The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
Several important security issues were discovered in the Vim enhanced vi editor, including an out-of-bounds read vulnerability (CVE-2022-0128), improper memory…
Google has released its monthly security updates for the Android operating system, addressing 46 new software vulnerabilities. Among these, three vulnerabiliti…
Cybersecurity agencies have warned about the emergence of new variants of the TrueBot malware. This enhanced threat is now targeting companies in the U.S. and …
Several remotely exploitable security issues were found in the Bind Internet Domain Name Server. It was discovered that Bind incorrectly handled the cache size…
Several security issues were found in the Linux kernel, including an out-of-bounds write vulnerability in the Flower classifier implementation in the kernel (C…
Details have emerged about a newly identified security flaw in the Linux kernel that could allow a user to gain elevated privileges on a target host.DubbedStac…
The tech giant Google recently released a major security update for its Chrome browser. With…Google Patched Four Security Flaws With Chrome Browser 114 Update …
Heads up, Zyxel users! The vendors have recently released patches for a serious security vulnerability…Severe OS Command Injection Vulnerability Caught In Zyxe…
Heads up, WordPress admins! Researchers have caught a zero-day vulnerability in the Ultimate Member WordPress…Ultimate Member Plugin Zero-Day Risks 200K+ WordP…
The North Korea-aligned threat actor known as Andariel leveraged a previously undocumented malware called EarlyRat in phishing attacks, adding another piece to…
A critical security flaw has been disclosed in miniOrange'sSocial Login and Register pluginfor WordPress that could enable a malicious actor to log in as any u…
A new process injection technique dubbed Mockingjay could be exploited by threat actors to bypass security solutions to execute malicious code on compromised s…
As the business environment becomes increasingly connected, organizations’ attack surfaces continue to expand, making it challenging to map and secure both kno…
Multiple remotely exploitable denial of service (DoS) and code execution vulnerabilities have been found in the VLC multimedia player and streamer. These bugs …
Fortinet has rolled out updates to address a critical security vulnerability impacting its FortiNAC network access control solution that could lead to the exec…
Security and IT teams are routinely forced to adopt software before fully understanding the security risks. And AI tools are no exception.Employees and busines…
The cybersecurity and technology provider, Fortinet, has recently addressed multiple security flaws affecting FortiNAC systems.…Fortinet Addressed Critical RCE…
Researchers found a severe security vulnerability in Microsoft Teams that allows malware distribution. Specifically, an…Serious IDOR Vulnerability Found In Mic…
The U.S. Cybersecurity and Infrastructure Security Agency hasaddeda batch of six flaws to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of…
Millions of software repositories on GitHub are likely vulnerable to an attack called RepoJacking, a new study has revealed.This includes repositories from org…
Several important denial of service (DoS) and information disclosure vulnerabilities have been discovered in the OpenJDK Java runtime. These bugs require no pr…
Fourteen important vulnerabilities have been discovered in Chromium, including multiple use-after-free and type confusion bugs. With a low attack complexity an…
A new malware calledCondihas been observed exploiting a security vulnerability in TP-Link Archer AX21 (AX1800) Wi-Fi routers to rope the devices into a distrib…
VMware has flagged that a recently patched critical command injection vulnerability in Aria Operations for Networks (formerly vRealize Network Insight) has com…