OpenSSL has released a comprehensive security advisory detailing seven vulnerabilities ranging from Moderate to Low severity. The...
cybersecurity
In a major technical disclosure, the UK National Cyber Security Centre (NCSC) has detailed a sophisticated campaign...
A new Malware-as-a-Service (MaaS) platform is making waves in the cybercrime underground, promising operators an automated pipeline...
Researchers at Socket have identified a massive new cluster of malicious packages linked to North Korea’s notorious...
Security researchers at StepSecurity have sounded the alarm on a compromised version of the @velora-dex/sdk package. On...
Budibase, the popular open-source low-code platform used by engineers to rapidly build internal tools, has released urgent...
A critical security vulnerability has been unmasked in Kestra, the popular open-source, event-driven orchestration platform. The flaw,...
A critical security vulnerability has been unmasked in Convoy, the modern KVM server management panel used by...
The Electron framework—the powerhouse behind heavyweights like Visual Studio Code and countless other cross-platform desktop applications —has...
A researcher has publicly disclosed a functional zero-day exploit targeting the internal signature update mechanism of Windows...
ThreatLabz has released a deep-dive analysis into the latest iterations of Xloader, a notorious information-stealing malware that...
Researchers from the University of Toronto have demonstrated that Rowhammer attacks on GPUs can move far beyond...
A new mobile threat is proving that even the most trusted app stores aren’t immune to high-level...
A new and highly sophisticated malware campaign is exploiting the trust users place in familiar communication platforms....
A sophisticated and carefully orchestrated malware campaign has been uncovered, marking a significant evolution in how attackers...
A new report from Microsoft Threat Intelligence has exposured on Storm-1175, a financially motivated threat actor that...
In a major alert for the WordPress community, a critical security flaw has been disclosed in the...
The popular open-source identity and access management solution Keycloak has released a critical security update, version 26.5.7,...
Security researchers have disclosed two major vulnerabilities within fast-jwt, a high-performance library used to implement JSON Web...
Cybercriminals are increasingly trading custom-built malware for legitimate software to slip past corporate defenses. A new investigation...