VulnCheck warns of widespread exploitation of a year-and-a-half-old ProjectSend vulnerability for which multiple public exploits exist.
Hi, what are you looking for?
VulnCheck warns of widespread exploitation of a year-and-a-half-old ProjectSend vulnerability for which multiple public exploits exist.
US senators introduce new legislation to protect health data and strengthen the cybersecurity of the country’s healthcare sector.
The Russia-linked RomCom APT has been observed chaining two zero-days in Firefox and Windows for backdoor delivery.
IBM has released patches for two high-severity remote code execution vulnerabilities in Data Virtualization Manager and Security SOAR.
CISA warns about attacks exploiting CVE-2023-28461, a critical vulnerability in Array Networks AG and vxAG secure access gateways.
New York has announced $11 million settlements with Geico and Travelers over data breaches affecting 120,000 people.
Two vulnerabilities in the Anti-Spam by CleanTalk WordPress plugin allowed attackers to execute arbitrary code remotely.
A ransomware group has been observed exploiting a recently patched command injection vulnerability in Zyxel firewalls for initial access.
San Francisco-based third-party risk management provider Viso Trust has raised $7 million in venture funding.
The North Korean fake IT workers have infiltrated businesses in China, Russia, and other countries aside from the US.
The SafePay ransomware group claims to have stolen over 1 terabyte of data from vehicle tracking solutions provider Microlise.
Gambling giant IGT says it has taken certain systems offline in response to a cyberattack discovered over the weekend.
The US government has announced the seizure of stolen credit card marketplace PopeyeTools and charges against its administrators.
Russia-linked TAG-110 has targeted over 60 government, human rights, and educational entities in Asia and Europe.
VulnCheck finds hundreds of thousands of internet-accessible hosts potentially vulnerable to 2023’s top frequently exploited flaws.
Gen-AI security startup Prompt Security has raised $18 million in a Series A funding round led by Jump Capital.
MITRE has released an updated CWE Top 25 Most Dangerous Software Weaknesses list, with cross-site scripting (XSS) at the top.
Finastra is investigating a data breach after a hacker claimed the theft of information from an internal file-transfer application.
Five alleged members of the Scattered Spider cybercrime group were charged for phishing and stealing millions in cryptocurrency.
Risk intelligence and cybersecurity solutions provider RIIG has raised $3 million in a seed funding round led by Felton Group.