The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
Virtualization services provider VMware has alerted customers to the existence of a proof-of-concept (PoC) exploit for a recently patched security flaw in Aria…
With a few days gap, Cisco disclosed active exploitation detections for separate zero-days affecting its…Cisco Discloses Multiple Zero-Days Under Attack In IOS…
Cisco has warned of a new zero-day flaw in IOS XE that has been actively exploited by an unknown threat actor to deploy amalicious Lua-based implanton suscepti…
The time between a vulnerability being discovered and hackers exploiting it is narrower than ever –just 12 days. So it makes sense that organizations are start…
Following the rumors about a zero-day flaw in the Signal app, the developers have debunked…Signal Debunks Rumors About Zero-Day Vulnerability In The App on Lat…
In the ever-evolving landscape of cybersecurity, attackers are always searching for vulnerabilities and exploits within organizational environments. They don't…
Government entities in the Asia-Pacific (APAC) region are the target of a long-running cyber espionage campaign dubbedTetrisPhantom."The attacker covertly spie…
A medium-severity flaw has been discovered in Synology's DiskStation Manager (DSM) that could be exploited to decipher an administrator's password and remotely…
Two critical security flaws discovered in the open-sourceCasaOSpersonal cloud software could be successfully exploited by attackers to achieve arbitrary code e…
Financial data is much more than just a collection of numbers; it is a crucial component of any business and a prime target for cybercriminals. It's important …
Cisco has warned of a critical, unpatched security flaw impacting IOS XE software that’s under active exploitation in the wild.Rooted in the web UI feature, th…
Pro-Russian hacking groups have exploited a recently disclosed security vulnerability in the WinRAR archiving utility as part of a phishing campaign designed t…
Encrypted messaging app Signal has pushed back against "viral reports" of an alleged zero-day flaw in its software, stating it found no evidence to support the…
Threat actors have been observed serving malicious code by utilizing Binance's Smart Chain (BSC) contracts in what has been described as the "next level of bul…
With October Patch Tuesday, Microsoft fixed 104 security vulnerabilities across different products, including three zero-day…Microsoft October Patch Tuesday Fi…
Image Source: JFrog Security ResearchPatches have been released fortwo security flawsimpacting the Curl data transfer library, the most severe of which could p…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesdayaddeda high-severity flaw in Adobe Acrobat Reader to its Known Exploited Vulnerabili…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesdayaddeda high-severity flaw in Adobe Acrobat Reader to its Known Exploited Vulnerabili…
Passwords are at the core of securing access to an organization's data. However, they also come with security vulnerabilities that stem from their inconvenienc…
Microsoft has linked the exploitation of a recently disclosed critical flaw in Atlassian Confluence Data Center and Server to a nation-state actor it tracks as…
Amazon Web Services (AWS), Cloudflare, and Google on Tuesday said they took steps to mitigate record-breaking distributed denial-of-service (DDoS) attacks that…
A recently disclosed critical flaw in Citrix NetScaler ADC and Gateway devices is being exploited by threat actors to conduct a credential harvesting campaign.…
In today's rapidly evolving technological landscape, the integration of Artificial Intelligence (AI) and Large Language Models (LLMs) has become ubiquitous acr…
Multiple high-severity security vulnerabilities have been disclosed in ConnectedIO's ER2000 edge routers and the cloud-based management platform that could be …