Sophos warns that a DragonForce ransomware operator chained three vulnerabilities in SimpleHelp to target a managed service provider.
Hi, what are you looking for?
Sophos warns that a DragonForce ransomware operator chained three vulnerabilities in SimpleHelp to target a managed service provider.
Security firm Socket warns flags a campaign targeting NPM users with tens of malicious packages that can hijack system information.
The FBI warns US law firms that the Silent Ransom Group (SRG) has been constantly targeting the legal industry.
Russian national Rustam Gallyamov was indicted in the US for his leading role in the development and distribution of Qakbot malware.
CISA warns companies of a widespread campaign targeting a Commvault vulnerability to hack Azure environments.
A Chinese threat actor exploited a zero-day vulnerability in Trimble Cityworks to hack local government entities in the US.
A Chinese espionage group has been chaining two recent Ivanti EPMM vulnerabilities in attacks against organizations in multiple critical sectors.
Cisco published 10 security advisories detailing over a dozen vulnerabilities, including two high-severity flaws in its Identity Services Engine (ISE) and Unified Intelligence Center.
GitLab and Atlassian have released patches for over a dozen vulnerabilities in their products, including high-severity bugs.
Matthew Lane allegedly hacked PowerSchool using stolen credentials and admitted to extorting a telecoms provider.
Wireless carrier Cellcom has confirmed that a week-long widespread service outage is the result of a cyberattack.
Wiz warns that threat actors are chaining two recent Ivanti vulnerabilities to achieve unauthenticated remote code execution.
Kettering Health has canceled inpatient and outpatient procedures as it deals with a system-wide outage caused by a ransomware attack.
AI-native security assurance firm TrustCloud has raised $15 million in a strategic funding round led by ServiceNow Ventures.
Threat protection and intelligence firm CloudSEK raises $19 million in funding from new and existing investors.
A vulnerability in O2’s implementation of the IMS standard resulted in user location data being exposed in network responses.
Procolored’s public website served dozens of software downloads containing information stealer malware and a backdoor.
Harbin Clinic says the information of over 200,000 patients was stolen in a July 2024 data breach at Nationwide Recovery Services.
Eric Council Jr. was sentenced to prison for hacking SEC’s official X account and publishing fraudulent posts increasing Bitcoin value.
Google says the hacking group behind the recent cyberattacks on UK retailers is now shifting focus to the US.