Daniel, the developer behind the widely used open-source utility cURL, recently revealed in a blog post that...
cybersecurity
A critical vulnerability—CVE-2025-34068—has been discovered in Samsung’s WLAN AP WEA453e access points, allowing unauthenticated remote command execution...
The OpenJS Foundation has released important updates to Node.js 24.x, 22.x, and 20.x release lines, addressing two...
McAfee’s Mobile Research Team has uncovered a highly active Android malware campaign targeting Bengali-speaking users, particularly Bangladeshi...
Researchers at Cyfirma have uncovered a disturbing example of how a so-called “educational” tool can cross the...
A newly branded ransomware outfit, GLOBAL GROUP, has exploded onto the scene with an aggressive campaign that...
Broadcom has issued an urgent advisory addressing four critical vulnerabilities affecting VMware ESXi, Workstation, Fusion, and Tools,...
Google has released a critical Stable Channel update for Chrome Desktop (version 138.0.7204.157/.158), addressing six security vulnerabilities,...
A newly discovered Server-Side Template Injection (SSTI) vulnerability in the widely-used LaRecipe documentation tool has been assigned...
The Cybersecurity and Infrastructure Security Agency (CISA) has added CVE-2025-47812 to its Known Exploited Vulnerabilities (KEV) Catalog...
A flaw has been discovered in ImageMagick, the widely used open-source image manipulation suite, that could lead...
A new chapter in the ongoing Contagious Interview campaign has emerged, as the Socket Threat Research Team...
Researchers from Unit 42 at Palo Alto Networks have uncovered a novel backdoor—HazyBeacon—used by a threat cluster...
A critical vulnerability has been disclosed in Immich, a rapidly growing open-source project for self-hosted photo and...
A recent Cybereason investigation has shed light on a highly coordinated and destructive ransomware campaign carried out...
A critical remote code execution (RCE) vulnerability has been discovered in the Symantec Endpoint Management suite, also...
A critical XML External Entity (XXE) vulnerability has been identified in multiple versions of Apache Jackrabbit, a...
For nearly a decade, Rowhammer has haunted DRAM technology, and now it has entered a new field:...
A critical vulnerability (CVE-2025-7503) has been uncovered in an IP camera manufactured by Shenzhen Liandian Communication Technology...
Phishing remains one of the most enduring threats to cybersecurity—not for a lack of technological defense, but...
Interlock RAT Gets PHP Makeover: New Variant Uses Steganography & ClickFix for Stealthy Infiltration
Interlock RAT Gets PHP Makeover: New Variant Uses Steganography & ClickFix for Stealthy Infiltration
Researchers from The DFIR Report, in collaboration with Proofpoint, have uncovered a stealthy and resilient variant of...
A critical security flaw in Fortinet’s FortiWeb web application firewall has been publicly weaponized, with proof-of-concept (PoC)...