A financially motivated threat actor automated the package publishing process in a coordinated tea.xyz token farming campaign.
Hi, what are you looking for?
A financially motivated threat actor automated the package publishing process in a coordinated tea.xyz token farming campaign.
A vulnerability in ImunifyAV can be exploited for arbitrary code execution by uploading a malicious file to shared servers.
A state-sponsored threat actor manipulated Claude Code to execute cyberattacks on roughly 30 organizations worldwide.
The cybercriminals informed customers that their cloud server was shut down due to complaints.
A researcher found a way to exploit an SSRF vulnerability related to custom GPTs to obtain an Azure access token.
An individual believed to have been involved in the operation of VenomRAT was arrested recently in Greece.
Federal agencies have reported as ‘patched’ ASA or FTD devices running software versions vulnerable to attacks.
Join us as speakers from Cisco outline important steps industrial organizations can take to safeguard operations, achieve compliance, and enable sustainable growth.
The spam campaign is likely orchestrated by an Indonesian threat actor, based on code comments and the packages’ random names.
The UK’s national healthcare system is working with the country’s National Cyber Security Centre to investigate the incident.
Tracked as CVE-2025-9242 (CVSS score of 9.3), the flaw leads to unauthenticated, remote code execution on vulnerable firewalls.
The ransomware attack on the pathology services provider disrupted operations at several London hospitals.
Amazon has seen a threat actor exploiting CVE-2025-20337 and CVE-2025-5777, two critical Cisco and Citrix vulnerabilities, as zero-days.
Google and Mozilla have released fresh Chrome and Firefox updates that address multiple high-severity security defects.
NTT’s chief cybersecurity strategist Mihoko Matsubara on the new geopolitics of hacking, the "chicken and egg" problem of 5G, and the AGI threat to society.
Behavioral detection allows defenders to recognize activity patterns like privilege escalation, credential theft, and lateral movement—often ahead of encryption or data exfiltration.