Application Security
Software supply chain security jitters escalated again Friday with new “critical severity” warnings about malware embedded in two npm package managers widely used by...
Hi, what are you looking for?
Kaspersky told SecurityWeek that it patched the vulnerability affecting its Endpoint Security product.
Software supply chain security jitters escalated again Friday with new “critical severity” warnings about malware embedded in two npm package managers widely used by...
US Goverment Offers $10 Million Reward for Data on Leaders and Members of DarkSide Ransomware Operation
Enterprise networking giant Cisco has released patches for multiple vulnerabilities across its product portfolio, including critical security defects in Catalyst Passive Optical Network (PON)...
Researchers are calling attention to a newly discovered security defect in a kernel module that ships with all major Linux distributions, warning that remote...
Microsoft on Tuesday announced the upcoming availability of Microsoft Defender for Business, an enterprise-grade endpoint security solution catered for small and medium-sized businesses (SMBs).
The Federal Bureau of Investigation (FBI) this week issued an industry-wide notification to raise awareness about ransomware operators leveraging information on mergers, acquisitions and...
Privacy-focused communication platforms Signal is sharing information on the improvements it has made to its spam-prevention capabilities.The task of keeping spam out of user’s...
IBM Security on Tuesday announced plans to acquire ReaQta, an early-stage European startup in the red-hot autonomous threat detection and response business.Financial terms of...
Microsoft Phishing Messages Come From Kaspersky Email AddressKaspersky published two advisories on Monday to warn customers about a vulnerability that can lead to unbootable...
Google is sweetening the pot for bug bounty researchers finding and exploiting privilege escalation flaws in the Linux kernel.Over the next three months, Google...
Zero trust is a conceptual destination, not an application. As with all destinations, there are different routes to it, and even different descriptions of...
Malware hunters at Lookout Security have discovered a new Android rooting malware that managed to score tens of thousands of downloads through Google Play...
Minnesota-based IT management and software powerhouse HelpSystems expanded its year-long cybersecurity shopping spree with a new deal to acquire data loss prevention specialists Digital...
Microsoft on Thursday published information on a vulnerability in Apple’s macOS platform that could allow an attacker to bypass System Integrity Protection (SIP) and...
The Federal Bureau of Investigation (FBI) this week released a Flash report to publicly share indicators of compromise (IOCs) for the Ranzy Locker ransomware.
A highly-critical vulnerability in a popular open-source CI/CD solution can be exploited to hijack sensitive secrets for downstream supply chain attacks, according to a...
Google on Wednesday announced the Minimum Viable Secure Product (MVSP) initiative, partnering with some of tech's biggest names to create a vendor-neutral minimum baseline...
An XDR implementation can quickly turn into a very large consulting project requiring significant time and budget
The United States Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday announced the appointment of Washington Secretary of State Kim Wyman as its Senior...
The North Korea-linked state-sponsored hacking group Lazarus has started to target the IT supply chain in recent attacks, according to cybersecurity firm Kaspersky.