Application Security
Google wants to bring “salsa” to drive enforcement at the software supply chain security party.
Hi, what are you looking for?
Tracked as CVE-2026-48842, the exploited bug is an SQL injection that can be exploited without authentication.
Google wants to bring “salsa” to drive enforcement at the software supply chain security party.
Threat hunters at Kaspersky are sounding a warning for an Iranian APT actor that has been silently conducting domestic cyber-surveillance operations for the last...
Google has finally enabled end-to-end encryption (E2EE) for the Messages app in Android but the privacy-enhancing tool remains somewhat limited.Google announced end-to-end encryption is...
Identity management provider Elisity on Tuesday announced that it secured $26 million in Series A funding, bringing the total raised by the company to...
Financial institutions have always been at the forefront of battling cybercrime. As one of the most targeted industries, they face multiple threats, such as...
Apple late Monday shipped an out-of-band iOS update for older iPhones and iPads alongside a warning that a pair of WebKit security vulnerabilities may...
Following a major software supply chain compromise that exposed data for several major companies, developer tools startup CodeCov plans to kill off the Bash...
A cyberattack targeting Air India was orchestrated by a Chinese nation-state threat actor tracked as APT41, according to cybersecurity firm Group-IB.
Microsoft today announced it disrupted a large-scale business email compromise (BEC) campaign in which the attackers used forwarding rules to access messages related to...
Edge security and content delivery giant Akamai Technologies has tapped Boaz Gelbord to lead its cybersecurity program.
Volkswagen Group of America this week revealed that approximately 3.3 million people might have been affected in a data breach that impacted both Audi...
Christopher Ahlberg wants to “build a significant threat-intel company” and he isn’t shy about looking externally for technology innovation around data intelligence tools.
Malicious hackers are exploiting an old VPN security flaw to compromise SonicWall SRA (secure remote access) devices, according to a warning from security vendor...
A newly observed malicious campaign is targeting Kubeflow workloads to deploy TensorFlow pods that are used to mine for crypto-currency, according to a warning...
German software maker SAP this week released 17 new security notes documenting security vulnerabilities being fixed as part of the company's June 2021 SAP...
Microsoft’s Patch Tuesday will take on extra urgency this month with the news that at least six previously undocumented vulnerabilities are being actively exploited...
Adobe’s product security response machine revved into high gear this week with the release of multiple patches for gaping security holes in widely deployed...
United States trucks and military vehicles maker Navistar International Corporation has confirmed a cyberattack that resulted in some data being stolen.