CISA and OpenSSF Release Framework for Package Repository Security
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) announced that it's partnering with the Open Source Security Foundation (OpenSSF) Securing...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) announced that it's partnering with the Open Source Security Foundation (OpenSSF) Securing...
When it comes to access security, one recommendation stands out above the rest: multi-factor authentication (MFA). With passwords alone being...
Incident response (IR) is a race against time. You engage your internal or external team because there's enough evidence that...
Microsoft said it's introducing Sudo for Windows 11 as part of an early preview version to help users execute commands...
The U.S. Department of State has announced monetary rewards of up to $10 million for information about individuals holding key...
The U.S. Justice Department (DoJ) on Friday announced the seizure of online infrastructure that was used to sell a remote...
By 2025, Britain is set to ditch physical immigration status documents such as Biometric Residence Permits (BRPs) and Biometric Residence...
Recent versions of the Raspberry Robin malware are stealthier and implement one-day exploits that are deployed only on systems that are susceptible...
Apple macOS users are the target of a new Rust-based backdoor that has been operating under the radar since November...
CISA confirmed today that attackers are actively exploiting a critical remote code execution (RCE) bug patched by Fortinet on Thursday....
A new Rust-based macOS malware spreading as a Visual Studio update to provide backdoor access to compromised systems uses infrastructure...
The Canadian government plans to ban the Flipper Zero and similar devices after tagging them as tools thieves can use...
The U.S. Federal Trade Commission (FTC) says Americans lost over $10 billion to scammers in 2023, marking a 14% increase...
The US Federal Communications Commission (FCC) has introduced a ban on robocalls that contain voices generated by AI to protect...
February 2024 marks 20 years of Facebook’s existence. Despite the brand being well established worldwide and in our day to...
Ivanti has released security updates to address a vulnerability (CVE-2024-22024) affecting Connect Secure, Policy Secure, and ZTA gateways. Successful exploitation...
Fortinet has released updates addressing a critical vulnerability (CVE-2024-21762) in FortiOS. The vulnerability has a Common Vulnerability Scoring System (CVSS)...
The operators of Raspberry Robin are now using two new one-day exploits to achieve local privilege escalation, even as the...
Threat hunters have identified a new variant of Android malware called MoqHao that automatically executes on infected devices without requiring...
An unnamed Islamic non-profit organization in Saudi Arabia has been targeted as part of a stealthy cyber espionage campaign designed...
Introduction The modern software supply chain represents an ever-evolving threat landscape, with each package added to the manifest introducing new...
Sixty-one banking institutions, all of them originating from Brazil, are the target of a new banking trojan called Coyote. "This...
Fortinet has disclosed a new critical security flaw in FortiOS SSL VPN that it said is likely being exploited in...
An unnamed Islamic non-profit organization in Saudi Arabia has been targeted as part of a stealthy cyber espionage campaign designed...