Application Security
The Republican National Committee says none of its data was compromised in a cyberattack that involved B2B IT services provider Synnex.
Hi, what are you looking for?
Tracked as CVE-2026-48842, the exploited bug is an SQL injection that can be exploited without authentication.
The Republican National Committee says none of its data was compromised in a cyberattack that involved B2B IT services provider Synnex.
Microsoft late Tuesday pushed out an emergency patch to cover the Windows ‘PrintNightmare’ security flaw.
Hewlett Packard Enterprise announced it has entered into a definitive agreement to acquire cloud data management and protection provider Zerto. The price tag: $374 million...
An unknown threat actor has compromised the servers of Mongolian certificate authority (CA) MonPass and abused the organization’s website for malware distribution, according to...
Microsoft late Thursday acknowledged a severe security vulnerability in the Print Spooler utility that ships by default on Windows and warned that the bug...
The enterprise asset management space just got a bit more crowded with the launch of Sevco Security, an early-stage startup selling a “cloud-native security...
Security researchers at Microsoft are flagging multiple gaping security holes in firmware shipped on NETGEAR routers, warning that exploitation could lead to identity theft...
IBM Corp. on Wednesday announced that it is contributing the Kestrel open-source programming language for threat hunting to the Open Cybersecurity Alliance (OCA).
Windows network administrators are scrambling to contain the fallout from the release of proof-of-concept code for a nasty Windows Print Spooler vulnerability that exposes...
Multiple large organizations were found to be impacted by an authentication bypass in Adobe Experience Manager CRX Package Manager, according to a warning from...
Mozilla has a new privacy-focused data sharing platform that provides users with increased control of their data and also allows them to contribute to...
Jeremiah Grossman's Bit Discovery has banked another $4 million in venture capital funding to compete in the crowded attack surface management space.
Amazon’s AWS subsidiary on Friday announced the acquisition of Wickr, a late-stage startup that sells end-to-end encrypted communications tools. Financial terms of the transaction...
Google this week announced a security update for Google Drive that is meant to make sharing links more secure for files stored with the...
Security researchers at Eclypsium have figured out a way to exploit a set of high-severity vulnerabilities that expose millions of Dell computers to stealthy...
Networking device manufacturer Zyxel has issued an alert to warn customers of attacks targeting a subset of security appliances that have remote management or...
A new version of the open-source Tor Browser was released this week with patches for multiple vulnerabilities, including one that could allow malicious websites...
The U.S. government’s National Security Agency (NSA) on Tuesday announced plans to fund the development of a knowledge base of defensive countermeasures for the...
Multiple vulnerabilities recently patched in Zephyr's Bluetooth LE stack could be exploited to cause denial of service conditions, prevent further connections, or even leak...
Google’s ongoing struggles with in-the-wild zero-day attacks against its flagship Chrome browser isn’t going away anytime soon.