A new investigation by Rapid7 reveals that cybercriminals have found a clever way to bypass the strict...
Cloud Security
A seemingly minor misconfiguration in a regular expression could have allowed attackers to seize control of critical...
A significant security flaw has been closed in the OpenStack cloud infrastructure project, specifically within its identity...
A new, highly sophisticated malware framework has emerged from the shadows, specifically engineered to infest the modern...
Elastic has released a massive security update addressing seven distinct vulnerabilities across its ecosystem, urging administrators to...
A critical vulnerability has been uncovered in the ServiceNow AI Platform, potentially allowing unauthenticated attackers to masquerade...
RustFS, a distributed object storage system celebrated for leveraging the memory safety and performance of the Rust...
An unpleasant flaw surfaced in Linux—one capable of causing serious headaches for server administrators, particularly in public...
A highly automated and ruthlessly efficient cyber-espionage campaign is tearing through the cloud infrastructure of modern web...
In a striking display of cloud-native tradecraft, cybercriminals have been caught turning legitimate AWS environments into illicit...
Salesforce has issued an urgent security alert after discovering unusual activity involving Gainsight-published applications connected to its...
A new report from Trend Research warns that ransomware operators are rapidly shifting their focus from traditional...
Google has announced the launch of a new cloud-based architecture called Private AI Compute, designed to enable...
A newly disclosed vulnerability in Wolfram Cloud version 14.2 — tracked as CVE-2025-11919 — could allow attackers...
Two high-severity vulnerabilities disclosed by HashiCorp could expose Vault deployments to denial-of-service (DoS) attacks and cross-account authentication...
Palo Alto Networks’ Unit 42 has published an in-depth analysis of a financially motivated cyber campaign dubbed...
The developers of MinIO, a popular high-performance, S3-compatible object storage platform, have issued a critical security advisory...
Security researchers at Rapid7 have identified a newly emerging cybercriminal group known as Crimson Collective, which has...
Researchers at Darktrace have identified a sophisticated new campaign that merges traditional malware techniques with modern DevOps...
Beginning in July 2025, several high-profile companies reported breaches of their Salesforce CRM (Customer Relationship Management) systems,...