The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
Heads up, Atlas VPN users! A serious zero-day flaw affects the Atlas VPN Linux client,…Avoid Using Atlas VPN Until A Fix Arrives For The Zero-Day on Latest Hac…
Since early this year AMD has been working on Linux enablement patches for Dynamic Boost Control (DBC). This is a new feature of some AMD SoCs that allow an "a…
Microsoft Internet Information Services (IIS) is a web server software package designed for Windows Server. Organizations commonly use Microsoft IIS servers to…
Threat actors associated with North Korea arecontinuingtotargetthe cybersecurity community using a zero-day bug in an unspecified software over the past severa…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday warned that multiple nation-state actors are exploiting security flaws in Fortinet…
Patches have been released to address two new securityvulnerabilities in Apache Supersetthat could be exploited by an attacker to gain remote code execution on…
Two major security vulnerabilities were recently discovered in PHP. It was discovered that PHP incorrectly handled certain XML files ( CVE-2023-3823 ) and cert…
Nine security flaws have been disclosed in electric power management products made by Schweitzer Engineering Laboratories (SEL).“The most severe of those nine …
In today's digital age, it's not just about being online but how securely your organization operates online. Regardless of size or industry, every organization…
An unknown threat actor has been observed weaponizing high-severity security flaws in the MinIO high-performance object storage system to achieve unauthorized …
Months after patching the vulnerabilities, researchers still detected active exploitation of Adobe ColdFusion for malware…Active Exploitation Of Adobe ColdFusi…
Proof-of-concept (PoC) exploit code has been made available for a recently disclosed and patched critical flaw impacting VMware Aria Operations for Networks (f…
Threat actors are exploiting poorly secured Microsoft SQL (MS SQL) servers to deliver Cobalt Strike and a ransomware strain called FreeWorld.Cybersecurity firm…
As cyber threats continue to evolve, adversaries are deploying a range of tools to breach security defenses and compromise sensitive data. Surprisingly, one of…
Multiple vulnerabilities riddled Cisco’s NX-OS and FXOS software, putting the networking devices at risk. Cisco…Cisco Patched Multiple NX-OS And FXOS Vulnerabi…
It was discovered that ClamAV incorrectly handled parsing HFS+ files ( CVE-2023-20197 ). This bug is easy to exploit and poses a severe threat to the availabil…
Several denial of service (DoS) and code execution vulnerabilities have been discovered in the Vim enhanced vi editor.
New findings show that malicious actors could leverage a sneaky malware detection evasion technique and bypass endpoint security solutions by manipulating the …
Recently disclosed security flaws impacting Juniper firewalls, Openfire, and Apache RocketMQ servers have come under active exploitation in the wild, according…
VMware has released software updates to correct two security vulnerabilities in Aria Operations for Networks that could be potentially exploited to bypass auth…
A suspected Chinese-nexus hacking group exploited arecently disclosed zero-day flawin Barracuda Networks Email Security Gateway (ESG) appliances to breach gove…
Researchers discovered a reply URL flaw in Azure AD that could allow unauthorized access to…Microsoft Power Platform API Threatened Due To Reply URL Flaw on La…
Unpatched Citrix NetScaler systems exposed to the internet are being targeted by unknown threat actors in what's suspected to be a ransomware attack.Cybersecur…
Cyber attacks on e-commerce applications are a common trend in 2023 as e-commerce businesses become more omnichannel, they build and deploy increasingly more A…