The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
Addressing cyber threats before they have a chance to strike or inflict serious damage is by far the best security approach any company can embrace. Achieving …
Bogus software update lures are being used by threat actors to deliver a new stealer malware called CoinLurker."Written in Go, CoinLurker employs cutting-edge …
A little-known cyber espionage actor known as The Mask has been linked to a new set of attacks targeting an unnamed organization in Latin America twice in 2019…
As attackers threaten key utility facilities, CISA warns water and waste facilities to protect online…Water Facilities Must Secure Exposed HMIs – Warns CISA on…
This month marked the release of Microsoft’s last scheduled updates. With the December 2024 Patch…Microsoft December Patch Tuesday Arrived With 70+ Bug Fixes o…
We Linux security admins have a new challenge on our hands: several Qualcomm processors/SoCs are still vulnerable to Spectre-related attacks . Despite its prom…
Linux admins and infosec professionals tasked with safeguarding sensitive communications face increasing risks with emerging privacy threats like China-sponsor…
Linux admins and infosec professionals tasked with safeguarding sensitive communications face increasing risks with emerging privacy threats like China-sponsor…
The recently discovered PUMAKIT loadable kernel module (LKM) rootkit stands out as an advanced example of multi-stage malware, operating over multiple stages t…
Cybersecurity researchers have discovered a new PHP-based backdoor called Glutton that has been put to use in cyber attacks targeting China, the United States,…
The Security Service of Ukraine (SBU or SSU) has exposed a novel espionage campaign suspected to be orchestrated by Russia's Federal Security Service (FSB) tha…
With virtually every aspect of your business in digital form now, it is far past…How to Improve Your Cyber Resilience by Strengthening User Privileges on Lates…
Germany's Federal Office of Information Security (BSI) has announced that it has disrupted a malware operation called BADBOX that came preloaded on at least 30…
A now-removed GitHub repository that advertised a WordPress tool to publish posts to the online content management system (CMS) is estimated to have enabled th…
Game hacking has become a pervasive issue in the gaming industry, testing notions of fairness and redefining how gamers engage with their favorite titles. Desp…
A security flaw has been disclosed in OpenWrt's Attended Sysupgrade (ASU) feature that, if successfully exploited, could have been abused to distribute malicio…
Attention Linux administrators and Python developers! A crucial security alert regarding a high-severity vulnerability, CVE-2024-12254 , has just been issued, …
Iran-affiliated threat actors have been linked to a new custom malware that's geared toward IoT and operational technology (OT) environments in Israel and the …
AlmaLinux , launched as an open-source, community-driven replacement for CentOS , has quickly established itself as an enterprise and developer-friendly Linux …
Are you a junior Linux sysadmin looking to securely manage your systems without diving into the complexities of the command line? Protecting your environment c…
A global law enforcement operation has failed 27 stresser services that were used to conduct distributed denial-of-service (DDoS) attacks and took them offline…
The Russian nation-state actor tracked as Secret Blizzard has been observed leveraging malware associated with other threat actors to deploy a known backdoor c…
A newly devised technique leverages a Windows accessibility framework called UI Automation (UIA) to perform a wide range of malicious activities without tippin…
Cybersecurity researchers have discovered a new version of the ZLoader malware that employs a Domain Name System (DNS) tunnel for command-and-control (C2) comm…