Vidar, once a straightforward credential stealer, has officially completed its transformation into a “multi-stage, stealth-driven attack framework”....
infosec
A recent report from G DATA highlights a sophisticated campaign targeting users of Foxit Software, a popular...
A critical update has been issued for Gemini CLI (@google/gemini-cli) and the run-gemini-cli GitHub Action to address...
Two significant vulnerabilities have been disclosed in Spring AI that could allow attackers to manipulate database queries...
Security researchers have sounded the alarm on a critical vulnerability in LiteLLM, a massively popular open-source gateway...
Apache MINA is widely recognized as a foundational network application framework, designed to help users easily develop...
Researchers at Akamai have discovered that a previous fix for a high-profile exploit used by the Russian-linked...
Welcome to your Monday morning vulnerability digest. As we close out the final full week of April,...
A new research report from Kaspersky Security Services has pulled back the curtain on a fundamental architectural...
A critical vulnerability has been disclosed in Pipecat, the popular open-source Python framework used to build voice...
In an era where precision timing and positioning are the invisible pillars of our global infrastructure, a...
A critical security flaw has been discovered in the Intrado 911 Emergency Gateway (EGW). The vulnerability, designated...
A sophisticated new threat actor, UNC6692, is redefining the art of the initial breach. According to a...
The ransomware landscape is witnessing a sophisticated shift in how data is stolen. While most cybercriminal groups...
A security vulnerability has been unearthed in the DRC INSIGHT software—a platform widely used for proctoring academic...
In a major update for the Java ecosystem, several critical vulnerabilities have been disclosed in Spring Boot,...
Apache ActiveMQ, the world’s most popular open-source message broker, is currently facing a series of “Important” security...
In the world of rapid development, n8n has become a favorite for technical teams looking to merge...
Between September and November 2025, a massive wave of suspicious activity targeted industrial control systems worldwide, proving...
For decades, the cybersecurity world believed Stuxnet was the undisputed pioneer of state-grade cyber sabotage. SentinelLABS has...
A sophisticated cyber espionage campaign has been uncovered targeting individuals across East Asia, leveraging a deceptive mix...
Researchers at Rapid7 have uncovered Kyber, a specialized ransomware family that recently hit enterprise environments with a...