GitLab Releases Patch for Critical CI/CD Pipeline Vulnerability and 13 Others
GitLab has released security updates to address 14 security flaws, including one critical vulnerability that could be exploited to run...
GitLab has released security updates to address 14 security flaws, including one critical vulnerability that could be exploited to run...
Security researchers have shed more light on the cryptocurrency mining operation conducted by the 8220 Gang by exploiting known security...
A group of security researchers from the Graz University of Technology have demonstrated a new side-channel attack known as SnailLoad...
The modern kill chain is eluding enterprises because they aren't protecting the infrastructure of modern business: SaaS. SaaS continues to...
TeamViewer on Thursday disclosed it detected an "irregularity" in its internal corporate IT environment on June 26, 2024. "We immediately...
Multiple security flaws have been disclosed in Emerson Rosemount gas chromatographs that could be exploited by malicious actors to obtain...
Chinese APT groups with likely state backing are using ransomware in attacks to throw cybersecurity researchers off the scent and...
A third (33%) of security leaders believe companies often sacrifice long-term security for cost savings. The data comes from Bugcrowd’s...
Police forces from 61 countries have joined forces to dismantle online scam networks through Operation First Light 2024. The operation, orchestrated...
The US Department of Justice (DoJ) has charged a Russian national, Amin Timovich Stigal, aged 22, for hacking into and...
More than half (52%) of critical open source projects contain code written in a memory-unsafe language, according to a new...
The peer-to-peer malware botnet known as P2PInfect has been found targeting misconfigured Redis servers with ransomware and cryptocurrency miners. The...
Cybersecurity researchers have disclosed a high-severity security flaw in the Vanna.AI library that could be exploited to achieve remote code...
Did you know it's now possible to build blockchain applications, known also as decentralized applications (or "dApps" for short) in...
While some SaaS threats are clear and visible, others are hidden in plain sight, both posing significant risks to your...
In generative AI, jailbreaks, also known as direct prompt injection attacks, are malicious user inputs that attempt to circumvent an...
A critical security flaw has been disclosed in Fortra FileCatalyst Workflow that, if left unpatched, could allow an attacker to...
A 22-year-old Russian national has been indicted in the U.S. for his alleged role in staging destructive cyber attacks against...
A newly disclosed critical security flaw impacting Progress Software MOVEit Transfer is already seeing exploitation attempts in the wild shortly...
Victims of cryptocurrency scams have lost nearly $10m over the past year to fraudsters claiming to be lawyers who can...
A novel malware strain is being used to target banking customers in Southeast Asia, leading to financial losses and fraud,...
Reports of identity compromise, theft and misuse in the US fell by 16% year-on-year (YoY) in 2023, but digital thieves...
Progress Software has disclosed two fresh vulnerabilities in its MOVEit file transfer products.The first is an authentication bypass affecting the...
Malware operators are turning to legitimate cloud services to conduct malicious campaigns, according to cybersecurity firm Fortinet.In a new report,...