The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
U.S. cybersecurity and intelligence agencies have released a joint advisory about a cybercriminal group known asScattered Spiderthat's known to employ sophisti…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added three security flaws to its Known Exploited Vulnerabilities (KEV) catalog ba…
The threat actors behind theRhysida ransomwareengage in opportunistic attacks targeting organizations spanning various industry sectors.The advisory comes cour…
VMware is warning of a critical and unpatched security flaw in Cloud Director that could be exploited by a malicious actor to get around authentication protect…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesdayaddeda high-severity flaw in the Service Location Protocol (SLP) to its Known Expl…
F5 is warning of active abuse of a critical security flaw in BIG-IP less than a week after its public disclosure, resulting in the execution of arbitrary syste…
Atlassian has warned of a critical security flaw in Confluence Data Center and Server that could result in "significant data loss if exploited by an unauthenti…
F5 has alerted customers of a critical security vulnerability impacting BIG-IP that could result in unauthenticated remote code execution.The issue, rooted in …
The prolific threat actor known asScattered Spiderhas been observed impersonating newly hired employees in targeted firms as a ploy to blend into normal on-hir…
Virtualization services provider VMware has alerted customers to the existence of a proof-of-concept (PoC) exploit for a recently patched security flaw in Aria…
The AvosLocker ransomware gang has been linked to attacks against critical infrastructure sectors in the U.S., with some of them detected as recently as May 20…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesdayaddeda high-severity flaw in Adobe Acrobat Reader to its Known Exploited Vulnerabili…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesdayaddeda high-severity flaw in Adobe Acrobat Reader to its Known Exploited Vulnerabili…
Microsoft has linked the exploitation of a recently disclosed critical flaw in Atlassian Confluence Data Center and Server to a nation-state actor it tracks as…
The maintainers of theCurl libraryhave released an advisory warning of two security vulnerabilities that are expected to be addressed as part of an forthcoming…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesdayaddedtwo security flaws to its Known Exploited Vulnerabilities (KEV) catalog due t…
Microsoft has detailed a new campaign in which attackers unsuccessfully attempted to move laterally to a cloud environmentthrough an SQL Server instance."The a…
The U.S. Federal Bureau of Investigation (FBI) is warning of a new trend of dual ransomware attacks targeting the same victims, at least since July 2023."Durin…
Cisco is warning of attempted exploitation of a security flaw in its IOS Software and IOS XE Software that could permit an authenticated remote attacker to ach…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday warned that multiple nation-state actors are exploiting security flaws in Fortinet…
Risk and financial advisory solutions provider Kroll on Friday disclosed that one of its employees fell victim to a "highly sophisticated" SIM swapping attack.…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) hasaddeda critical security flaw in Adobe ColdFusion to its Known Exploited Vulnerabilities (K…
Nearly 2,000 Citrix NetScaler instances have been compromised with a backdoor by weaponizing a recently disclosed critical security vulnerability as part of a …
Germany's Federal Office for the Protection of the Constitution (BfV) has warned of cyber attacks targeting Iranian persons and organizations in the country si…