Invariant Labs has revealed a critical vulnerability in the widely used GitHub MCP server that enables attackers...
cybersecurity
Akamai security researcher Yuval Gordon has uncovered an Active Directory privilege escalation vulnerability in Windows Server 2025,...
In a revelation for web security, researchers from Tsinghua University have exposed two novel, off-path attacks —...
Researchers from KU Leuven’s DistriNet group have unveiled a new high-severity design flaw in mesh Wi-Fi networks....
A stealthy new macOS infostealer named AppleProcessHub has attracted a lot of attention from security experts, with...
Siemens has issued a security advisory to address an out-of-bounds read vulnerability in its SiPass integrated access...
A deceptively crafted fake Google Meet page has surfaced on compromised WordPress sites, tricking unsuspecting visitors into...
CYFIRMA researchers have uncovered a highly advanced Android remote access trojan (RAT), dubbed GhostSpy, capable of full-spectrum...
In the Windows 11 version 22H2 released by Microsoft in September 2022, a new feature called Smart...
A recently disclosed vulnerability in WSO2 products, identified as CVE-2024-6914, poses a severe security threat to organizations...
A newly disclosed critical vulnerability in Sony’s SNC-series network cameras—tracked as CVE-2025-5124 with a CVSS score of...
AhnLab and South Korea’s National Cyber Security Center (NCSC) have released a detailed joint report on a...
Elastic Security Labs has identified a new malware family dubbed “DOUBLELOADER” that leverages ALCATRAZ—a game-hacking inspired obfuscator—to...
Socket’s Threat Research Team has uncovered an active and expanding malware campaign in the npm ecosystem. More...
Recorded Future’s Insikt Group has uncovered a new cyber-espionage campaign by Russia-aligned threat actor TAG-110 targeting public...
LayerX has uncovered more than 40 malicious browser extensions involved in three coordinated phishing campaigns—many still live...
Threat actors have ramped up a new social engineering campaign, dubbed “ClickFix,” where fake CAPTCHA prompts embedded...
In recent breach incidents, threat actors have evolved their methods beyond traditional intrusion tactics, now opting for...
Sekoia.io’s Threat Detection & Research (TDR) team has unveiled a novel adversary, dubbed “ViciousTrap”, that hijacks compromised...
ABB has issued a comprehensive cybersecurity advisory revealing 32 security vulnerabilities impacting its ASPECT Building Management System...
Trend Micro reveals a growing threat on TikTok, where AI-generated videos deceive users into running malicious PowerShell...
Europol and Eurojust have dismantled the digital backbone of several major malware strains used in ransomware operations....