The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
Google has recently rolled out the scheduled Android security update for March 2023, fixing numerous…Google Fixed Two Critical Vulnerabilities With Android Mar…
Security vulnerabilities in remote desktop programs such as Sunlogin and AweSun are being exploited by threat actors to deploy the PlugX malware.AhnLab Securit…
A previously known Windows-based ransomware strain known as IceFire has expanded its focus to target Linux enterprise networks belonging to several media and e…
A pair of severe security vulnerabilities have been disclosed in the Jenkins open source automation server that could lead to code execution on targeted system…
Researchers found a few vulnerabilities affecting TPM 2.0, exploiting which could risk device security and…Vulnerabilities In TPM 2.0 Could Expose Cryptographi…
Kali Linux is a powerful and versatile operating system designed for hackers and security professionals. It is a Debian-based distribution that comes loaded wi…
A researcher highlighted a vulnerability in Snapchat that could allow a remote attacker to delete…Snapchat Vulnerability Could Allow Deleting Users’ Content Sp…
The North Korea-linkedLazarus Grouphas been observed weaponizing flaws in an undisclosed software to breach a financial business entity in South Korea twice wi…
Cross site-scripting (XSS), an attack in which a threat actor injects malicious executable scripts into the code of a trusted application or website, is a prev…
Several critical and high-severity security issues, including multiple use-after-free vulnerabilities and a stack-based buffer overflow vulnerability, were dis…
The Trusted Platform Module (TPM) 2.0 specification is affected by two buffer overflow vulnerabilities that could allow attackers to access or overwrite sensit…
Kali Linux is a popular and powerful penetration testing operating system used by ethical hackers to identify vulnerabilities and secure computer networks. It …
A researcher discovered a severe vulnerability in Chromium that allowed SameSite cookie bypass on Android…Chromium Vulnerability Allowed SameSite Cookie Bypass…
As a primary working interface, the browser plays a significant role in today's corporate environment. The browser is constantly used by employees to access we…
Cisco on Wednesday rolled outsecurity updatesto address a critical flaw impacting its IP Phone 6800, 7800, 7900, and 8800 Series products.The vulnerability, tr…
A new post-exploitation framework called EXFILTRATOR-22 (aka EX-22) has emerged in the wild with the goal of deploying ransomware within enterprise networks wh…
The Linux kernel since last year has mistakenly left systems relying on the original Indirect Branch Restricted Speculation (IBRS) for Spectre V2 mitigation wi…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) hasaddeda high-severity flaw affecting the ZK Framework to its Known Exploited Vulnerabilities…
The RIG exploit kit (EK) touched an all-time high successful exploitation rate of nearly 30% in 2022, new findings reveal."RIG EK is a financially-motivated pr…
A security flaw in a bundle anti-malware scanner product has created a serious security risk for some products from networking giant Cisco.
Apple silently patched a serious security vulnerability affecting iOS users that could expose data. Specifically,…Apple iOS Vulnerability Could Expose Users’ M…
The use of AI in cybersecurity is growing rapidly and is having a significant impact on threat detection, incident response, fraud detection, and vulnerability…
The (Other) Risk in FinanceA few years ago, a Washington-based real estate developer received a document link from First American – a financial services compan…
Apple has revised thesecurity advisoriesit released last month to include three new vulnerabilities impactingiOS, iPadOS, andmacOS.The first flaw is arace cond…