B. Braun Melsungen AG has issued a high-priority security advisory warning of three severe vulnerabilities affecting its...
cybersecurity
CERT Polska has sounded the alarm after uncovering a spear phishing campaign that targeted Polish organizations using...
CYFIRMA’s Threat Intelligence Team has published an in-depth analysis of DuplexSpy RAT, a powerful and modular remote...
The Socket Threat Research Team has disclosed two dangerous npm packages that masquerade as helpful developer tools—but...
A new disclosure by researchers from IMDEA Networks, Radboud University, and KU Leuven has revealed a novel...
The Go team has rolled out versions 1.24.4 and 1.23.10, addressing three critical security vulnerabilities affecting core...
FortiGuard Labs has uncovered a renewed phishing campaign that leverages the eight-year-old CVE-2017-0199 vulnerability to deploy FormBook,...
Kaspersky researchers have uncovered a fresh wave of attacks exploiting CVE-2024-3721 to deploy a revamped variant of...
Nintendo’s recently launched Switch 2 console has already had a vulnerability discovered by enthusiasts. Security researcher David...
The Jenkins community has issued a high-severity security advisory for a newly disclosed vulnerability in the Gatling...
A new report by Symantec Threat Hunter Team uncovers that several widely-used Chrome extensions—some with millions of...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a critical advisory warning of multiple high-impact...
Acronis International GmbH has issued a critical security advisory addressing a series of high-severity vulnerabilities in its...
Browser security firm LayerX has identified a covert network of malicious Chrome extensions acting as “sleeper agents”—seemingly...
LlamaIndex, a widely adopted framework for building LLM-powered applications with over 3.9 million monthly downloads, has been...
Amazon has issued a security advisory for a memory corruption vulnerability in the widely used FreeRTOS-Plus-TCP stack....
In a recent security advisory, MIM Software Inc. disclosed a high-severity vulnerability, CVE-2025-1701, affecting the MIM Admin...
Researchers at CloudSEK have uncovered a new variant of the Atomic macOS Stealer (AMOS) targeting macOS users...
Weaponizing Group Policy: Custom Client-Side Extensions as a Stealthy Backdoor into Active Directory
Weaponizing Group Policy: Custom Client-Side Extensions as a Stealthy Backdoor into Active Directory
A newly published report by Antoine Cauchois, Staff Research Engineer at Tenable, reveals a stealthy persistence technique...