Google has released a critical Stable Channel update for Chrome Desktop (version 138.0.7204.157/.158), addressing six security vulnerabilities,...
cybersecurity
A newly discovered Server-Side Template Injection (SSTI) vulnerability in the widely-used LaRecipe documentation tool has been assigned...
The Cybersecurity and Infrastructure Security Agency (CISA) has added CVE-2025-47812 to its Known Exploited Vulnerabilities (KEV) Catalog...
A flaw has been discovered in ImageMagick, the widely used open-source image manipulation suite, that could lead...
A new chapter in the ongoing Contagious Interview campaign has emerged, as the Socket Threat Research Team...
Researchers from Unit 42 at Palo Alto Networks have uncovered a novel backdoorβHazyBeaconβused by a threat cluster...
A critical vulnerability has been disclosed in Immich, a rapidly growing open-source project for self-hosted photo and...
A recent Cybereason investigation has shed light on a highly coordinated and destructive ransomware campaign carried out...
A critical remote code execution (RCE) vulnerability has been discovered in the Symantec Endpoint Management suite, also...
A critical XML External Entity (XXE) vulnerability has been identified in multiple versions of Apache Jackrabbit, a...
For nearly a decade, Rowhammer has haunted DRAM technology, and now it has entered a new field:...
A critical vulnerability (CVE-2025-7503) has been uncovered in an IP camera manufactured by Shenzhen Liandian Communication Technology...
Phishing remains one of the most enduring threats to cybersecurityβnot for a lack of technological defense, but...
Interlock RAT Gets PHP Makeover: New Variant Uses Steganography & ClickFix for Stealthy Infiltration
Interlock RAT Gets PHP Makeover: New Variant Uses Steganography & ClickFix for Stealthy Infiltration
Researchers from The DFIR Report, in collaboration with Proofpoint, have uncovered a stealthy and resilient variant of...
A critical security flaw in Fortinetβs FortiWeb web application firewall has been publicly weaponized, with proof-of-concept (PoC)...
Security researcher D3vil has uncovered and weaponized a kernel-level Use-After-Free (UAF) vulnerabilityβCVE-2025-38001βwithin the Linux networking stack. The...
CYFIRMA has uncovered a new threat model called RenderShock β a zero-click attack strategy that turns convenience...
In late 2024, security researchers from Unit 42 uncovered a sophisticated new variant of the malware associated...
In a warning issued by CERT/CC, multiple high-impact vulnerabilities have been identified in Gigabyte UEFI firmware that...
Axis Communications has issued a security advisory for a critical vulnerability affecting several of its flagship software...