Domains set up by the threat actor suggest attacks aimed at Atlassian, Canva, Epic Games, HubSpot, Moderna, ZoomInfo, and WeWork.
Hi, what are you looking for?
Domains set up by the threat actor suggest attacks aimed at Atlassian, Canva, Epic Games, HubSpot, Moderna, ZoomInfo, and WeWork.
The protections against NPM supply chain attacks could be bypassed, leading to arbitrary code execution.
Quantum computers are coming, with a potential computing power almost beyond comprehension.
Marketed as ChatGPT enhancement and productivity tools, the extensions allow the threat actor to access the victim's ChatGPT data.
The flaws allow threat actors to obtain root privileges or bypass authentication via Telnet and gain shell access as root.
The vulnerability is tracked as CVE-2026-21509 and it can be exploited to bypass security features.
More than 20 vulnerabilities were found and patched in Dormakaba physical access control systems.
The CNAPP company will use the fresh investment to scale its runtime-first cloud security offering across data, AI and code.
Crunchbase was targeted alongside SoundCloud and Betterment in a ShinyHunters campaign.
Understanding how threat hunting differs from reactive security provides a deeper understanding of the role, while hinting at how it will evolve in the future.
Priced $2,000 - $6,000 on a cybercrime forum, the MaaS toolkit promises publication on the Chrome Web Store.
TikTok has finalized a deal to create a new American entity, avoiding the looming threat of a ban in the United States.
10 years after disrupting the Ukrainian power grid, the APT targeted Poland with data-wiping malware.
The critical-severity vulnerability can be exploited via crafted network packets for remote code execution.
The WorldLeaks cybercrime group claims to have stolen information from the footwear and apparel giant’s systems.
Similar to recent FortiCloud single sign-on (SSO) login vulnerabilities, the attacks bypass authentication.