Patch Tuesday: Adobe patches six security flaws in the Substance 3D Stager product and warned of code execution risks on Windows and macOS.
Hi, what are you looking for?
Patch Tuesday: Adobe patches six security flaws in the Substance 3D Stager product and warned of code execution risks on Windows and macOS.
Industrial giants Siemens and Schneider Electric publish a total of 7 new security advisories addressing 22 vulnerabilities.
Researchers at Securonix warn that Turkish threat actors are targeting organizations in the Americas and Europe with ransomware campaigns.
Despite the drastically newer and more complex technology, many of the core incident response principles remain the exact same and we should never forget the fundamentals.
Hackers can take complete control of Bosch Rexroth nutrunners, installing ransomware or altering settings to cause financial impact and brand damage.
Mortgage lending firm LoanDepot has disclosed a cyberattack resulting in data encryption and system disruptions.
The LockBit ransomware gang claims to have stolen over 7 terabytes of data from hospital system Capital Health.
The volume of cybersecurity transactions increased in 2023 compared to 2022, but the total amount of funding decreased significantly.
QNAP has released patches for a dozen vulnerabilities in its products, including several high-severity flaws.
Turkish state-sponsored group Sea Turtle has been targeting multiple organizations in the Netherlands for espionage.
Self-hosted GitHub Actions runners could allow attackers to inject malicious code into repositories, leading to supply chain attacks.
NIST has published guidance on adversarial machine learning (AML) attacks and mitigations, warning that there is no silver bullet.
Organizations in different industries may approach security automation from a different entry point, but the requirements for an automation platform are consistent across use cases.
SecurityWeek interviews two CISOs from the insurance sector: Jason Rebholz at Corvus Insurance and Jason Ozin at UK-based PIB Group.
The information display screens at Beirut’s international airport were hacked by domestic anti-Hezbollah groups.
A total of more than 28,000 CVE IDs were assigned in 2023 and 84 new CVE Numbering Authorities (CNAs) were named.
In a landmark case that blurs the lines between cyber and kinetic warfare, Merck reached a settlement with insurers over a $1.4 billion claim stemming from the NotPetya malware attack.
Global law firm Orrick, Herrington & Sutcliffe disclosed a data breach that affects a roughly 600,000 individuals.
Noteworthy stories that might have slipped under the radar: report on US ransomware attacks, 23andMe blames victims for hack, nuclear waste company targeted.
SpectralBlur is a new macOS backdoor that shows similarities with North Korean hacking group’s KandyKorn malware.