Researchers document the Wiki-Slack attack, a new technique that uses modified Wikipedia pages to target end users on Slack.
Hi, what are you looking for?
Researchers document the Wiki-Slack attack, a new technique that uses modified Wikipedia pages to target end users on Slack.
Hackers have demonstrated 58 zero-days and earned more than $1 million in rewards at Pwn2Own Toronto 2023.
The StripedFly malware has APT-like capabilities, but remained unnoticed for five years, posing as a cryptocurrency miner.
A critical-severity vulnerability in F5 BIG-IP CVE-2023-46747 allows unauthenticated attackers to execute code remotely.
Mirth Connect versions prior to 4.4.1 are vulnerable to CVE-2023-43208, a bypass for an RCE vulnerability.
Smart speakers, printers, routers, NAS devices, and mobile phones were hacked on the second day at Pwn2Own Toronto 2023.
CISA and the HHS have released resources for healthcare and public health organizations to improve their security.
Google announces a bug bounty program and other initiatives for increasing the safety and security of AI.
Cisco links the espionage-focused ‘YoroTrooper’ threat actor to Kazakhstan.
Firefox and Chrome updates released this week resolve multiple high-severity memory safety vulnerabilities.
NAS devices, printers, IP cameras, speakers, and mobile phones were hacked on the first day at Pwn2Own Toronto 2023.
Russian APT Winter Vivern exploits a zero-day in the Roundcube webmail server in attacks targeting European governments.
The City of Philadelphia says personal, health, and financial information was stolen in a cyberattack on its email environment.
Kaspersky analyzes the stealth techniques that were used in the ‘Operation Triangulation’ iOS zero-click attacks.
The personal information of students, applicants, alumni, and employees compromised in University of Michigan data breach.
Blockaid raises a Series A funding round to build technology to secure blockchain applications from hacks and scams.
Hackers access the personal information of Casio customers after compromising the server for an education web application.
SolarWinds patches high-severity flaws in its Access Rights Manager product, including three unauthenticated remote code execution issues.
The District of Columbia Board of Elections says full voter roll compromised in a recent data breach at hosting provider DataNet.
The RagnarLocker ransomware group’s dark web leak site has been seized in a coordinated law enforcement operation.