Application Security
Microsoft’s embattled security response unit is scrambling to deal with another zero-day attack hitting users of its flagship Microsoft Office software suite.
Hi, what are you looking for?
Tracked as CVE-2026-48842, the exploited bug is an SQL injection that can be exploited without authentication.
Microsoft’s embattled security response unit is scrambling to deal with another zero-day attack hitting users of its flagship Microsoft Office software suite.
Social media giant Facebook on Thursday announced a new payout guideline to help vulnerability hunters better understand its bounty decisions related to given bugs.
Software vendor SolarWinds failed to enable an anti-exploit mitigation available since the launch of Windows Vista 15 years ago, an oversight that made it...
Network detection and response play Corelight has raised a fresh $75 million funding round to speed up its global expansion ambitions.The San Francisco-based Corelight...
The Singapore Government Technology Agency (GovTech) on Tuesday introduced a new Vulnerability Rewards Programme (VRP) on HackerOne that offers bug bounty rewards of up...
The U.S. Securities and Exchange Commission (SEC) this week announced sanctions against several companies over cybersecurity failures that resulted in email accounts getting hacked...
A vulnerability that Microsoft patched in Exchange Server earlier this year can allow attackers to set forwarding rules on target accounts and gain access...
Israeli security giant Check Point Software Technologies has joined the cybersecurity shopping spree with Monday’s announcement of a deal to purchase Avanan, a startup...
The financially-motivated threat actor tracked as FIN8 has added a potent new backdoor to its arsenal and is already using it in attacks in-the-wild,...
France-based email security company Vade Secure has been ordered to pay Proofpoint nearly $14 million as a result of a trade secret misappropriation and...
Cisco this week published information on a critical code execution vulnerability affecting its small business RV110W, RV130, RV130W, and RV215W routers, but cautioned that...
Over the past several months, an Iran-linked threat actor tracked as Hexane has attempted to breach numerous Israeli organizations using supply chain tools, according...
Adobe has issued a warning for a pair of major security vulnerabilities affecting its popular Photoshop image manipulation software.The flaws, rated critical, expose both...
Colonial Pipeline has started sending out notification letters to inform more than 5000 people that their personal information was compromised in a ransomware attack...
Security vendor Trend Micro has issued a warning for in-the-wild zero-day attacks hitting customers using its Apex One and Apex One as a Service...
Exasperated Windows fleet administrators woke up Thursday to news of a new, unpatched Print Spooler vulnerability that leaves machines exposed to remote code execution...
Software maker Adobe has shipped security patches for flaws in its Adobe Magento and Connect product lines, warning that exploitation could lead to remote...
Threat detection startup ReversingLabs has raised $56 million in a Series B funding round. To date, the company has raised $81 million.The new funding...
VMware on Thursday released security updates for multiple products to address a pair of security bugs, one serious enough to give attackers access to sensitive...
Microsoft came up the big winner in this year’s Pwnie Awards, but for all the wrong reasons.