The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
A group of academics from Northeastern University and KU Leuven has disclosed a fundamental design flaw in the IEEE 802.11 Wi-Fi protocol standard, impacting a…
A number of zero-day vulnerabilities that were addressed last year were exploited by commercial spyware vendors to target Android and iOS devices, Google's Thr…
Several security vulnerabilities were recently addressed by Canonical in both Graphviz and the Linux kernel of Ubuntu.
A severe security vulnerability in OpenAI’s ChatGPT exposed users’ conversations, payment details, and other data.…ChatGPT Vulnerability Exposed Users’ Convos …
Apple on Monday backported fixes for an actively exploited security flaw to older iPhone and iPad models.The issue, tracked asCVE-2023-23529, concerns a type c…
A recent study reveals how attackers can trigger vulnerabilities in voice assistants for malicious purposes.…Study Reveals Inaudible Sound Attack Threatens Voi…
A serious authentication vulnerability existed in the WordPress plugin WooCommerce Payments, exploiting which could allow…Critical Vulnerability Fixed In WooCo…
Linux is a widespread OS known for its robust security . That being said, vulnerabilities are inevitable in any OS, and Linux system administrators must be vig…
Microsoft on Friday shared guidance to help customers discover indicators of compromise (IoCs) associated with a recently patched Outlook vulnerability.Tracked…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has released eight Industrial Control Systems (ICS)advisorieson Tuesday, warning of critical f…
As many as 55 zero-day vulnerabilities were exploited in the wild in 2022, with most of the flaws discovered in software from Microsoft, Google, and Apple.Whil…
Vulnerability management is vital to a robust, proactive endpoint security strategy, enabling organizations to identify and address security weaknesses before …
Multiple high-impact security issues have been discovered in Thunderbird, which could result in denial of service (DoS) attacks leading to server crashes and l…
The zero-day exploitation of a now-patched medium-severity security flaw in the FortinetFortiOSoperating system has been linked to a suspected Chinese hacking …
Google is calling attention to a set of severe security flaws in Samsung's Exynos chips, some of which could be exploited remotely to completely compromise a p…
Multiple threat actors, including a nation-state group, exploited a critical three-year-old security flaw in Progress Telerik to break into an unnamed federal …
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on March 15addeda security vulnerability impacting Adobe ColdFusion to its Known Exploited Vul…
Microsoft's Patch Tuesday update for March 2023 is rolling out with remediations for a set of80 security flaws, two of which have come under active exploitatio…
Government entities and large organizations have been targeted by an unknown threat actor by exploiting a security flaw in Fortinet FortiOS software to result …
More critical flaws similar to Log4Shell found in open source are almost inevitable, but Open Source Security Foundation 's (OpenSSF's) goal is to make those i…
Previously known to target Windows systems only, a new Linux version of the IceFire ransomware that exploits an IBM Aspera Faspex file-sharing vulnerability ( …
More than a dozen security flaws have been disclosed in E11, a smart intercom product made by Chinese company Akuvox."The vulnerabilities could allow attackers…
A novel Linux version of the IceFire ransomware that exploits a vulnerability in IBM's Aspera Faspex file-sharing software has been identified by SentinelLabs,…
A suspecting China-linked hacking campaign has been observed targeting unpatched SonicWallSecure Mobile Access (SMA) 100 appliancesto drop malware and establis…