Cybersecurity researchers have flagged fresh malicious cyber activity by a threat actor with ties to...
GitHub has announced a new cooldown mechanism in Dependabot, allowing the tool to wait at...
A malvertising operation dubbed SourTrade is making victims’ browsers build the final Windows executable themselves,...
Security firms ThreatBook and Imperva say attackers are targeting a critical flaw in Fastjson, Alibaba’s...
For years, phishing campaigns targeting financial institutions followed the same playbook. Victims were tricked into...
Threat actors linked to the Cl0p (aka Chubby Scorpius, FIN11, Graceful Spider, and Lace Tempest)...
The operators of the DevMan ransomware-as-a-service (RaaS) scheme are maintaining a dedicated web platform that...
Security researcher Yuhang Wu at depthfirst has published a working proof-of-concept (PoC) exploit that executes...
The North Korean threat actors behind the ClickFix-style campaigns that employ typosquatted Zoom and Microsoft...
Researchers H0j3n and Aniq Fakhrul published a working exploit on July 24 that lets a...
Cybersecurity researchers have disclosed a critical vulnerability in OpenAI’s ChatGPT Workspace Agents that could have...
A crafted SVG submitted to Bing’s image search ran commands as NT AUTHORITYSYSTEM on Microsoft’s...
AI agent security is moving through a familiar maturity curve: adoption, then visibility, and finally,...
Someone installed a popular AI assistant on a rented server, switched off the setting that...
The threat actors behind the Golden Chickens malware-as-a-service (MaaS) ecosystem have resurfaced with four new...
Eight security flaws in NodeBB went public on Wednesday, along with the code to exploit...
Redis shipped seven security releases on July 23 after researchers published authenticated RCE PoCs for...
The Computer Emergency Response Team of Ukraine (CERT-UA) has warned of a new campaign that...
A Russian state-supported espionage group spent months reading Western mailboxes through a then-unknown flaw in...
Most of this week’s trouble came dressed as something useful. A package stole data. A...
Cybersecurity researchers have uncovered a sandbox escape vulnerability in Anthropic’s Claude Cowork that makes it...
The Chaos ransomware group ran its command-and-control through the victim’s own browser. Cisco Talos on...
An exposed Alibaba Cloud server has revealed a China-nexus operation that Group-IB tracks as JadeProx....
GCHQ’s National Cyber Security Centre and international partners issue warning as ‘LAUNDRY BEAR’ cyber threat...
Most people understand identity theft as an attacker stealing a real person’s sensitive information and...
Cybersecurity researchers have shed light on a large-scale campaign that has turned compromised GitHub repositories...
Google on Thursday announced a new way for users to sign-in to their accounts by...
RefluXFS, a new Linux kernel flaw disclosed on July 22 and tracked as CVE-2026-64600, lets...
Check Point has released security updates to address multiple vulnerabilities impacting Security Management and Multi-Domain...
Beginning July 27, 2026, GitHub will cut public bug bounty payouts by at least half...
Interested in getting in contact with us about our services? Perhaps you would like to know more about how we can help you specifically? Tell us more, and we will happily listen to and provide you with further information and a consultation.