The Hacker News

Bitfinex Hack Convict Ilya Lichtenstein Released Early Under U.S. First Step Act

Ilya Lichtenstein, who was sentenced to prison last year for money laundering charges in connection with his role in the massive hack of cryptocurrency exchang…

The Hacker News
The Hacker News

New VVS Stealer Malware Targets Discord Accounts via Obfuscated Python Code

Cybersecurity researchers have disclosed details of a new Python-based information stealer called VVS Stealer (also styled as VVS $tealer) that's capable of ha…

Palo Alto

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles

Open Source vs Commercial Email Security: Operational Choices and Risks

Email still looks like plumbing until it becomes the incident timeline, which is why the enterprise email security decision tends to surface only after somethi…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles

Cloud Security: Addressing Email Issues in Postfix Environments

Perimeter-based email security assumes mail reliably passes a single inspection point. That's how most Linux mail stacks were designed to operate: one choke po…

Linux

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Breaches & leaks

MongoDB 8.2: Memory Leak Risk CVE-2025-14847 Critical Exploit

MongoBleed, tracked as CVE-2025-14847, is a high-severity flaw in MongoDB that allows unauthenticated attackers to read small pieces of a server's memory. In s…

Databases

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Breaches & leaks

MongoBleed MongoDB Memory Leak Under Active Exploitation Distros Lag on Updates

MongoBleed, tracked as CVE-2025-14847, is a high-severity flaw in MongoDB that allows unauthenticated attackers to read small pieces of a server's memory. In s…

Databases

The Hacker News
The Hacker News

The ROI Problem in Attack Surface Management

Attack Surface Management (ASM) tools promise reduced risk. What they usually deliver is more information. Security teams deploy ASM, asset inventories grow, a…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles

UFW: Efficient Logging Strategies for Enhanced Network Security Monitoring

UFW logging is useful, but the output is easy to misread if you're not used to kernel log lines. Where those logs show up depends on the distro and logging sta…

The Hacker News
The Hacker News

Cybercriminals Abuse Google Cloud Email Feature in Multi-Stage Phishing Campaign

Cybersecurity researchers have disclosed details of a phishing campaign that involves the attackers impersonating legitimate Google-generated messages by abusi…

Google Cloud

The Hacker News
The Hacker News Breaches & leaks

ThreatsDay Bulletin: GhostAd Drain, macOS Attacks, Proxy Botnets, Cloud Exploits, and 12+ Stories

The first ThreatsDay Bulletin of 2026 lands on a day that already feels symbolic — new year, new breaches, new tricks. If the past twelve months taught defende…

Apple

The Hacker News
The Hacker News

Trust Wallet Chrome Extension Hack Drains $8.5M via Shai-Hulud Supply Chain Attack

Trust Wallet on Tuesday revealed that the second iteration of the Shai-Hulud (aka Sha1-Hulud) supply chain outbreak in November 2025 was likely responsible for…

GitHub Chrome

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles

UFW: Important Hardening Patterns for Long-Lived Linux Servers

UFW rules on long-lived hosts don't fail because the policy is wrong. They fail because changes get applied out of sequence, old rules survive longer than expe…

Linux