A recently discovered vulnerability in the popular curl command line tool and library, tracked as CVE-2024-11053 and...
Vulnerability
Oasis Securityβs research team has unveiled a critical vulnerability in Microsoft Azureβs Multi-Factor Authentication (MFA) system, exposing...
Deep Instinct Security Researcher Eliran Nissan has uncovered a new and potent lateral movement technique, βDCOM Upload...
Over 15,000 Sites at Risk: Woffice WordPress Theme Vulnerabilities Could Lead to Full Site Takeovers
Over 15,000 Sites at Risk: Woffice WordPress Theme Vulnerabilities Could Lead to Full Site Takeovers
Patchstack has disclosed two critical vulnerabilities in the widely used Woffice WordPress theme, a premium intranet/extranet solution...
Akamai security researcher Tomer Peled has unveiled a novel attack technique exploiting Microsoft’s legacy UI Automation framework,...
Dell has released a critical security update to address multiple vulnerabilities impacting several of its enterprise products,...
A critical vulnerability in PDQ Deploy, a software deployment service used by system administrators, has been highlighted...
A significant increase in brute-force attacks targeting outdated and misconfigured Citrix NetScaler devices has been observed in...
A newly discovered vulnerability in Apache Superset, a popular open-source business intelligence platform, could allow attackers to...
A serious vulnerability in the Hunk Companion plugin for WordPress, tracked as CVE-2024-11972 (CVSS 9.8), has been...
Rapid7 Labs and its Managed Detection and Response (MDR) team uncovered a sophisticated modular Java-based Remote Access...
Developers using the popular Apache Struts framework are urged to update their systems immediately following the discovery...
Organizations using Cleo file transfer software are urged to take immediate action as a critical vulnerability, CVE-2024-50623,...
A collaborative research effort has exposed a significant vulnerability, designated CVE-2024-21944 and named “BadRAM,” that undermines the...
GitLab has issued an important security update addressing a range of vulnerabilities affecting multiple versions of its...
A critical vulnerability has been discovered in the Splunk Secure Gateway app that could allow a low-privileged...
The US Department of Justice announced the unsealing of an indictment against Guan Tianfeng, a Chinese national...
Ivanti, a leading provider of IT management and security solutions, has released critical security updates for the...
Ivanti, a leader in unified endpoint and enterprise service management, has issued patches for several high and...
Jamf Threat Labs has identified a vulnerability in Appleβs Transparency, Consent, and Control (TCC) security framework. Designated...