The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
The Russian nation-state actor tracked as Secret Blizzard has been observed leveraging malware associated with other threat actors to deploy a known backdoor c…
A newly devised technique leverages a Windows accessibility framework called UI Automation (UIA) to perform a wide range of malicious activities without tippin…
Cybersecurity researchers have discovered a new version of the ZLoader malware that employs a Domain Name System (DNS) tunnel for command-and-control (C2) comm…
IBM recently disclosed a critical security vulnerability affecting their Db2 database software on Linux and UNIX platforms, identified as CVE-2024-37071 . This…
Regain control of SaaS sprawl with Day One discovery of all SaaS and GenAI accounts along with workflows to help you mitigate security risks, curb rogue app us…
Microsoft closed out its Patch Tuesday updates for 2024 with fixes for a total of 72 security flaws spanning its software portfolio, including one that it said…
Ivanti has released security updates to address multiple critical flaws in its Cloud Services Application (CSA) and Connect Secure products that could lead to …
What's the cost of a single click? For too many businesses, it could mean locked systems, stolen funds, or customer data exposed to the highest bidder.
Users of Cleo-managed file transfer software are being urged to ensure that their instances are not exposed to the internet following reports of mass exploitat…
Recently discovered vulnerabilities in OpenWrt , an open-source firmware for routers and embedded devices, have cast light on new network security flaws that a…
Cybersecurity researchers have shed light on a sophisticated mobile phishing (aka mishing) campaign that's designed to distribute an updated version of the Ant…
Linux admins and infosec professionals tasked with safeguarding sensitive communications face increasing risks with emerging privacy threats like China-sponsor…
In today’s rapidly evolving threat landscape, safeguarding your organization against cyberattacks is more critical than ever. Traditional penetration testing (…
A suspected China-nexus cyber espionage group has been attributed to an attacks targeting large business-to-business IT service providers in Southern Europe as…
Cyber attackers never stop inventing new ways to compromise their targets. That's why organizations must stay updated on the latest threats. Here's a quick run…
The Computer Emergency Response Team of Ukraine (CERT-UA) has warned of a new set of cyber attacks that it said were aimed at defense companies in the country …
Imagine a security system so exact it seems nearly surgical. Designed by the National Security Agency (NSA), Security-Enhanced Linux (SELinux) is precisely tha…
The threat actors linked to the Black Basta ransomware have been observed switching up their social engineering tactics, distributing a different set of payloa…
This week’s cyber world is like a big spy movie. Hackers are breaking into other hackers’ setups, sneaky malware is hiding in popular software, and AI-powered …
A type confusion vulnerability within the Linux Kernel's nftables subsystem - CVE-2024-42070 - was recently discovered, requiring urgent mitigation through ker…
GStreamer is an extensive multimedia framework used by many popular Linux distributions, handling video, audio, and other media files for various applications …
Details have emerged about a now-patched security flaw in the DeepSeek artificial intelligence (AI) chatbot that, if successfully exploited, could permit a bad…
OpenSUSE Leap Micro 6.1 delivers cutting-edge features that are sure to catch the eye of security-conscious Linux admins and infosec professionals. This releas…
The Linux kernel community recently issued an EOL announcement regarding the 6.11 kernel series, urging sysadmins to upgrade quickly to 6.12 . This announcemen…