Stay Informed

Cybersecurity News

Home / News

Clear

Quick searches: Linux Windows Microsoft 365 AWS OVH VMware WordPress Fortinet Citrix VPN

What it means for your servers

The security stories that matter, explained by our team — with the concrete steps to take.

Latest headlines from security outlets

Collected every two hours from specialised publications — each link leads to the original article.

The Hacker News
The Hacker News Vulnerabilities

CacheWarp Attack: New Vulnerability in AMD SEV Exposes Encrypted VMs

A group of academics has disclosed a new "software fault attack" on AMD's Secure Encrypted Virtualization (SEV) technology that could be potentially exploited …

Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses
Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses Vulnerabilities

Multiple Vulnerabilities Found In PureVPN – One Remains Unpatched

Researchers spotted a couple of security vulnerabilities in PureVPN Desktop clients for Linux that impact…Multiple Vulnerabilities Found In PureVPN – One Remai…

Linux

The Hacker News
The Hacker News Breaches & leaks

Zero-Day Alert: Lace Tempest Exploits SysAid IT Support Software Vulnerability

The threat actor known as Lace Tempest has been linked to the exploitation of a zero-day flaw in SysAid IT support software in limited attacks, according to ne…

The Hacker News
The Hacker News Vulnerabilities

CISA Alerts: High-Severity SLP Vulnerability Now Under Active Exploitation

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesdayaddeda high-severity flaw in the Service Location Protocol (SLP) to its Known Expl…

The Hacker News
The Hacker News Breaches & leaks

Experts Warn of Ransomware Hackers Exploiting Atlassian and Apache Flaws

Multiple ransomware groups have begun to actively exploit recently disclosed flaws in Atlassian Confluence and Apache ActiveMQ.Cybersecurity firm Rapid7saidit …

Apache

Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses
Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses Vulnerabilities

CVSS 4.0 Arrived As The New Vulnerability Scoring Standard

After announcing the upgradation of the CVSS 3.0 scoring system in June, this week, FIRST…CVSS 4.0 Arrived As The New Vulnerability Scoring Standard on Latest …

The Hacker News
The Hacker News Breaches & leaks

Kinsing Actors Exploiting Recent Linux Flaw to Breach Cloud Environments

The threat actors linked toKinsinghave been observed attempting to exploit the recently disclosed Linux privilege escalation flaw called Looney Tunables as par…

Linux

The Hacker News
The Hacker News Vulnerabilities

FIRST Announces CVSS 4.0 - New Vulnerability Scoring System

The Forum of Incident Response and Security Teams (FIRST) has officially announcedCVSS v4.0, the next generation of the Common Vulnerability Scoring System sta…

The Hacker News
The Hacker News Breaches & leaks

HelloKitty Ransomware Group Exploiting Apache ActiveMQ Vulnerability

Cybersecurity researchers are warning of suspected exploitation of a recently disclosed critical security flaw in the Apache ActiveMQ open-source message broke…

Apache

The Hacker News
The Hacker News Vulnerabilities

Alert: F5 Warns of Active Attacks Exploiting BIG-IP Vulnerability

F5 is warning of active abuse of a critical security flaw in BIG-IP less than a week after its public disclosure, resulting in the execution of arbitrary syste…

The Hacker News
The Hacker News Vulnerabilities

Atlassian Warns of New Critical Confluence Vulnerability Threatening Data Loss

Atlassian has warned of a critical security flaw in Confluence Data Center and Server that could result in "significant data loss if exploited by an unauthenti…

Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses
Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses Vulnerabilities

Critical F5 BIG-IP Flaw Allows Remote Code Execution Attacks

A critical security flaw existed in the F5 BIG-IP Configuration utility that allows an adversary…Critical F5 BIG-IP Flaw Allows Remote Code Execution Attacks o…

Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses
Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses Vulnerabilities

Critical PHPFox RCE Vulnerability Risked Social Networks

Heads up, phpFox users! A critical remote code execution vulnerability existed in the phpFox service…Critical PHPFox RCE Vulnerability Risked Social Networks o…

Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses
Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses Vulnerabilities

Patches Released For The Actively Exploited Cisco IOS XE Zero-Day Flaws

Days after back-to-back disclosures about actively exploited zero-day vulnerabilities, Cisco has finally patched them with…Patches Released For The Actively Ex…

Cisco

The Hacker News
The Hacker News Vulnerabilities

Urgent: New Security Flaws Discovered in NGINX Ingress Controller for Kubernetes

Three unpatched high-severity security flaws have been disclosed in theNGINX Ingress controllerfor Kubernetes that could be weaponized by a threat actor to ste…

Nginx Kubernetes

The Hacker News
The Hacker News Vulnerabilities

F5 Issues Warning: BIG-IP Vulnerability Allows Remote Code Execution

F5 has alerted customers of a critical security vulnerability impacting BIG-IP that could result in unauthenticated remote code execution.The issue, rooted in …

The Hacker News
The Hacker News Vulnerabilities

Record-Breaking 100 Million RPS DDoS Attack Exploits HTTP/2 Rapid Reset Flaw

Cloudflare on Thursday said it mitigated thousands of hyper-volumetric HTTP distributed denial-of-service (DDoS) attacks that exploited a recently disclosed fl…

The Hacker News
The Hacker News Vulnerabilities

Act Now: VMware Releases Patch for Critical vCenter Server RCE Vulnerability

VMware has released security updates to address a critical flaw in the vCenter Server that could result in remote code execution on affected systems.The issue,…

VMware

The Hacker News
The Hacker News Vulnerabilities

Alert: PoC Exploits Released for Citrix and VMware Vulnerabilities

Virtualization services provider VMware has alerted customers to the existence of a proof-of-concept (PoC) exploit for a recently patched security flaw in Aria…

VMware Citrix

Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses
Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses Vulnerabilities

Cisco Discloses Multiple Zero-Days Under Attack In IOS XE Devices

With a few days gap, Cisco disclosed active exploitation detections for separate zero-days affecting its…Cisco Discloses Multiple Zero-Days Under Attack In IOS…

Cisco

The Hacker News
The Hacker News Vulnerabilities

Cisco Zero-Day Exploited to Implant Malicious Lua Backdoor on Thousands of Devices

Cisco has warned of a new zero-day flaw in IOS XE that has been actively exploited by an unknown threat actor to deploy amalicious Lua-based implanton suscepti…

Cisco

The Hacker News
The Hacker News Vulnerabilities

Vulnerability Scanning: How Often Should I Scan?

The time between a vulnerability being discovered and hackers exploiting it is narrower than ever –just 12 days. So it makes sense that organizations are start…

Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses
Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses Vulnerabilities

Signal Debunks Rumors About Zero-Day Vulnerability In The App

Following the rumors about a zero-day flaw in the Signal app, the developers have debunked…Signal Debunks Rumors About Zero-Day Vulnerability In The App on Lat…

The Hacker News
The Hacker News Vulnerabilities

Unraveling Real-Life Attack Paths – Key Lessons Learned

In the ever-evolving landscape of cybersecurity, attackers are always searching for vulnerabilities and exploits within organizational environments. They don't…