Huntress has issued a critical alert about what appears to be a zero-day vulnerability in SonicWall Secure...
cybersecurity
During WWDC 2025, Apple unveiled a new containerization framework that allows applications to run in isolated containers...
A study from the New Jersey Institute of Technology has exposed a massive web of hidden vulnerabilities...
ShadowSyndicate’s Global Ransomware Empire Blurs Lines Between Cybercrime and Geopolitical Espionage
ShadowSyndicate’s Global Ransomware Empire Blurs Lines Between Cybercrime and Geopolitical Espionage
In a recent investigation, cybersecurity firm Intrinsec has illuminated the sprawling infrastructure of ShadowSyndicate, a clandestine threat...
A recent vulnerability note issued by CERT/CC disclosured three critical security flaws in Partner Software’s flagship platforms—Partner...
A critical vulnerability has been uncovered in the @nestjs/devtools-integration package—a component of the popular NestJS framework for...
Cursor, an AI-powered code editor that promises to “understand your codebase and help you code faster,” has...
Check Point Research (CPR) has detailed a previously undocumented Chinese-affiliated threat actor—Storm-2603—linked to aggressive campaigns exploiting Microsoft...
The Squid Project has issued an urgent advisory for CVE-2025-54574 (CVSS 9.3), a heap buffer overflow bug...
APT36—also known as Transparent Tribe—has long been linked to Pakistan-backed cyber-espionage operations. But as uncovered in a...
In a recently disclosed advisory, HashiCorp has patched a critical vulnerability—CVE-2025-6000—in Vault, its industry-standard secrets management solution....
In an expose, DomainTools has peeled back the curtain on one of the most sophisticated and economically...
The eSentire Threat Response Unit (TRU) exposed a detailed and technically sophisticated ransomware campaign orchestrated by the...
Proofpoint has revealed a persistent wave of adversary-in-the-middle (AiTM) phishing campaigns that exploit Microsoft OAuth applications to...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent advisory about a critical vulnerability—CVE-2025-8286—impacting...
The Cloudflare Email Security team has exposed a wave of phishing attacks that abuse link wrapping services—typically...
Cisco Talos has released its latest Threat Intelligence Report for Q2 2025, revealing a threat landscape increasingly...
LockBit isn’t just another ransomware group—it’s an evolving threat that continues to adapt its tactics to evade...
Palo Alto Networks has announced its acquisition of Israeli cybersecurity firm CyberArk for nearly $25 billion, marking...
End-to-end encrypted email provider ProtonMail has recently unveiled Proton Authenticator, a cross-platform multi-factor authentication (MFA) app with...
WithSecure has uncovered a stealthy campaign using legitimate Remote Monitoring and Management (RMM) tools embedded in PDF...
The cybersecurity firm Gen Digital—formerly known as Symantec and Norton—has recently submitted the decryption key and tool...