More than 19 months after it was patched by Drupal developers, a critical SQL injection vulnerability in the popular content management system is still...
Hi, what are you looking for?
More than 19 months after it was patched by Drupal developers, a critical SQL injection vulnerability in the popular content management system is still...
Software update and support tools preinstalled on PCs from some of the world’s biggest original equipment manufacturers (OEMs) introduce serious vulnerabilities that expose users...
An advanced persistent threat (APT) group believed to be linked to the government of the United Arab Emirates (UAE) has been observed targeting journalists,...
A researcher reported finding an unprotected database belonging to Pacific Gas and Electric (PG&E), a major natural gas and electric utility based in California....
The data breach disclosed earlier this month by the Yahoo-owned microblogging platform Tumblr affects 65 million users.
An OpenSSL vulnerability patched in early May with the release of versions 1.0.2h and 1.0.1t still hasn’t been patched on many of the world’s...
LG has released fixes for two serious vulnerabilities affecting the company’s Android smartphones, including a flaw that can be exploited remotely to delete and...
AMSTERDAM - HACK IN THE BOX - Researchers have demonstrated that remote attackers can wirelessly change the time on network time protocol (NTP) servers...
Palo Alto Networks researchers noticed that a China-linked advanced persistent threat (APT) actor has been using a piece of malware that leverages DNS requests...
An Office vulnerability patched by Microsoft last year has been exploited by several advanced persistent threat (APT) actors in operations aimed at organizations in...
Several serious vulnerabilities affecting Moxa’s MiiNePort embedded serial device servers have been disclosed by ICS-CERT and the researcher who discovered the issues.MiiNePort are embedded...
The fact that web browsers allow developers to manipulate the content of the clipboard can be exploited by attackers to trick unsuspecting users into...
A vulnerability in the Web Proxy Auto-Discovery (WPAD) protocol can be exploited by malicious actors to launch man-in-the-middle (MitM) attacks against enterprise users, researchers...
An update released by Adobe for its Connect web conferencing software addresses over two dozen functionality bugs and one security flaw.
A threat group first analyzed more than two years ago has continued to improve its malware arsenal and was recently observed targeting personnel at...
The recent cyber espionage attack aimed at Swiss defense firm RUAG was carried out by the Russia-linked threat group known as Turla, according to...
The authors of the Magnitude exploit kit have already started integrating an exploit for a recently patched Adobe Flash Player vulnerability.
The Department of Justice announced on Friday that a Macedonian citizen charged with crimes related to operating a cybercrime marketplace has been extradited to...