Application Security

Hidden Commands in Font Rendering Are Being Used to Manipulate AI Assistants Through Webpages
Application Security
Hidden Commands in Font Rendering Are Being Used to Manipulate AI Assistants Through Webpages
A font-rendering vulnerability manipulates AI assistants by concealing malicious web commands in innocent HTML.
Ongoing Python Package Attack Uses Stolen GitHub Tokens
Application Security
Ongoing Python Package Attack Uses Stolen GitHub Tokens
Attack leverages stolen GitHub tokens to introduce malware into numerous Python repositories.
New Malware Tactics Take Aim at Windows, iOS, and Linux Users
Application Security
New Malware Tactics Take Aim at Windows, iOS, and Linux Users
Explore how new malware strains are targeting users with advanced methods and reverse engineering insights.
Ongoing Exchange Online Outage Leaves Customers Without Mailbox Access
Application Security
Ongoing Exchange Online Outage Leaves Customers Without Mailbox Access
Microsoft is addressing an Exchange Online outage impacting mailbox and calendar access.
Silence from the Corporate Giants Four Companies Yet to Comment on Oracle EBS Hack
Application Security
Silence from the Corporate Giants: Four Companies Yet to Comment on Oracle EBS Hack
Four major corporations, Broadcom, Bechtel, Estée Lauder, and Abbott, remain silent amid Oracle EBS hack.
Shadow AI Is Quietly Spreading Across SaaS Environments
Application Security
Shadow AI Is Quietly Spreading Across SaaS Environments
Explore the growing trend of Shadow AI in SaaS environments as employees adopt AI tools without IT oversight, and learn how security teams can respond...
Microsoft Teams Is Adding Automatic Bot Tagging in Meeting Lobbies
Application Security
Microsoft Teams Is Adding Automatic Bot Tagging in Meeting Lobbies
Microsoft improves control over third-party bots in Teams meetings.
Apple Releases iOS and iPadOS Updates to Patch Coruna Exploits
Application Security
Apple Releases iOS and iPadOS Updates to Patch Coruna Exploits
Apple issues iOS and iPadOS updates to address vulnerabilities, safeguarding against the Coruna exploit.
Veeam Software Fixes Critical RCE Vulnerabilities in Backup & Replication Solution
Application Security
Veeam Software Fixes Critical RCE Vulnerabilities in Backup & Replication Solution
Veeam Software addresses critical security flaws in their Backup & Replication tool, preventing potential remote code execution risks.
SQL Injection Flaw in Ally WordPress Plugin Puts 400,000 Sites at Risk
Application Security
SQL Injection Flaw in Ally WordPress Plugin Puts 400,000 Sites at Risk
An SQL injection flaw in the Ally WordPress plugin poses data breach risks on over 400,000 websites.