Application Security
A major security vulnerability in the WP Reset PRO WordPress plugin could be exploited by an authenticated user to wipe the entire database of...
Hi, what are you looking for?
As AI dramatically shortens the time from vulnerability disclosure to exploitation, enterprises must look beyond patching to reduce application risk.
A major security vulnerability in the WP Reset PRO WordPress plugin could be exploited by an authenticated user to wipe the entire database of...
More than 1,000 mobile phone users in South Korea have been targeted with a powerful piece of Android spyware as part of an ongoing...
Software maker Adobe on Tuesday released patches to cover at least four documented security defects that expose users to malicious hacker attacks.The most serious...
The U.S. government’s aggressive anti-ransomware crackdown is showing no signs of slowing down with the Treasury Department announcing sanctions against a cryptocurrency exchange and...
At least nine global organizations have been compromised in attacks targeting a recent vulnerability in ManageEngine ADSelfService Plus, according to a warning from researchers...
U.S. government defense contractor Electronic Warfare Associates (EWA) has started sending out notifications to warn of a data breach that resulted in the theft...
Valuations for early-stage cybersecurity startups are continuing to soar with news this week that Drata banked $100 million in a funding deal that values...
SCYTHE, a software company building technology for adversary simulation, on Monday announced it had secured $10 million in venture capital funding to speed up...
A newly observed Babuk ransomware campaign is targeting ProxyShell vulnerabilities in Microsoft Exchange Server, according to security researchers at Cisco Talos.
Software supply chain security jitters escalated again Friday with new “critical severity” warnings about malware embedded in two npm package managers widely used by...
Researchers from the University of Cambridge have identified a new attack method that abuses Unicode to stealthily inject vulnerabilities into code.
US Goverment Offers $10 Million Reward for Data on Leaders and Members of DarkSide Ransomware Operation
Enterprise networking giant Cisco has released patches for multiple vulnerabilities across its product portfolio, including critical security defects in Catalyst Passive Optical Network (PON)...
Researchers are calling attention to a newly discovered security defect in a kernel module that ships with all major Linux distributions, warning that remote...
Female-founded application security startup Wabbi on Tuesday announced raising more than $2 million in an oversubscribed seed funding round.The funding round was led by...
The Federal Bureau of Investigation (FBI) this week issued an industry-wide notification to raise awareness about ransomware operators leveraging information on mergers, acquisitions and...
Privacy-focused communication platforms Signal is sharing information on the improvements it has made to its spam-prevention capabilities.The task of keeping spam out of user’s...
IBM Security on Tuesday announced plans to acquire ReaQta, an early-stage European startup in the red-hot autonomous threat detection and response business.Financial terms of...
Google is sweetening the pot for bug bounty researchers finding and exploiting privilege escalation flaws in the Linux kernel.Over the next three months, Google...
DevSecOps startup Oxeye emerged from stealth mode on Tuesday with a cloud-native application security testing platform and $5.3 million in seed funding.Currently in Beta,...