A security vulnerability has been identified in Temporary Login, a popular WordPress plugin designed to provide secure,...
infosec
Two American cybersecurity professionals were sentenced today to four years each in federal prison. Leveraging the very...
Security researchers at Socket have uncovered a coordinated software supply chain campaign orchestrated through the GitHub account...
A German national has been extradited from Colombia to the United States to face charges for owning...
In a high-impact escalation of software supply chain attacks, security researchers have identified a major compromise of...
Security researchers have uncovered a supply-chain attack on npm targeting developers who mistakenly install the unscoped tanstack...
Security researchers at Socket have identified a major expansion of the “Mini Shai-Hulud” supply chain campaign, which...
The Cybersecurity and Infrastructure Security Agency (CISA) has officially added CVE-2026-31431 to its Known Exploited Vulnerabilities (KEV)...
The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent warning, adding a critical vulnerability in...
Security researchers have identified two significant vulnerabilities in libmodsecurity3, the core library of the ModSecurity v3 project....
Security researchers at Bitdefender Labs have uncovered a massive, ongoing “smishing” (SMS phishing) operation that called Operation...
Cybersecurity analysts at Darktrace have uncovered a new distributed denial-of-service (DDoS) botnet that specifically targets the video...
While analyzing global smishing operations spanning APAC, LATAM, Europe, and MEA, Group-IB researchers have uncovered a centralized...
Researchers at ReversingLabs (RL) have uncovered a campaign dubbed PromptMink. Attributed to the North Korean-linked group Famous...
Security researchers at Iru have detailed a sophisticated new threat targeting macOS users through the software supply...
Security researchers at Yeeth Security have uncovered a sophisticated campaign on the Open VSX marketplace, where a...
CoreDNS, the flexible and chainable DNS server written in Go, has released a critical security update to...
Wazuh, the widely deployed open-source platform for threat detection and response, has addressed a critical path traversal...
NVIDIA has released a critical software update for NVIDIA NemoClaw, addressing a high-severity vulnerability that could allow...
A sophisticated cyber-espionage operation, dubbed the GlassWorm campaign, is rapidly expanding its footprint within the open-source community....