Two vulnerabilities in the Anti-Spam by CleanTalk WordPress plugin allowed attackers to execute arbitrary code remotely.
Hi, what are you looking for?
Two vulnerabilities in the Anti-Spam by CleanTalk WordPress plugin allowed attackers to execute arbitrary code remotely.
A ransomware group has been observed exploiting a recently patched command injection vulnerability in Zyxel firewalls for initial access.
San Francisco-based third-party risk management provider Viso Trust has raised $7 million in venture funding.
The North Korean fake IT workers have infiltrated businesses in China, Russia, and other countries aside from the US.
The SafePay ransomware group claims to have stolen over 1 terabyte of data from vehicle tracking solutions provider Microlise.
Gambling giant IGT says it has taken certain systems offline in response to a cyberattack discovered over the weekend.
The US government has announced the seizure of stolen credit card marketplace PopeyeTools and charges against its administrators.
Russia-linked TAG-110 has targeted over 60 government, human rights, and educational entities in Asia and Europe.
VulnCheck finds hundreds of thousands of internet-accessible hosts potentially vulnerable to 2023’s top frequently exploited flaws.
Gen-AI security startup Prompt Security has raised $18 million in a Series A funding round led by Jump Capital.
MITRE has released an updated CWE Top 25 Most Dangerous Software Weaknesses list, with cross-site scripting (XSS) at the top.
Finastra is investigating a data breach after a hacker claimed the theft of information from an internal file-transfer application.
Five alleged members of the Scattered Spider cybercrime group were charged for phishing and stealing millions in cryptocurrency.
Risk intelligence and cybersecurity solutions provider RIIG has raised $3 million in a seed funding round led by Felton Group.
Six discontinued D-Link router models are affected by a remote code execution (RCE) vulnerability that will not be patched.
GitHub has launched a $1.25 million fund to be invested in improving the security of 125 open source projects.
Oracle has patched a high-severity information disclosure zero-day in Agile PLM that has been exploited in the wild.
Satellite maker Maxar Space Systems has disclosed a data breach impacting the personal information of its employees.
Evgenii Ptitsyn was extradited from South Korea to the US to face charges for his alleged involvement in administering the Phobos ransomware.
A threat actor tracked as Water Barghest has compromised over 20,000 IoT devices and monetizes them as residential proxies.