A new Malware-as-a-Service (MaaS) platform is making waves in the cybercrime underground, promising operators an automated pipeline...
cybersecurity
Researchers at Socket have identified a massive new cluster of malicious packages linked to North Korea’s notorious...
Security researchers at StepSecurity have sounded the alarm on a compromised version of the @velora-dex/sdk package. On...
Budibase, the popular open-source low-code platform used by engineers to rapidly build internal tools, has released urgent...
A critical security vulnerability has been unmasked in Kestra, the popular open-source, event-driven orchestration platform. The flaw,...
A critical security vulnerability has been unmasked in Convoy, the modern KVM server management panel used by...
The Electron framework—the powerhouse behind heavyweights like Visual Studio Code and countless other cross-platform desktop applications —has...
A researcher has publicly disclosed a functional zero-day exploit targeting the internal signature update mechanism of Windows...
ThreatLabz has released a deep-dive analysis into the latest iterations of Xloader, a notorious information-stealing malware that...
Researchers from the University of Toronto have demonstrated that Rowhammer attacks on GPUs can move far beyond...
A new mobile threat is proving that even the most trusted app stores aren’t immune to high-level...
A new and highly sophisticated malware campaign is exploiting the trust users place in familiar communication platforms....
A sophisticated and carefully orchestrated malware campaign has been uncovered, marking a significant evolution in how attackers...
A new report from Microsoft Threat Intelligence has exposured on Storm-1175, a financially motivated threat actor that...
In a major alert for the WordPress community, a critical security flaw has been disclosed in the...
The popular open-source identity and access management solution Keycloak has released a critical security update, version 26.5.7,...
Security researchers have disclosed two major vulnerabilities within fast-jwt, a high-performance library used to implement JSON Web...
Cybercriminals are increasingly trading custom-built malware for legitimate software to slip past corporate defenses. A new investigation...
A sophisticated, multi-stage malware campaign dubbed Operation DualScript is currently bypassing traditional defenses to siphon funds from...
In the world of AI, trust is built on a simple, unspoken agreement: what stays in the...
A new and sophisticated threat has emerged in the digital landscape, turning a popular messaging app into...
As the 2026 tax season reaches its peak, cybersecurity researchers have identified a massive surge in digital...