Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Latest Cybersecurity News

The security defects could lead to unauthorized access, information leaks, privilege escalation, DoS attacks, and remote code execution.

All enterprises conduct security awareness training for their employees. But whether this has tangible benefits is debatable.

Threat actors have started targeting CVE-2026-21589, a critical vulnerability in Atlassian’s self-hosted Data Center products.

Zhang Yu was charged alongside Xu Zewei, who was extradited from Italy to the US in April 2026.

Critical and high-severity vulnerabilities could allow attackers to bypass authentication, execute arbitrary code, and elevate their privileges.

The cybersecurity startup will invest in product innovation, agentic research, and employee base expansion.

SEC Consult has published technical details on vulnerabilities mentioned in a complaint filed by several US states.

Zohar Pinhasi was paying ransoms to obtain decryption keys and then charging victims substantially more for remediation.

The figure is far higher than the counts that surfaced in earlier filings and patient notifications.

Attackers are creating new accounts and deleting existing ones and passwords to prevent legitimate access.

Southern Company is notifying customers that their utility account information was accessed by hackers.

The individual was detained in May and has been extradited to Germany to face hacking charges.

Hadrian offers an agentic offensive security platform that allows defenders to operate at the same speed as attackers.

Security awareness training Security awareness training

All enterprises conduct security awareness training for their employees. But whether this has tangible benefits is debatable.

Atlassian Atlassian

Threat actors have started targeting CVE-2026-21589, a critical vulnerability in Atlassian’s self-hosted Data Center products.

TP-Link vulnerabilities TP-Link vulnerabilities

SEC Consult has published technical details on vulnerabilities mentioned in a complaint filed by several US states.

Top Cybersecurity Headlines

Attackers are creating new accounts and deleting existing ones and passwords to prevent legitimate access.

Southern Company is notifying customers that their utility account information was accessed by hackers.

Hackers compromised a third-party communication platform and sent rogue notifications to ASOS users.

SecurityWeek Industry Experts

More Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Learn how to address potential risks and not restrict AI adoption in your organization. See what a centralized AI gateway is and how it works in practice.

Register

Join as we decipher the world of zero trust and share war stories on securing an organization by eliminating implicit trust and continuously validating every stage of a digital interaction.

Register

Upcoming Cybersecurity Events

ICS Cybersecurity Conference 2026

SecurityWeek’s ICS Cybersecurity Conference celebrates its 25th anniversary in Nashville. Join the largest and longest-running event series focused on industrial cybersecurity.
[October 6-8, 2026 | In-Person]

Learn More

SecurityWeek’s 2026 Zero Trust Summit will deep-dive into the world of digital identity management and the role of zero-trust principles and associated technologies
[October 14, 2026 | Virtual]

Read More
CISO Forum Virtual Summit 2026

The 2026 Virtual CISO Forum brings together CISOs, senior cybersecurity executives, practitioners, industry experts, and other security leaders to share practical experience and examine the issues shaping enterprise cybersecurity strategy.
[November 11, 2026]

Read More

SecurityWeek’s CodeSecCon 2026 will bring together developers and cybersecurity professionals to revolutionize the way applications are built, secured, and maintained.
[Originally August 19, 2026]

Learn More

Vulnerabilities

Cybercrime

Event image poster

The leading global conference series for Operations, Control Systems and IT/OT Security professionals to connect on SCADA, DCS PLC and field controller cybersecurity.

Learn More

Application Security

Application Security

Roughly 200,000 of the credentials were exposed after GitHub enabled push protections by default.

Cloud Security

Artificial Intelligence

Microsoft fixed vulnerabilities across Azure and AI-branded products, with privilege escalation flaws accounting for the majority.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.