The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
As many as 60 malicious npm packages have been discovered in the package registry with malicious functionality to harvest hostnames, IP addresses, DNS servers,…
Zero-day vulnerabilities are a nightmare for any Linux admin, and here's the latest one that demands your attention: CVE-2025-4664 . If you're running Chrome o…
Picture this: you're staring at your trusted Linux system, a network of processes handling everything from file sharing to user requests. It's smooth, reliable…
Cyber threats don't show up one at a time anymore. They’re layered, planned, and often stay hidden until it’s too late.For cybersecurity teams, the key isn’t j…
Cybersecurity researchers have disclosed a malware campaign that uses fake software installers masquerading as popular tools like LetsVPN and QQ Browser to del…
The malware known as Latrodectus has become the latest to embrace the widely-used social engineering technique called ClickFix as a distribution vector."The Cl…
When you think of supply chains, your mind probably jumps to physical products—a t-shirt passing through farms, factories, trucks, and stores before landing in…
As part of the latest "season" of Operation Endgame, a coalition of law enforcement agencies have taken down about 300 servers worldwide, neutralized 650 domai…
From zero-day exploits to large-scale bot attacks — the demand for a powerful, self-hosted, and user-friendly web application security solution has never been …
The U.S. Department of Justice (DoJ) on Thursday announced the disruption of the online infrastructure associated with DanaBot (aka DanaTools) and unsealed cha…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday revealed that Commvault is monitoring cyber threat activity targeting applications…
Cybersecurity researchers have discovered an indirect prompt injection flaw in GitLab's artificial intelligence (AI) assistant Duo that could have allowed atta…
A privilege escalation flaw has been demonstrated in Windows Server 2025 that makes it possible for attackers to compromise any user in Active Directory (AD)."…
Linux systems are known for their robust security and efficient design, but even they are not immune to evolving attack strategies. One such emerging threat ha…
Tails version 6.15.1 has landed, and this isn't just a routine update''it's an emergency release. If you're working with Tails, this release demands your immed…
It’s not enough to be secure. In today’s legal climate, you need to prove it.Whether you’re protecting a small company or managing compliance across a global e…
For many organizations, identity security appears to be under control. On paper, everything checks out. But new research from Cerby, based on insights from ove…
A sprawling operation undertaken by global law enforcement agencies and a consortium of private sector firms has disrupted the online infrastructure associated…
Cary, North Carolina, 22nd May 2025, CyberNewsWireINE Security Partners with Abadnet Institute for Cybersecurity Training Programs in Saudi Arabia on Latest Ha…
To boost the safeguarding of your cryptocurrencies, opt for a configuration that utilizes an N-of-M…Understanding Multisig Security for Enhanced Protection of …
Russian cyber threat actors have been attributed to a state-sponsored campaign targeting Western logistics entities and technology companies since 2022.The act…
Russian organizations have become the target of a phishing campaign that distributes malware called PureRAT, according to new findings from Kaspersky."The camp…
Linux 6.15-rc7 just dropped, and if you're managing systems that rely on Linux, this is one you'll want to pay attention to. It's the seventh release candidate…
Red Hat Enterprise Linux (RHEL) 10 isn't just another update''it's a serious step forward in the battle against security threats, both current and emerging. If…