Cyber Security
Atlassian Rovo One-Click Flaw Exposes Jira, Confluence Data
CSS Attacks Break Webmail Boundaries to Capture Passwords, Tokens
Head Mare Breaches TrueConf Servers, Trojanizes Client Installers
Belgian Connective eID Flaws Let Websites Forge Signatures
Solidity Pro VS Code Extensions Steal Wallets, API Keys From Devs
OpenAI Pauses Astra Work After Evaluation Flags Cyber Capabilities
AitM Phishing Campaign Steals Microsoft 365 Finance Emails
Swiss Government SharePoint Breach Compromised 200 Accounts
UNC6671 Extortion Group Rebrands After Targeting Hedge Funds
3.8 Million Impacted by Unlimited Technology Systems Breach
4,407 Rockwell PLCs Exposed Online, 22 in Water Cities
Zapscape KVM Flaw Lets Privileged L1 Guest Escape to Host
TONTOU Interrupt Injection Bypasses Spectre v2 Fixes on AMD Zen 2
NatJack Attacks Hijack TCP Sessions and Spoof DNS via NAT
Claude Code and Gemini CLI Flaws Expose CI Workflow Secrets
AI-Assisted HTTP Terminator Finds Apache Traffic Server Zero-Day
TeamPCP Tied to Redis Attacks Dating Back to 2020
CryptoJS Weak RNG Behind $5.7M in Five Wallet App Drains
iCloud Private Relay WebKit Bypasses Expose Users’ Real IPs
ClickFix Campaign Pushes Go-Based macOS Crypto Drainer
China Launches Probe Into Palo Alto Networks Product Security
Attackers Compile khunt Inside Oracle to Reach Windows SYSTEM
Zbtlink Routers Ship With ENDLESSDOORS Backdoor Opening Root Shells
Ransom Cartel Creator Sentenced to 16 Years for RaaS Operation
Snowflake Hacker Pleads Guilty Over Breaches Affecting 100 Million
CISA Flags Active Exploitation of TeamCity CVE-2026-63077
Meta AI Hacked External Systems During Cybersecurity Testing
Brown Health Medical Group Breach Exposes 311,000 Records
CoreBreak Flaws Let Attackers Invoke AWS, Google, Vercel Tools
ClickFix Malware Gate Fingerprints macOS Users Before Lures

Sorry, we couldn't find any posts. Please try a different search.

CVE Vulnerability Alerts
Metabase Zero-Day SQL Injection Exploited Against Framework, Tally
Application Security
Atlassian Rovo One-Click Flaw Exposes Jira, Confluence Data
CVE Vulnerability Alerts
Metabase Zero-Day SQL Injection Exploited Against Framework, Tally
Cybersecurity
Attackers Reach Managed Endpoints as N-able Ships N-central Hotfix 2

TOP CYBERSECURITY HEADLINES

This Week’s Security Spotlight

Trending

Daily Briefing Newsletter

Subscribe to the Daily Security Review Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Featured Videos​

Podcasts

Sorry, we couldn't find any posts. Please try a different search.

