The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
Microsoft on Friday revealed that it was the target of a nation-state attack on its corporate systems that resulted in the theft of emails and attachments from…
The recent wave of cyber attacks targeting Albanian organizations involved the use of a wiper called No-Justice.The findings come from cybersecurity company Cl…
A new phishing attack has been observed leveraging a Russian-language Microsoft Word document to deliver malware capable of harvesting sensitive information fr…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added three security flaws to its Known Exploited Vulnerabilities (KEV) catalog ba…
An advanced strain of malware masquerading as a cryptocurrency miner has managed to fly the radar for over five years, infecting no less than one million devic…
The Iranian threat actor known asTortoiseshellhas been attributed to a new wave of watering hole attacks that are designed to deploy a malware dubbed IMAPLoade…
A new deceptive package hidden within the npm package registry has been uncovered deploying an open-source rootkit called r77, marking the first time a rogue p…
Cybersecurity company Trend Micro hasreleasedpatches and hotfixes to address a critical security flaw in Apex One and Worry-Free Business Security solutions fo…
We do not often talk about Linux malware because it is often quickly patched up and not exploited much in the wild compared to Windows/macOS. However, there ha…
Adobe'sPatch Tuesday updatefor September 2023 comes with a patch for a critical actively exploited security flaw in Acrobat and Reader that could permit an att…
Microsoft Internet Information Services (IIS) is a web server software package designed for Windows Server. Organizations commonly use Microsoft IIS servers to…
Red Hat JBoss Web Server 5.7.4 zip release is now available for Red Hat Enterprise Linux 7, Red Hat Enterprise Linux 8, Red Hat Enterprise Linux 9, and Windows…
A coordinated law enforcement effort codenamedOperation Duck Hunthas felledQakBot, a notorious Windows malware family that's estimated to have compromised over…
The SmokeLoader malware is being used to deliver a new Wi-Fi scanning malware strain calledWhiffy Reconon compromised Windows machines."The new malware strain …
A high-severity security flaw has been disclosed in the WinRAR utility that could be potentially exploited by a threat actor to achieve remote code execution o…
"Variants of CL0p were initially only found on Windows systems, but the gang also developed a Linux variant toward the end of 2022, reflecting the diversity of…
Users in Latin America (LATAM) are the target of a financial malware calledJanelaRATthat's capable of capturing sensitive information from compromised Microsof…
A new information malware strain calledStatc Stealerhas been found infecting devices running Microsoft Windows to siphon sensitive personal and payment informa…
Introduced in 1999, Microsoft Active Directory is the default identity and access management service in Windows networks, responsible for assigning and enforci…
Cybersecurity researchers have discovered a new high-severity security flaw in PaperCut print management software for Windows that could result in remote code …
Threat actors have been observed using Amazon Web Services ( AWS ) 's System Manager (SSM) agent as a Remote Access Trojan (RAT) on Linux and Windows machines.
Microsoft Word documents exploiting known remote code execution flaws are being used as phishing lures to drop malware calledLokiBoton compromised systems."Lok…
A ransomware operation known as Akira has been seen encrypting VMware ESXi virtual machines using a Linux encryptor after a couple of months of targeting Windo…
Red Hat JBoss Web Server 5.7.3 zip release is now available for Red Hat Enterprise Linux 7, Red Hat Enterprise Linux 8, Red Hat Enterprise Linux 9, and Windows…