A new deep-dive report from Mandiant (part of Google Cloud) explores the evolving threats facing the VMware...
infosec
Palo Alto Networks has released critical updates to address three distinct vulnerabilities across its security ecosystem. The...
GitLab has released critical security updates for Community Edition (CE) and Enterprise Edition (EE). Versions 18.10.3, 18.9.5,...
SonicWall has released a series of patches for its SMA 1000 series appliances to address four distinct...
A sophisticated new cyberespionage campaign is leveraging the trust of major public platforms to slip past corporate...
The Cybersecurity and Infrastructure Security Agency (CISA) has officially added a critical code injection vulnerability in Ivanti...
A new and highly efficient threat has emerged on underground cybercrime networks, signaling a significant shift in...
NVIDIA has released two significant security updates addressing high-severity vulnerabilities across its DALI and Triton Inference Server...
In the world of secure software development, sandboxing is the ultimate safety net—a controlled environment designed to...
A critical security vulnerability, tracked as CVE-2026-22679, has been identified in Weaver (Fanwei) E-cology 10.0, one of...
A critical security vulnerability, tracked as CVE-2021-4473, has been identified in the Tianxin Internet Behavior Management System....
A new investigation by Team Cymru has detailed how the proactive collection of internet telemetry allowed researchers...
A highly-sophisticated zero-day exploit has been discovered targeting Adobe Reader users, allowing attackers to steal local files...
In the fast-moving world of cybercrime, few names carry as much historical weight as Phorpiex. Also known...
In a sophisticated campaign uncovered by Microsoft Threat Intelligence, a notorious Russian military-linked threat actor known as...
IBM has released a comprehensive bulletin addressing a series of vulnerabilities within its Verify Identity Access and...
A sophisticated, high-severity social engineering campaign is currently targeting the open source developer community. The attack, which...
OpenSSL has released a comprehensive security advisory detailing seven vulnerabilities ranging from Moderate to Low severity. The...
A new Malware-as-a-Service (MaaS) platform is making waves in the cybercrime underground, promising operators an automated pipeline...
Researchers at Socket have identified a massive new cluster of malicious packages linked to North Korea’s notorious...
Security researchers at StepSecurity have sounded the alarm on a compromised version of the @velora-dex/sdk package. On...