The Qualys Threat Research Unit (TRU) has unveiled two interconnected privilege escalation vulnerabilities—CVE-2025-6018 and CVE-2025-6019—that can allow...
cybersecurity
Unit 42 has uncovered two newly evolved variants of the KimJongRAT malware, one using traditional PE (Portable...
A dangerous Linux privilege escalation vulnerability, CVE-2023-0386, has officially entered the CISA Known Exploited Vulnerabilities (KEV) Catalog...
The Cloud Software Group has issued a security bulletin addressing two critical vulnerabilities in NetScaler ADC (formerly...
Veeam, a global leader in data protection and disaster recovery solutions, has issued a critical security update...
Google has rolled out an important security update for the Stable Channel of Chrome, bringing the version...
German industrial automation manufacturer WAGO GmbH & Co. KG has released critical security updates for its WAGO...
The North Korean threat actor Kimsuky has been spotted deploying yet another advanced phishing campaign—this time leveraging...
As the adoption of generative AI accelerates across industries, enterprises are simultaneously raising their expectations for the...
OpenAI has announced the signing of a $200 million contract with the United States Department of Defense...
Gamers and PC enthusiasts relying on ASUS Armoury Crate to manage their high-performance systems are urged to...
Teleport, a leading platform for secure infrastructure access, has disclosed a critical remote authentication bypass vulnerability—tracked as...
A newly disclosed security flaw in the MCP Inspector, a tool designed to test and debug Machine...
In June 2025, the SUSE Security Team disclosed critical vulnerabilities in sslh, a lightweight protocol multiplexer used...
BeyondTrust has issued an urgent security advisory for a high-severity vulnerability affecting its flagship products—Remote Support (RS)...
In a recent investigation, threat intelligence firm CloudSEK uncovered a stealthy, fileless malware campaign leveraging social engineering...
In a sweeping campaign that blends social engineering with software subversion, a newly identified threat actor dubbed...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added two high-risk vulnerabilities to its Known Exploited...
A recent investigation by SpecterOps has uncovered a chain of critical vulnerabilities in OneLogin’s Active Directory (AD)...
A tool named PoCGen is revolutionizing how the security community generates Proof-of-Concept (PoC) exploits for vulnerabilities in...