IBM has released a comprehensive bulletin addressing a series of vulnerabilities within its Verify Identity Access and...
infosec
A sophisticated, high-severity social engineering campaign is currently targeting the open source developer community. The attack, which...
OpenSSL has released a comprehensive security advisory detailing seven vulnerabilities ranging from Moderate to Low severity. The...
A new Malware-as-a-Service (MaaS) platform is making waves in the cybercrime underground, promising operators an automated pipeline...
The 1,700-Package Blitz: North Koreaβs “Contagious Interview” Infiltrates Every Major Dev Registry
The 1,700-Package Blitz: North Koreaβs “Contagious Interview” Infiltrates Every Major Dev Registry
Researchers at Socket have identified a massive new cluster of malicious packages linked to North Koreaβs notorious...
Security researchers at StepSecurity have sounded the alarm on a compromised version of the @velora-dex/sdk package. On...
A new intelligence report from Proofpoint reveals that TA416, a sophisticated threat actor aligned with Chinese state...
Budibase, the popular open-source low-code platform used by engineers to rapidly build internal tools, has released urgent...
A critical security vulnerability has been unmasked in Kestra, the popular open-source, event-driven orchestration platform. The flaw,...
A critical security vulnerability has been unmasked in Convoy, the modern KVM server management panel used by...
The Electron frameworkβthe powerhouse behind heavyweights like Visual Studio Code and countless other cross-platform desktop applications βhas...
In the world of cybercrime, malware is typically designed for one of two things: stealthy espionage or...
A researcher has publicly disclosed a functional zero-day exploit targeting the internal signature update mechanism of Windows...
Cisco Talos has revealed a major automated credential harvesting campaign, tracked as UAT-10608, that has already compromised...
ThreatLabz has released a deep-dive analysis into the latest iterations of Xloader, a notorious information-stealing malware that...
Researchers from the University of Toronto have demonstrated that Rowhammer attacks on GPUs can move far beyond...
A new mobile threat is proving that even the most trusted app stores aren’t immune to high-level...
Cybersecurity researchers have shed light on a sophisticated, financially motivated threat actor that has been quietly building...
A new and highly sophisticated malware campaign is exploiting the trust users place in familiar communication platforms....
A sophisticated and carefully orchestrated malware campaign has been uncovered, marking a significant evolution in how attackers...