  • All
  • Application Security
  • Blog
  • CVE Vulnerability Alerts
  • Cybersecurity
  • Cybersecurity Newsletter
  • Data Security
  • Endpoint Security
  • Identity and Access Management
  • Information Security
  • Network Security
  • News
  • Phishing
  • Podcasts
  • Product Reviews
  • Ransomware
  • Ransomware Victims
  • Resources
  • Security Spotlight
  • Sponsored
  • Threat Actors
  • Threat Actors
  • Threat Detection Tools
Google Discreetly Changes Chrome’s Incognito Warning Amidst the Google Class Action lawsuit
Google recently made a quiet update to the description of its private browsing feature in the latest Canary build of Google Chrome Browser, version 122.0.6251.0. ...
Hackers Use Androxgh0st Malware Botnet to Steal AWS and Microsoft credentials: CISA and FBI Issues Warning
The FBI and Cybersecurity and Infrastructure Security Agency (CISA) have issued a warning about the Androxgh0st malware botnet. They have been conducting investigations to understand ...
Windows SmartScreen Vulnerability Exploited: Phemedrone Stealer Malware Used for Crypto Siphoning
A recent Crypto Siphoning malware campaign called Phemedrone has been discovered. Phemedrone is an information-stealing malware that takes advantage of a Microsoft Windows SmartScreen Vulnerability ...
Over 178K SonicWall Firewalls Exposed to DoS and RCE Attacks
Security researchers have discovered that more than 178k SonicWall firewalls are vulnerable to DOS and RCE attacks. This flaw was found in vulnerable SonicWall firewalls ...
Juniper Fixes Junos OS Critical RCE Vulnerability in its SRX and EX Devices
Juniper Networks has recently addressed a Critical RCE Vulnerability in their SRX Series firewalls and EX Series switches. This issue, labeled as CVE-2024-21591, is a ...
This Week in Cybersecurity: 8th Jan – 12th Jan – SEC X Account Hack Creates Chaos
US SEC X Account Hacked, Hackers Post Fake Bitcoin ETF Approval Tweet The U.S. Securities and Exchange Commission’s X account experienced a security breach. As ...
SEC Account Hack Again Catches News Spotlight Amidst Security Concerns
The recent SEC account hack on X has raised fresh concerns regarding the security of the social media platform. These concerns have been amplified since ...
10 Major Data Breaches and Cyber Attacks 2023
Cyber attacks today have become a daily occurrence in today’s hyperconnected world. With more users and devices getting online each day, there is an ever-increasing ...
Ivanti Critical EPM Bug Allows Hackers to Hijack EPM Devices
Ivanti has successfully addressed a critical remote code execution (RCE) vulnerability in its Endpoint Management software (EPM). The Ivanti critical EPM bug had the potential ...
US SEC’s X Account Hacked, Hackers Post Fake Bitcoin ETF Approval Tweet
The U.S. Securities and Exchange Commission’s X account experienced a security breach. As a result, a false Bitcoin ETF Approval Tweet on security exchanges was ...
LockBit Ransomware Claims Capital Health Attack, Threatens to Leak Sensitive Data
The LockBit ransomware group has acknowledged their involvement in the Capital Health attack that took place in November 2023. The adversaries are now issuing a ...
Ukrainian Hacker Group Takes Down Moscow ISP as a Revenge for Kyivstar Cyber Attack
A Ukrainian hacker group, believed to be connected to Ukraine’s intelligence took and carried out a destructive attack on the servers of a Moscow-based internet ...
Hackers Can Now Access Your Google Accounts Without Password
Security researchers have recently discovered a sophisticated hacking technique that enables cyber criminals to gain unauthorized entry into individuals’ Google accounts without passwords. In-depth analysis ...
CISA Identifies Actively Exploited Bugs in Chrome and Excel Parsing Library
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has identified two Actively Exploited Bugs in Chrome and Excel Parsing Library and has included them in ...
Mandiant Security Breached: Account on X Hacked for Crypto Scam
The X account of Mandiant, an American cybersecurity firm and subsidiary of Google, was compromised. The Mandiant Security Breach resulted in an unauthorized individual to ...
Russian Sandworm Hackers Lurked Inside KyivStar Systems in KyivStar Cyber Attack
The Russian Sandworm hackers successfully breached Kyivstar and stayed inside KyivStar systems for several months. Ukraine’s largest telecommunications service provider, in December, resulting in the ...
HealthEC Data Breach Exposes Data of Almost 4.5 Million Patients
HealthEC LLC, a New Jersey-based provider of health management solutions, has suffered a major data breach that exposed personally identifiable information of individuals who received ...
Orbit Chain Lost $86 Million in a Cross-Chain Bridge Exploit Attack
Orbit Chain Lost $86 Million in cryptocurrency, specifically Ether, Dai, Tether, and USD Coin. Orbit Chain is a blockchain platform that serves as a versatile ...
Victoria Court Hack Exposes Victorian Court Recordings: Sensitive Witness Testimonies Stolen
The Victoria Court Hack resulted in hackers gaining unauthorized access to the audio-visual network and stealing Victorian court recordings. The Victorian Court Cyber attack is ...
Ohio Lottery Cyber Attack: Another Cybersecurity Incident Claimed by DragonForce Ransomware
The Ohio Lottery cyber attack on Christmas Eve resulted in the shutdown of certain internal applications. While the exact details of the cybersecurity incident and ...