Microsoft has released patches for dozens of flaws in Windows and other products, including ones with ‘exploitation more likely’ rating.
Hi, what are you looking for?
Microsoft has released patches for dozens of flaws in Windows and other products, including ones with ‘exploitation more likely’ rating.
Adobe has patched nearly two dozen vulnerabilities across nine of its products with its September 2025 Patch Tuesday updates.
Hackers mount the host’s file system into fresh containers, fetch malicious scripts over the Tor network, and block access to the Docker API.
The critical-severity NetWeaver flaws could be exploited for remote code execution and privilege escalation.
Based on real-world insurance claims, Resilience’s midyear report shows vendor risk is declining but costly, ransomware is evolving with triple extortion, and social engineering attacks are accelerating through AI.
Attaullah Baig has filed a lawsuit against Meta and its executives, accusing them of retaliation over critical cybersecurity failures.
In May 2024, hackers stole names, Social Security numbers, financial information, and protected health information from the hospital’s systems.
The attacker deployed multiple malware families, including two backdoors and a proxy tunneller, and various reconnaissance tools.
The industrial cybersecurity firm will become a wholly owned subsidiary of Mitsubishi Electric.
Hackers accessed emails, usernames, password hashes, and authentication data stored in a Plex database.
SentinelOne is buying Observo AI for a combination of cash and stock to boost its SIEM and data offerings.
China’s APT41 sent out malicious emails on behalf of Rep. John Moolenaar to collect information ahead of US-China trade talks.
PromptLock is only a prototype of LLM-orchestrated ransomware, but hackers already use AI in file encryption and extortion attacks.
A supply chain attack called GhostAction has enabled threat actors to steal secrets and exploit them.
The list of impacted cybersecurity firms has been expanded to include BeyondTrust, Bugcrowd, CyberArk, Cato Networks, JFrog, and Rubrik.
The private repositories of hundreds of organizations were published publicly in the second phase of the Nx supply chain attack.