The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a critical remote code...
DirtyClone is a new Linux kernel privilege escalation in the DirtyFrag family. JFrog Security Research published...
AI agents are moving through enterprise environments, inheriting permissions, traversing systems, and executing decisions at...
Cybersecurity researchers have flagged yet another evolution of the supply chain attack linked to the...
An active phishing campaign has been targeting hotel and other hospitality organizations across Europe and...
Russian authorities used Cellebrite’s UFED forensic tools to break into the iPhone of detained opposition...
The Russian state-sponsored threat actor known as Turla has been attributed to a previously undocumented...
An analysis of a popular Google Chrome ad block extension for YouTube has uncovered the...
It’s dumb out there again. This week has the usual smell of prod on fire...
Despite the abundance of telemetry at analysts’ disposal, many security operations teams struggle to answer...
A previously undocumented Rust-based macOS implant and information stealer has been found to embed a...
A new, stealthy backdoor named Mistic has been deployed as part of suspected financially motivated...
An unknown threat actor exploited a recently disclosed high-severity security flaw impacting Cisco Catalyst SD-WAN...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday warned of active exploitation of...
A coordinated law enforcement operation, in partnership with private sector companies, including Bitdefender, Bitsight, ESET,...
Cybersecurity researchers have flagged a new class of CI/CD workflow weakness that allows attackers to...
We are standing at the end of an era we never thought to mourn: the...
The U.S. Department of Justice (DoJ) on Tuesday announced the seizure of a cloud computing...
Threat actors have begun to exploit a recently disclosed critical security flaw impacting Cisco Unified...
A Russian-speaking initial access broker (IAB) driven by financial gain is assessed to be behind...
Security firm AIR built a fake AI agent skill, pushed it through a popular skill marketplace and...
President Trump signed an executive order on June 22 setting hard deadlines for federal agencies to move...
GitHub is moving to strengthen software supply chain security by updating “actions/checkout” to block pwn...
Every weapon begins as an extension of the hand that holds it. The spear lengthened...
Cybersecurity researchers have discovered a set of malicious npm packages that are designed to deliver...
Direct messages sent via WhatsApp are being used to distribute malicious Visual Basic Script (VBScript)...
OpenAI on Monday said it’s releasing an improved version of its GPT‑5.5‑Cyber model to trusted...
Multiple WordPress plugins from ShapedPlugin were compromised in a supply chain attack after unknown threat...
Cybersecurity researchers have disclosed details of four vulnerabilities in Dify, an open-source agentic workflow platform...
A heap over-read in the Squid web proxy can leak another user’s cleartext HTTP request,...
Interested in getting in contact with us about our services? Perhaps you would like to know more about how we can help you specifically? Tell us more, and we will happily listen to and provide you with further information and a consultation.