The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
Scanning for vulnerabilities in the right places is critically important in securing your Linux environment. While vulnerability scanning initially involved sc…
Researchers spotted a severe security vulnerability in the Bosch thermostat that exposed users to privacy…Serious Vulnerability Spotted In Bosch Thermostat on …
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a now-patched critical flaw impacting Ivanti Endpoint Manager Mobile (EPMM) …
Vulnerable Docker services are being targeted by a novel campaign in which the threat actors are deploying XMRig cryptocurrency miner as well as the 9Hits View…
In today's digital landscape, traditional password-only authentication systems have proven to be vulnerable to a wide range of cyberattacks. To safeguard criti…
GitHub has revealed that it has rotated some keys in response to a security vulnerability that could be potentially exploited to gain access to credentials wit…
Google on Tuesday released updates to fix four security issues in its Chrome browser, including an actively exploited zero-day flaw.The issue, tracked as CVE-2…
Over 178,000 SonicWall firewalls exposed over the internet are exploitable to at least one of the two security flaws that could be potentially exploited to cau…
Heads up, GitLab users! It’s time to upgrade to the latest GitLab versions, as the…GitLab Addressed A Critical Zero-Click Vulnerability With Latest Updates on …
Ivanti has warned users of two zero-day vulnerabilities in its Connect Secure and Policy Secure…Ivanti Patches Connect Secure Zero-day Flaws Under Attack on La…
Thousands of WordPress sites using a vulnerable version of the Popup Builder plugin have been compromised with a malware called Balada Injector.First documente…
Vulnerabilities have been discovered in Bluetooth technology that affect various operating systems. As Linux admins, infosec professionals, Internet security e…
The cyber attacks targeting the energy sector in Denmark last year may not have had the involvement of the Russia-linked Sandworm hacking group, new findings f…
Juniper Networks has released updates to fix a critical remote code execution (RCE) vulnerability in its SRX Series firewalls and EX Series switches.The issue,…
A 29-year-old Ukrainian national has been arrested in connection with running a “sophisticated cryptojacking scheme,” netting them over $2 million (€1.8 millio…
As many as five different malware families were deployed by suspected nation-state actors as part of post-exploitation activities leveraging two zero-day vulne…
GitLab has released security updates to address two critical vulnerabilities, including one that could be exploited to take over accounts without requiring any…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical security vulnerability impacting Microsoft SharePoint Server to its Known…
Cybersecurity researchers have developed a proof-of-concept (PoC) code that exploits a recently disclosed critical flaw in the Apache OfBiz open-source Enterpr…
Cisco has released software updates to address a critical security flaw impacting Unity Connection that could permit an adversary to execute arbitrary commands…
IT professionals have developed a sophisticated understanding of the enterprise attack surface – what it is, how to quantify it and how to manage it. The proce…
This week marked the arrival of first monthly scheduled updates from Microsoft for the year…Microsoft Rolls Out January 2024 Patch Tuesday With 49 Bug Fixes on…
Microsoft has addressed a total of 48 security flaws spanning its software as part of its Patch Tuesday updates for January 2024.Of the 48 bugs, two are rated …
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added six security flaws to its Known Exploited Vulnerabilities (KEV) catalog, citing evid…