The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
Cybersecurity researchers are warning of a new phishing campaign that's targeting users in Taiwan with malware families such as HoldingHands RAT and Gh0stCring…
For Linux admins and open-source advocates, the German state of Schleswig-Holstein is about to become a live case study. In just a few short months, the state …
Ransomware has become a highly coordinated and pervasive threat, and traditional defenses are increasingly struggling to neutralize it. Today’s ransomware atta…
Enterprise environments power everything from development machines and servers to kiosks and IoT devices. However, managing these endpoints, especially across …
An emerging ransomware strain has been discovered incorporating capabilities to encrypt files as well as permanently erase them, a development that has been de…
Some of the biggest security problems start quietly. No alerts. No warnings. Just small actions that seem normal but aren't. Attackers now know how to stay hid…
IntroductionThe cybersecurity landscape is evolving rapidly, and so are the cyber needs of organizations worldwide. While businesses face mounting pressure fro…
The latest iteration of Kali Linux is here, and while it won't shout for attention, it will make you lean in. Kali 2025.2 quietly reinforces its position as a …
Email security doesn't just happen''it's engineered, tweaked, and refined with every lurking threat on the horizon. Rspamd has long been a trusted tool for Lin…
Cybersecurity researchers have discovered a malicious package on the Python Package Index (PyPI) repository that's capable of harvesting sensitive developer-re…
Cybersecurity researchers from SafeDep and Veracode detailed a number of malware-laced npm packages that are designed to execute remote code and download addit…
When people talk about open-source software, it often comes with a certain level of trust''trust in the community, trust in transparent development, and trust …
Cybersecurity researchers are calling attention to a "large-scale campaign" that has been observed compromising legitimate websites with malicious JavaScript i…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday disclosed that ransomware actors are targeting unpatched SimpleHelp Remote Monitor…
Fingerprint scanners aren't new, but let's be honest''Linux's experience with biometric authentication has historically been a mixed bag. Between a tangled web…
If you've spent any time dealing with Linux in Kubernetes clusters, you know that simplicity is hard to achieve without compromises. Managing nodes in distribu…
Cybersecurity researchers have discovered a novel attack technique called TokenBreak that can be used to bypass a large language model's (LLM) safety and conte…
A novel attack technique named EchoLeak has been characterized as a "zero-click" artificial intelligence (AI) vulnerability that allows bad actors to exfiltrat…
Human identities management and control is pretty well done with its set of dedicated tools, frameworks, and best practices. This is a very different world whe…
ConnectWise has disclosed that it's planning to rotate the digital code signing certificates used to sign ScreenConnect, ConnectWise Automate, and ConnectWise …
Linux. It's the silent backbone of modern cloud infrastructure''a workhorse running the vast majority of compute instances across enterprises. Depending on the…
For years, macOS has been more of a bystander in the containerization world''a useful client tool for developers but rarely the platform of choice for running …
As the world becomes more dependent on open-source software, it's critical to ensure that Linux systems stay secure. These systems run everything from enterpri…
Threat intelligence firm GreyNoise has warned of a "coordinated brute-force activity" targeting Apache Tomcat Manager interfaces.The company said it observed a…