The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
New research has found that over 15,000 Go module repositories on GitHub are vulnerable to an attack called repojacking."More than 9,000 repositories are vulne…
Microsoft on Monday said it detected Kremlin-backed nation-state activity exploiting a now-patched critical security flaw in its Outlook email service to gain …
Heads up, Chrome users! Google has released another major Chrome browser update addressing a zero-day…One More Google Chrome Update Arrives With A Zero-Day Pat…
Researchers found numerous severe security vulnerabilities in the Ray compute framework that allow unauthorized access.…Multiple Vulnerabilities Found In Ray C…
New research has unearthed multiple novel attacks that break Bluetooth Classic's forward secrecy and future secrecy guarantees, resulting in adversary-in-the-m…
The Unified Extensible Firmware Interface (UEFI) code from various independent firmware/BIOS vendors (IBVs) has been found vulnerable to potential attacks thro…
A CACTUS ransomware campaign has been observed exploiting recently disclosed security flaws in a cloud analytics and business intelligence platform called Qlik…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) revealed that it's responding to a cyber attack that involved the active exploitation of Unitr…
Researchers publicly disclosed a design flaw affecting Google Workspace that allows unauthorized access. While they…Google Workspace Design Flaw Allows Unautho…
The recently disclosed critical security flaw impacting Apache ActiveMQ is being actively exploited by threat actors to distribute a new Go-based botnet called…
Google has rolled out security updates to fix seven security issues in its Chrome browser, including a zero-day that has come under active exploitation in the …
BOSTON, MASS. and TEL AVIV, ISRAEL, November 28, 2023 - A severe design flaw in…Design Flaw in Domain-Wide Delegation Could Leave Google Workspace Vulnerable f…
Numerous security vulnerabilities riddled the privacy of ownCloud users that the vendor patched recently. Exploiting…Multiple Vulnerabilities Found In ownCloud…
Researchers caught a new campaign from the notorious Konni RAT malware exploiting malicious Word files.…Konni RAT Malware Campaign Spreads Via Malicious Word F…
Given the continuous rise in active exploitation of the now-known CitrixBleed flaw, governments issued new…New Alerts Issued For CitrixBleed Flaw Following Act…
The maintainers of the open-source file-sharing software ownCloud have warned of three critical security flaws that could be exploited to disclose sensitive in…
Multiple threat actors, including LockBit ransomware affiliates, are actively exploiting a recently disclosed critical security flaw in Citrix NetScaler applic…
The Kinsing threat actors are actively exploiting a critical security flaw in vulnerable Apache ActiveMQ servers to infect Linux systems with cryptocurrency mi…
Researchers have found numerous security vulnerabilities in Google Workspace that risk breaches. While the vulnerabilities…Google Workspace Vulnerabilities Ris…
A set of novel attack methods has been demonstrated against Google Workspace and the Google Cloud Platform that could be potentially leveraged by threat actors…
Months after ensuring that the patch actually works, Google has now disclosed more details about…Google Elaborates On Campaigns Exploiting A Now-Patched Zimbra…
Intel recently released a critical security fix for a newly discovered vulnerability affecting its CPUs.…Intel Released Urgent Patch For Reptar Vulnerability I…
Bitcoin wallets created between 2011 and 2015 are susceptible to a new kind of exploit calledRandstormthat makes it possible to recover passwords and gain unau…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added three security flaws to its Known Exploited Vulnerabilities (KEV) catalog ba…