Hi, what are you looking for?
The cybercrime platform leveraged AI at every step of the attack chain, including writing social engineering messages and deciding targets.
A high-severity security vulnerability in Argo CD could allow an attacker to access sensitive information from target applications.
Malware hunters at Microsoft are calling attention to a nasty macOS malware family that has evolved quickly from a basic information-gathering trojan to a...
Threat hunters at Microsoft and Symantec are sharing notes on a barrage of new cyberespionage attacks from Russia’s spy agency hitting organizations in Ukraine.
Malware hunters at Volexity are raising the alarm for a Chinese threat actor seen exploiting a zero-day flaw in the Zimbra email platform to...
The jostling for space in the attack surface management space intensified this week with Michigan startup Censys banking a new $35 million funding round...
Apple late Wednesday pushed out an urgent iOS update with fixes for 11 documented security flaws and warned that one of the vulnerabilities “may...
The U.K. government’s cybersecurity agency has announced plans to ship a collection of well-tested, reliable scanning scripts to help defenders find and fix high-priority...
PrinterLogic has released security updates to address a total of nine vulnerabilities in Web Stack and Virtual Appliance, including three security defects that carry "high...
Microsoft has announced improved security for the users of its flagship Office productivity suite, courtesy of Excel 4.0 (XLM) macros now being restricted by...
Cloud security and compliance automation startup Anitian this week closed a $55 million Series B funding round led by Sageview Capital.The new investment brings...
The U.S. government's Cybersecurity and Infrastructure Security Agency (CISA) on Thursday released the final version of its IPv6 security guidance for federal agencies.
Threat hunters at Kaspersky have spotted a well-known Chinese APT actor using an UEFI implant to maintain stealthy persistence across reboots, disk formatting or...
A new security feature in the latest beta of the Microsoft Edge browser can help protect web surfers from zero-day attacks.
A prominent security researcher poking around at the Zoom video conferencing platform found worrying signs the company failed to enable a decades-old anti-exploit mitigation,...
Thousands of industrial organizations worldwide have been hit in campaigns that leverage short-lived malware to harvest corporate credentials that are then sold by threat...
A vulnerability in Box's implementation of multi-factor authentication (MFA) allowed attackers to take over accounts without having access to the victim’s phone, according to...
Major industrial control system (ICS) vendors and other types of organizations have been targeted in a cyberespionage campaign that appears to focus on renewable...
Researchers at cloud security startup Orca Security have publicly documented a pair of vulnerabilities in AWS CloudFormation and AWS Glue that attackers could use to...
Apple has released an iOS security update with a fix for a persistent denial-of-service flaw in the HomeKit software framework but only after an...