Gitea, the self-hosted Git platform, has patched a critical remote code execution vulnerability. A user...
Source code for the Flying Eagle Android remote access trojan (RAT) framework is circulating through...
OpenAI on Tuesday revealed the rogue artificial intelligence (AI) agent that escaped its sealed evaluation...
Beta release versions of two npm packages in the @joyfill namespace have been compromised to...
Anthropic says Claude Mythos Preview helped derive an end-to-end key-recovery attack against HAWK-256 and a...
A new Mirai-derived botnet called Tengu can use a compromised Linux device’s hardware watchdog to...
Cybersecurity researchers have sounded an alert after finding more than 36,000 Baseboard Management Controller (BMC)...
JFrog has confirmed that OpenAI models exploited a zero-day in self-hosted Artifactory while trying to...
OpenWrt has shipped version 24.10.8 to close a critical DHCPv6 stack overflow and a wider...
A highly disruptive incident can feel overwhelming. New guidance provides a framework for response and...
The Iranian state-backed hacking group tracked as Nimbus Manticore (aka GalaxyGato, Mirage Kitten, Smoke Sandstorm,...
JetBrains is urging customers of on-premise versions of TeamCity to update to the latest version...
STAR Labs has published a Linux kernel exploit that turns an ordinary local user into...
Microsoft has launched its first cybersecurity-specific model inside MDASH, its multi-model vulnerability identification and remediation...
A maximum-severity security flaw impacting on-premises versions of Arista VeloCloud Orchestrator (VCO) has come under...
NVIDIA and 36 other organizations have formed the Open Secure AI Alliance to develop and...
Dysphoria, an Internet of Things (IoT) botnet line tracked by CNCERT and XLab, has adopted...
Public exploit details released on July 27 show how an unauthenticated request can reach PHP’s...
Monday starts with the usual promise that everything is under control. Then the logs wake...
n8n has patched a high-severity expression-sandbox escape that could let an authenticated workflow editor execute...
Cybersecurity researchers have flagged a Microsoft Teams-themed phishing campaign that employs “secure document” lures to...
The China-linked cybercrime group behind the use of income tax-related phishing lures targeting Indian taxpayers,...
Cybersecurity researchers have flagged fresh malicious cyber activity by a threat actor with ties to...
GitHub has announced a new cooldown mechanism in Dependabot, allowing the tool to wait at...
A malvertising operation dubbed SourTrade is making victims’ browsers build the final Windows executable themselves,...
Security firms ThreatBook and Imperva say attackers are targeting a critical flaw in Fastjson, Alibaba’s...
For years, phishing campaigns targeting financial institutions followed the same playbook. Victims were tricked into...
Threat actors linked to the Cl0p (aka Chubby Scorpius, FIN11, Graceful Spider, and Lace Tempest)...
The operators of the DevMan ransomware-as-a-service (RaaS) scheme are maintaining a dedicated web platform that...
Security researcher Yuhang Wu at depthfirst has published a working proof-of-concept (PoC) exploit that executes...
Interested in getting in contact with us about our services? Perhaps you would like to know more about how we can help you specifically? Tell us more, and we will happily listen to and provide you with further information and a consultation.