Collected every two hours from specialised publications — each link leads to the original article.
SaaS applications are the backbone of modern businesses, constituting a staggering 70% of total software usage. Applications like Box, Google Workplace, and Mi…
Threat actors associated with North Korea arecontinuingtotargetthe cybersecurity community using a zero-day bug in an unspecified software over the past severa…
Updates to Kubernetes for F38 and F39. Security fixes for CVE-2023-3955 and CVE-2023-3676. Related update for rawhide already in stable. Update for F37 is curr…
Cloud hosting firm Leaseweb recently disclosed a security breach after its Customer Portal suffered downtime.…Leaseweb Hosting Provider Admits Security Breach …
Among cloud developers, Kubernetes is now a widely used platform. It's not immune to security incidents, however, and these can lead to loss of revenue or cust…
The SmokeLoader malware is being used to deliver a new Wi-Fi scanning malware strain calledWhiffy Reconon compromised Windows machines."The new malware strain …
Google researchers recently reported a vulnerability in Intel CPUs leading to a new “Downfall” side-channel…Intel Patched Newly Reported Downfall Attack Affect…
[BLACK HAT] Googlers have lately found not one but two more security vulnerabilities in Intel and AMD processors that can be exploited to steal sensitive data …
Google has introduced a new security feature in Android 14 that allows IT administrators to disable support for 2G cellular networks in their managed device fl…
Exposed Kubernetes (K8s) clusters are being exploited by malicious actors to deploy cryptocurrency miners and other backdoors.Cloud security firm Aqua, in arep…
Red Hat OpenShift Dev Spaces provides a cloud developer workspace server and a browser-based IDE built for teams and organizations. Dev Spaces runs in OpenShif…
The recent attack againstMicrosoft's email infrastructureby a Chinese nation-state actor referred to as Storm-0558 is said to have a broader scope than previou…
Attack surfaces are growing faster than security teams can keep up. To stay ahead, you need to know what's exposed and where attackers are most likely to strik…
This is release 1.4 of the rpms for Red Hat Service Interconnect. Red Hat Service Interconnect 1.4 introduces a service network, linking TCP and HTTP services …
Researchers have issued a warning about an emerging and advanced form of voice phishing (vishing) known as "Letscall." This technique is currently targeting in…
The Iranian nation-state actor known as TA453 has been linked to a new set of spear-phishing attacks that infect both Windows and macOS operating systems with …
With the growth of Linux in cloud environments, critical infrastructure, and even mobile platforms, hackers are increasingly targeting the open source system f…
While the use of Infrastructure as Code (IaC) has gained significant popularity as organizations embrace cloud computing and DevOps practices, the speed and fl…
Microsoft on Friday attributed a string of service outages aimed at Azure, Outlook, and OneDrive earlier this month to an uncategorized cluster it tracks under…
A suspected China-nexus threat actor dubbed UNC4841 has been linked to the exploitation of a recently patched zero-day flaw in Barracuda Email Security Gateway…
At least half of dozen GitHub accounts from fake researchers associated with a fraudulent cybersecurity company have been observed pushing malicious repositori…
Believe it or not, your attack surface is expanding faster than you realize. How? APIs, of course! More formally known as application programming interfaces, A…
A new strain of malicious software that's engineered to penetrate and disrupt critical systems in industrial environments has been unearthed.Google-owned threa…
Google has removed a screen recording app named "iRecorder - Screen Recorder" from the Play Store after it was found to sneak in information stealing capabilit…