Security researcher Ron Ben Yizhak from SafeBreach Labs has uncovered a novel attack technique dubbed Endpoint Mapper...
Vulnerability
Security researcher Zhongquan Li has uncovered a critical flaw in macOS InstallAssistant, tracked as CVE-2025-24103 with a...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a high-severity alert for a missing authentication...
A newly disclosed vulnerability in 7-Zip, tracked as CVE-2025-55188, has been identified by security researcher Landon. The...
Xerox has released a security update for FreeFlow Core, addressing two high-impact vulnerabilities that could allow attackers...
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a security advisory warning about a critical authentication...
Security researchers at ESET have uncovered a zero-day path traversal vulnerability in the Windows version of WinRAR...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a risk evaluation warning about multiple high-severity...
A severe security vulnerability has been uncovered in the Ruby implementation of JSON Web Encryption (JWE), tracked...
Ubiquiti has issued a comprehensive security advisory addressing multiple vulnerabilities in its UniFi Connect product line, affecting...
Yesterday, Microsoft issued a critical security advisory addressing a newly identified vulnerability—CVE-2025-53786—in hybrid Microsoft Exchange environments. The...
JPCERT/CC has issued a vulnerability note detailing two critical security flaws in SATO Corporation’s widely deployed industrial...
The Cybersecurity and Infrastructure Security Agency (CISA) has released an in-depth Malware Analysis Report warning of a...
A critical security vulnerability has been discovered in the Everest Forms plugin, a widely used WordPress plugin...
In a critical advisory issued by the Cybersecurity and Infrastructure Security Agency (CISA), newly discovered vulnerabilities in...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning for organizations and government entities:...
A critical vulnerability—CVE-2025-54594 (CVSS 9.1)—has been identified in the React Native Bottom Tabs project, exposing the repository...
Adobe has released urgent patches for two critical vulnerabilities affecting Adobe Experience Manager (AEM) Forms on JEE,...
The Imperva Threat Research team sounded the alarm on a coordinated exploitation campaign targeting outdated instances of...
Rockwell Automation has issued a security advisory addressing three memory abuse vulnerabilities in its Arena Simulation software,...
Trend Micro has issued an urgent advisory for two critical command injection vulnerabilities affecting its Apex One...
If you are using the iOS version of Proton Authenticator, it is imperative that you visit the...