In a recent deep-dive analysis, Palo Alto Networks’ Unit 42 revealed disturbing insights into a surge of...
Vulnerability
A newly disclosed vulnerability in HIKVISION’s widely deployed security management platform, applyCT (previously known as HikCentral), has...
Cymulate Research Labs has revealed Anthropic’s Filesystem MCP Server vulnerabilities. Two newly disclosed flaws—CVE-2025-53110 and CVE-2025-53109—exposes systems...
A critical security flaw has been discovered in Lucee, the high-performance, open-source CFML (ColdFusion Markup Language) application...
Microsoft recently published a blog post highlighting its youngest security researcher to date—an individual who began collaborating...
Before 2010, Industrial Control Systems (ICS) mostly operated within isolated Operational Technology (OT) networks and received little...
A newly discovered vulnerability in the Linux kernel has been assigned CVE-2025-38089, affecting systems running Network File...
Actively Exploited Google Chrome Zero-Day (CVE-2025-6554) Added to CISA’s KEV Catalog, PoC Available
Actively Exploited Google Chrome Zero-Day (CVE-2025-6554) Added to CISA’s KEV Catalog, PoC Available
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has officially added a high-severity vulnerability in Google Chrome...
Grafana Labs has issued an urgent security advisory addressing four critical vulnerabilities affecting two of its key...
Cisco has disclosed a critical vulnerability in its Unified Communications Manager (Unified CM) and Session Management Edition...
A newly disclosed vulnerability in dpkg-deb, the core utility responsible for handling Debian package archives, has raised...
A critical remote code execution (RCE) vulnerability has been discovered in Wing FTP Server, a popular cross-platform...
A newly disclosed high-severity vulnerability in the popular Forminator plugin threatens the security of hundreds of thousands...
Netflix Conductor, the powerful microservices orchestration engine used to automate complex workflows, has been found vulnerable to...
DataEase, an open-source business intelligence (BI) platform known for its ease of use and data visualization capabilities,...
A vulnerability was found in Graylog—a popular Security Information and Event Management (SIEM) solution. Tracked as CVE-2025-53106...
The Frappe Framework, a widely used full-stack application platform that powers ERPNext, has been found vulnerable to...
Two critical vulnerabilities recently disclosed by CERT@VDE, in coordination with industrial automation company Pilz, highlight a sobering...
The Electron team has published a new security advisory addressing two significant vulnerabilities that could impact a...
In the golden age of remote gaming and self-hosted services, Sunshine has emerged as a popular and...
In the world of Linux privilege management, Sudo reigns supreme. It’s the gatekeeper, the doorman, the bouncer...
A critical security flaw tracked as CVE-2025-6543 is being actively exploited in the wild, prompting urgent warnings...