Cisco has released software updates to address 27 vulnerabilities in Cisco ASA, FMC, and FTD software.
Hi, what are you looking for?
Cisco has released software updates to address 27 vulnerabilities in Cisco ASA, FMC, and FTD software.
Check Point reports that an Iranian APT has been observed using a new malware framework in targeted attacks in the Middle East.
Multiple threat actors are exploiting CVE-2023-4966, aka Citrix Bleed, a critical vulnerability in NetScaler ADC and Gateway.
Chrome 119 is rolling out to Linux, macOS, and Windows users with patches for 15 vulnerabilities.
Threat actors are constantly publishing malicious NuGet packages to automatically execute code on developers’ machines.
Graylog secured $39 million in funding to accelerate product development and scale its go-to-market operations.
Atlassian warns that a critical vulnerability in Confluence Data Center and Server could lead to significant data loss if exploited.
A threat actor is reportedly harvesting IAM credentials from public GitHub repositories within five minutes of exposure.
Exploitation of a critical vulnerability (CVE-2023-46747) in F5’s BIG-IP product started less than five days after public disclosure and PoC exploit code was published.
A 20-year-old Floridian was sentenced to prison for his role in a hacking scheme that led to the theft of $1 million in cryptocurrency.
The LockBit ransomware gang claims to have stolen large amounts of data from aerospace giant Boeing.
New capability detects attacks on iMessage servers and allows users to verify a conversation partner’s identity.
Researchers document the Wiki-Slack attack, a new technique that uses modified Wikipedia pages to target end users on Slack.
Hackers have demonstrated 58 zero-days and earned more than $1 million in rewards at Pwn2Own Toronto 2023.
The StripedFly malware has APT-like capabilities, but remained unnoticed for five years, posing as a cryptocurrency miner.
A critical-severity vulnerability in F5 BIG-IP CVE-2023-46747 allows unauthenticated attackers to execute code remotely.
Mirth Connect versions prior to 4.4.1 are vulnerable to CVE-2023-43208, a bypass for an RCE vulnerability.
Smart speakers, printers, routers, NAS devices, and mobile phones were hacked on the second day at Pwn2Own Toronto 2023.
CISA and the HHS have released resources for healthcare and public health organizations to improve their security.
Google announces a bug bounty program and other initiatives for increasing the safety and security of AI.