The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
A severe privilege escalation issue impacting MikroTik RouterOS could be weaponized by remote malicious actors to execute arbitrary code and seize full control…
As the number of people using macOS keeps going up, so does the desire of hackers to take advantage of flaws in Apple's operating system.What Are the Rising Th…
Multiple significant security vulnerabilities have been discovered in the Linux kernel, including a remotely exploitable null pointer dereference flaw in the n…
A set of five security vulnerabilities have been disclosed in the Terrestrial Trunked Radio (TETRA) standard for radio communication used widely by government …
Ivanti is warning users to update their Endpoint Manager Mobile (EPMM) mobile device management software (formerly MobileIron Core) to the latest version that …
Adobe released an emergency security patch for ColdFusion, addressing a critical zero-day vulnerability. The tech…Adobe Patched Critical ColdFusion Zero-Day Fl…
Heads up, Cisco users! Cisco recently disclosed numerous vulnerabilities in SPA500 series IP phones, confirming…Cisco Disclosed Vulnerabilities In SPA500 Serie…
Details have emerged about a now-patched flaw in OpenSSH that could be potentially exploited to run arbitrary commands remotely on compromised hosts under spec…
Web applications are an integral part of most business operations today. They are commonly used for storing, processing, or transmitting data in various busine…
Researchers found a critical vulnerability in the Google Cloud Build that allowed elevated privileges to…A Google Cloud Build Vulnerability Could Aid Supply-Ch…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) issued an advisory on Thursday warning that the newly disclosed critical security flaw in Citr…
Mallox ransomware activities in 2023 have witnessed a 174% increase when compared to the previous year, new findings from Palo Alto Networks Unit 42 reveal."Ma…
Multiple security flaws have been disclosed in Apache OpenMeetings, a web conferencing solution, that could be potentially exploited by malicious actors to sei…
Months after releasing the patch, hackers are still exploiting the security flaw in WooCommerce Payments…WooCommerce Payments WP Plugin Flaw Goes Under Active …
Adobe has released a fresh round of updates to address an incomplete fix for a recently disclosed ColdFusion flaw that has come under active exploitation in th…
It was discovered that in Django 3.2 before 3.2.20, 4 before 4.1.10, and 4.2 before 4.2.3, EmailValidator and URLValidator are subject to a potential ReDoS (re…
Multiple severe security issues were discovered in the GPAC multimedia framework, including a heap-based Buffer Overflow in the GitHub repository gpac/gpac bef…
Cybersecurity researchers have uncovered a privilege escalation vulnerability in Google Cloud that could enable malicious actors tamper with application images…
The U.S. government on Tuesday added two foreign commercial spyware vendors, Cytrox and Intellexa, to an economic blocklist for weaponizing cyber exploits to g…
Citrix isalertingusers of a critical security flaw in NetScaler Application Delivery Controller (ADC) and Gateway that it said is being actively exploited in t…
Threat actors are taking advantage of Android'sWebAPK technologyto trick unsuspecting users into installing malicious web apps on Android phones that are desig…
Microsoft Word documents exploiting known remote code execution flaws are being used as phishing lures to drop malware calledLokiBoton compromised systems."Lok…
Researchers found the popular chat service QuickBlox exhibiting numerous security flaws. Exploiting the QuickBlox framework…QuickBlox Framework Vulnerabilities…
Multiple security vulnerabilities have been discovered in various services, including Honeywell Experion distributed control system (DCS) and QuickBlox, that, …