Stay Informed

Cybersecurity News

Home / News

Quick searches: Linux Windows Microsoft 365 AWS OVH VMware WordPress Fortinet Citrix VPN

What it means for your servers

The security stories that matter, explained by our team — with the concrete steps to take.

Latest headlines from security outlets

Collected every two hours from specialised publications — each link leads to the original article.

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Breaches & leaks

Linux as a Retail Cybersecurity Solution

Cyberattacks cost retailers time, trust, and money''especially during peak seasons when disruption hits hardest. Despite heavy investments in cybersecurity, th…

Linux

The Hacker News
The Hacker News Breaches & leaks

Researchers Identify Rack::Static Vulnerability Enabling Data Breaches in Ruby Servers

Cybersecurity researchers have disclosed three security flaws in the Rack Ruby web server interface that, if successfully exploited, could enable attackers to …

The Hacker News
The Hacker News Vulnerabilities

DslogdRAT Malware Deployed via Ivanti ICS Zero-Day CVE-2025-0282 in Japan Attacks

Cybersecurity researchers are warning about a new malware called DslogdRAT that's installed following the exploitation of a now-patched security flaw in Ivanti…

Ivanti

The Hacker News
The Hacker News Breaches & leaks

Lazarus Hits 6 South Korean Firms via Cross EX, Innorix Flaws and ThreatNeedle Malware

At least six organizations in South Korea have been targeted by the prolific North Korea-linked Lazarus Group as part of a campaign dubbed Operation SyncHole.T…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Securing Virtualized Linux Environments with MITRE ATT&CK v17

The release of MITRE ATT&CK v17 , with the addition of a dedicated matrix for VMware ESXi hypervisors, reflects the growing threat surface in virtualized envir…

Linux VMware

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles

Securing the Software Supply Chain with In-Toto

Securing the software supply chain has become a critical focus for us security professionals, especially in response to increasingly sophisticated attacks targ…

Linux

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles

What Is Vishing? And Why Its More Dangerous Than You Think

Vishing, or voice phishing, is when attackers use a phone call''not malware or email''to pull off a scam. They pretend to be someone trustworthy: tech support,…

The Hacker News
The Hacker News

DPRK Hackers Steal $137M from TRON Users in Single-Day Phishing Attack

Multiple threat activity clusters with ties to North Korea (aka Democratic People's Republic of Korea or DPRK) have been linked to attacks targeting organizati…

The Hacker News
The Hacker News Breaches & leaks

Iran-Linked Hackers Target Israel with MURKYTOUR Malware via Fake Job Campaign

The Iran-nexus threat actor known as UNC2428 has been observed delivering a backdoor known as MURKYTOUR as part of a job-themed social engineering campaign aim…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Breaches & leaks

Finding & Fixing Security Bugs with Oracle Ksplice's Known Exploit Detection

Oracle Ksplice is an invaluable tool that fundamentally reshapes how we apply and monitor Linux security patches. Oracle Ksplice's Known Exploit Detection take…

Linux

The Hacker News
The Hacker News Breaches & leaks

Ripple's xrpl.js npm Package Backdoored to Steal Private Keys in Major Supply Chain Attack

The Ripple cryptocurrency npm JavaScript library named xrpl.js has been compromised by unknown threat actors as part of a software supply chain attack designed…

The Hacker News
The Hacker News Vulnerabilities

Docker Malware Exploits Teneo Web3 Node to Earn Crypto via Fake Heartbeat Signals

Cybersecurity researchers have detailed a malware campaign that's targeting Docker environments with a previously undocumented technique to mine cryptocurrency…

Docker

The Hacker News
The Hacker News Vulnerabilities

GCP Cloud Composer Bug Let Attackers Elevate Access via Malicious PyPI Packages

Cybersecurity researchers have detailed a now-patched vulnerability in Google Cloud Platform (GCP) that could have enabled an attacker to elevate their privile…

Google Cloud Apache

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Alerts

Linux 6.15-rc3: Security Advisory for UBLK Driver Enhancements

We, Linux security admins, are always on the lookout for kernel updates that enhance system stability and address critical bugs, and Linux 6.15-rc3 is no excep…

Linux

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

MX Linux 23.6: Improved Security and Admin Tools for Efficient Management

The recently released MX Linux 23.6 is a compelling option for us admins seeking a secure and efficient operating system based on Debian 12.10 "Bookworm." With…

Linux

Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses
Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses

The Role of SSL Certificates in Website Security and Performance

Secure Sockets Layer (SSL) certificates are important for website security. Almost every list of website…The Role of SSL Certificates in Website Security and P…

The Hacker News
The Hacker News Breaches & leaks

Lotus Panda Hacks SE Asian Governments With Browser Stealers and Sideloaded Malware

The China-linked cyber espionage group tracked as Lotus Panda has been attributed to a campaign that compromised multiple organizations in an unnamed Southeast…

The Hacker News
The Hacker News Breaches & leaks

Kimsuky Exploits BlueKeep RDP Vulnerability to Breach Systems in South Korea and Japan

Cybersecurity researchers have flagged a new malicious campaign related to the North Korean state-sponsored threat actor known as Kimsuky that exploits a now-p…

The Hacker News
The Hacker News Breaches & leaks

SuperCard X Android Malware Enables Contactless ATM and PoS Fraud via NFC Relay Attacks

A new Android malware-as-a-service (MaaS) platform named SuperCard X can facilitate near-field communication (NFC) relay attacks, enabling cybercriminals to co…

Android

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles

New XorDDoS Malware Targets Linux and IoT

When malware like XorDDoS resurfaces with expanded capabilities, it's a wake-up call for us security professionals managing Linux-based systems. Initially disc…

Linux

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles

XorDDoS Malware Overview: Threats to Linux, IoT, and Botnet Formation

When malware like XorDDoS resurfaces with expanded capabilities, it's a wake-up call for us security professionals managing Linux-based systems. Initially disc…

Linux

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles

GNOME 48.1 Released with Bug Fixes & Improvements

The GNOME Project recently rolled out GNOME 48.1 , the first maintenance update for the GNOME 48 ''Bengaluru'' desktop environment series. This update will soo…

Linux

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles

GNOME 48.1 Release: Mandatory 2FA and Keycloak SSO on AWS

The GNOME Project recently rolled out GNOME 48.1 , the first maintenance update for the GNOME 48 ''Bengaluru'' desktop environment series. This update will soo…

Linux AWS

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Breaches & leaks

New Supply Chain Attack Targets Telegram Bots

We Linux security administrators face a growing challenge with sophisticated supply chain attacks targeting popular development ecosystems, such as npm. The la…

Linux