A newly disclosed vulnerability in the widely used tar-fs NPM package has raised alarms across the software...
cybersecurity
Between September and December 2024, JPCERT/CC uncovered a sophisticated cyber campaign leveraging CrossC2, an extension tool designed...
Phishing and online scams are no longer confined to poorly written emails and obvious fake websites. A...
In a new report, CYFIRMA has detailed an experimental attack framework called REVENANT, which demonstrates how adversaries...
Rockwell Automation has issued a critical security advisory regarding a remote code execution (RCE) vulnerability affecting its...
Pakistan has found itself in the crosshairs of a sophisticated ransomware campaign, as the country’s National Cyber...
Pirated games have long been a risky endeavor, but recent research from Trellix reveals just how dangerous...
Rockwell Automation has released a security advisory addressing a critical security bypass vulnerability in its FactoryTalk Linx...
Trend Micro’s latest research sheds light on Crypto24, a highly coordinated ransomware operation that blends legitimate administrative...
CERT/CC has issued a vulnerability note warning about a newly discovered flaw in multiple HTTP/2 implementations that...
It turns out that even seasoned professionals are not entirely immune to the deceptive tactics of phishing...
Under normal circumstances, software developers recommend that users promptly update to the latest version after a release....
Bitdefender Labs has uncovered a new cyber-espionage group, dubbed “Curly COMrades”, believed to operate in support of...
A critical security vulnerability has been disclosed in the widely used Database for Contact Form 7, WPforms,...
FIDO-based passkeys are widely regarded as one of the strongest defenses against phishing and account takeover (ATO)...
Cisco Talos has uncovered an ongoing and highly active malware campaign deploying a sophisticated, modular framework dubbed...
Siemens ProductCERT has issued a high-severity security advisory (SSA-493787) warning of a critical vulnerability in its SIMATIC...
In a detailed investigation, Infoblox Threat Intel has unmasked VexTrio as a sprawling cybercriminal network whose operations...
Recently, the North Korean hacking group Kimsuky suffered a breach resulting in the leak of 8.9 GB...
Cymulate Research Labs has uncovered a critical zero-click NTLM credential leakage vulnerability—CVE-2025-50154—that bypasses Microsoft’s April 2025 patch...
GitLab has announced the release of versions 18.2.2, 18.1.4, and 18.0.6 for both the Community Edition (CE)...
The backdoor vulnerability in XZ-Utils first came to light in March 2024, and had it not been...