Threat actors are ramping up attacks on poorly managed MySQL servers, particularly those running in Windows environments,...
News
A Server-Side Request Forgery (SSRF) vulnerability has been discovered in the @opennextjs/cloudflare package, potentially allowing unauthenticated users...
Elastic Security Labs has revealed a highly sophisticated multi-stage attack chain exploiting a social engineering method dubbed...
The ransomware threat landscape is undergoing dramatic upheaval. As legacy groups like RansomHub, LockBit, Everest, and BlackLock...
A critical vulnerability has been disclosed in KAON’s KCM3100 Wi-Fi gateway devices that could allow attackers to...
A fresh wave of targeted cyberattacks is sweeping across Europe, leveraging invoice-themed phishing emails and weaponizing legitimate...
After years of operating in near-total obscurity, the cyber-espionage group XDSpy has resurfaced in a sophisticated campaign...
Following the Trump administration’s initial decision in early April to grant TikTok’s U.S. operations an additional 75-day...
A high-severity vulnerability has been uncovered in the pure-Python backend of Google’s Protocol Buffers (protobuf), potentially allowing...
D-Link has issued an official advisory warning users of its legacy DIR-632 router that two critical vulnerabilities...
Broadcom has officially unveiled VMware Cloud Foundation (VCF) 9.0, marking a significant stride in advancing its modern...
An increasing number of devices are now beginning to support the Wi-Fi 7 standard, yet its adoption...
After Microsoft integrated OneDrive cloud storage into Windows 10 and 11, a significant number of users were...
The decentralized social networking platform Mastodon has recently issued an email to its users, notifying them of...
The Mozilla Foundation is currently piloting an AI-powered search engine within the Firefox browser, selecting Perplexity AI...
Microsoft recently released a new study titled “2025 Work Trend Index Annual Report,” in which it issues...
In a detailed investigation published by FortiGuard Labs, a persistent and highly coordinated malware campaign has been...
Two high-severity vulnerabilities have been disclosed in widely used Ubiquiti software components—UCRM Client Signup Plugin and the...
The Qualys Threat Research Unit (TRU) has unveiled two interconnected privilege escalation vulnerabilities—CVE-2025-6018 and CVE-2025-6019—that can allow...
Unit 42 has uncovered two newly evolved variants of the KimJongRAT malware, one using traditional PE (Portable...
A dangerous Linux privilege escalation vulnerability, CVE-2023-0386, has officially entered the CISA Known Exploited Vulnerabilities (KEV) Catalog...
The Cloud Software Group has issued a security bulletin addressing two critical vulnerabilities in NetScaler ADC (formerly...