The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
It was discovered that in Django 3.2 before 3.2.20, 4 before 4.1.10, and 4.2 before 4.2.3, EmailValidator and URLValidator are subject to a potential ReDoS (re…
Multiple severe security issues were discovered in the GPAC multimedia framework, including a heap-based Buffer Overflow in the GitHub repository gpac/gpac bef…
Cybersecurity researchers have uncovered a privilege escalation vulnerability in Google Cloud that could enable malicious actors tamper with application images…
The U.S. government on Tuesday added two foreign commercial spyware vendors, Cytrox and Intellexa, to an economic blocklist for weaponizing cyber exploits to g…
Citrix isalertingusers of a critical security flaw in NetScaler Application Delivery Controller (ADC) and Gateway that it said is being actively exploited in t…
Threat actors are taking advantage of Android'sWebAPK technologyto trick unsuspecting users into installing malicious web apps on Android phones that are desig…
Microsoft Word documents exploiting known remote code execution flaws are being used as phishing lures to drop malware calledLokiBoton compromised systems."Lok…
Researchers found the popular chat service QuickBlox exhibiting numerous security flaws. Exploiting the QuickBlox framework…QuickBlox Framework Vulnerabilities…
Multiple security vulnerabilities have been discovered in various services, including Honeywell Experion distributed control system (DCS) and QuickBlox, that, …
In a sign that cybersecurity researchers continue to be under the radar of malicious actors, a proof-of-concept (PoC) has been discovered on GitHub, concealing…
A type confusion issue that may have been actively exploited has been identified in the WebKitGTK web engine (CVE-2023-32439). With a low attack complexity and…
Exploit code will soon become available for a critical vulnerability in the Linux kernel that a security researcher discovered and reported in mid-June. Dubbed…
The July 2023 Patch Tuesday update bundle patched at least six different actively-exploited vulnerabilities across…Microsoft July Patch Tuesday Fixed Six Zero-…
SonicWall on Wednesday urged customers of Global Management System (GMS) firewall management and Analytics network reporting engine software to apply the lates…
Microsoft on Tuesday released updates to address a totalof 130 new security flawsspanning its software, including six zero-day flaws that it said have been act…
Microsoft on Tuesday released updates to address a totalof 132 new security flawsspanning its software, including six zero-day flaws that it said have been act…
Siemens recently addressed numerous vulnerabilities affecting its automation device A8000. The vulnerabilities even included a…Multiple Vulnerabilities Patched…
Several important security issues were discovered in the Vim enhanced vi editor, including an out-of-bounds read vulnerability (CVE-2022-0128), improper memory…
Google has released its monthly security updates for the Android operating system, addressing 46 new software vulnerabilities. Among these, three vulnerabiliti…
Cybersecurity agencies have warned about the emergence of new variants of the TrueBot malware. This enhanced threat is now targeting companies in the U.S. and …
Several remotely exploitable security issues were found in the Bind Internet Domain Name Server. It was discovered that Bind incorrectly handled the cache size…
Several security issues were found in the Linux kernel, including an out-of-bounds write vulnerability in the Flower classifier implementation in the kernel (C…
Details have emerged about a newly identified security flaw in the Linux kernel that could allow a user to gain elevated privileges on a target host.DubbedStac…
The tech giant Google recently released a major security update for its Chrome browser. With…Google Patched Four Security Flaws With Chrome Browser 114 Update …