New OpenSSH Vulnerability Could Lead to RCE as Root on Linux Systems
OpenSSH maintainers have released security updates to contain a critical security flaw that could result in unauthenticated remote code execution...
OpenSSH maintainers have released security updates to contain a critical security flaw that could result in unauthenticated remote code execution...
At the heart of every application are secrets. Credentials that allow human-to-machine and machine-to-machine communication. Machine identities outnumber human identities...
Juniper Networks has released out-of-band security updates to address a critical security flaw that could lead to an authentication bypass...
Google has announced that it's going to start blocking websites that use certificates from Entrust starting around November 1, 2024,...
Progress Software has released security updates to address a critical vulnerability (CVE-2024-5806) in MOVEit Transfer. The vulnerability has a CVSSv3.1...
Google blocked over 10,000 instances of Dragon Bridge activity in Q1 2024, a China-affiliated influence operator that pushes pro-People’s Republic...
Remote software provider TeamViewer has been hit by a cyber-attack that it has attributed to Russian state-affiliated threat actor Midnight...
Large organizations have significantly strengthened their cyber workforce in 2024, according to cyber consultancy Wavestone.In its Cyber Benchmark 2024 report,...
The North Korea-linked threat actor known as Kimsuky has been linked to the use of a new malicious Google Chrome...
GitLab has released security updates to address 14 security flaws, including one critical vulnerability that could be exploited to run...
Security researchers have shed more light on the cryptocurrency mining operation conducted by the 8220 Gang by exploiting known security...
The modern kill chain is eluding enterprises because they aren't protecting the infrastructure of modern business: SaaS. SaaS continues to...
A group of security researchers from the Graz University of Technology have demonstrated a new side-channel attack known as SnailLoad...
TeamViewer on Thursday disclosed it detected an "irregularity" in its internal corporate IT environment on June 26, 2024. "We immediately...
Multiple security flaws have been disclosed in Emerson Rosemount gas chromatographs that could be exploited by malicious actors to obtain...
Chinese APT groups with likely state backing are using ransomware in attacks to throw cybersecurity researchers off the scent and...
A third (33%) of security leaders believe companies often sacrifice long-term security for cost savings. The data comes from Bugcrowd’s...
Police forces from 61 countries have joined forces to dismantle online scam networks through Operation First Light 2024. The operation, orchestrated...
The US Department of Justice (DoJ) has charged a Russian national, Amin Timovich Stigal, aged 22, for hacking into and...
More than half (52%) of critical open source projects contain code written in a memory-unsafe language, according to a new...
The peer-to-peer malware botnet known as P2PInfect has been found targeting misconfigured Redis servers with ransomware and cryptocurrency miners. The...
Did you know it's now possible to build blockchain applications, known also as decentralized applications (or "dApps" for short) in...
While some SaaS threats are clear and visible, others are hidden in plain sight, both posing significant risks to your...
Cybersecurity researchers have disclosed a high-severity security flaw in the Vanna.AI library that could be exploited to achieve remote code...