Patch Tuesday: Microsoft ships updates to over at least 70 documented vulnerabilities affecting the Windows ecosystem.
Hi, what are you looking for?
Patch Tuesday: Microsoft ships updates to over at least 70 documented vulnerabilities affecting the Windows ecosystem.
Mandiant has observed a Chinese cyberespionage group exploiting a VMware ESXi zero-day vulnerability for privilege escalation.
Adobe ships urgent fixes for at least a dozen flaws that expose Adobe Commerce users to code execution attacks.
The Russia-linked ICS malware named CosmicEnergy does not pose a direct threat to OT systems as it contains errors and lacks maturity.
SecurityWeek’s 2023 CISO Forum Virtual Summit is taking place June 13-14 as a fully immersive online experience.
A Romanian national who operated a bulletproof hosting service used by malware operators was sentenced to prison in the US.
New research conducted by IOActive shows the potential of electromagnetic fault injection (EMFI) attacks against drones.
St. Margaret’s Health in Illinois is shutting down hospitals partly due to a 2021 ransomware attack that caused serious payment system disruptions.
A database containing the personal information of roughly 9 million Zacks users has emerged online.
Fortinet has warned customers that the critical CVE-2023-27997 vulnerability that was patched recently could be a zero-day exploited in limited attacks.
OMB has published new guidance on federal agencies obtaining security guarantees from software vendors.
Two Russian nationals are charged in the US with hacking a cryptocurrency exchange and conspiring to launder the proceeds.
Intellihartx says the personal information of roughly 490,000 individuals was compromised in the GoAnywhere zero-day attack earlier this year.
By having a golden image you will put a process in place that allows you to quickly take action when a vulnerability is found within your organization.
Researchers discover new MOVEit vulnerabilities related to the zero-day, just as more organizations hit by the attack are coming forward.
Switzerland said government operational data might have been stolen in a ransomware attack on a technology firm that provides software for several departments.
Fortinet has patched CVE-2023-27997, a critical FortiGate SSL VPN vulnerability that can be exploited for unauthenticated remote code execution.
Cybersecurity news that you may have missed this week: AI regulation, layoffs, US aerospace malware attacks, and post-quantum encryption.
Blackpoint Cyber raises $190 million in a growth funding round led by Bain Capital Tech Opportunities.
The Google SAIF (Secure AI Framework) is designed to provide a security framework or ecosystem for the development, use and protection of AI systems.