Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Latest Cybersecurity News

The security defects could lead to unauthorized access, information leaks, privilege escalation, DoS attacks, and remote code execution.

All enterprises conduct security awareness training for their employees. But whether this has tangible benefits is debatable.

Threat actors have started targeting CVE-2026-21589, a critical vulnerability in Atlassian’s self-hosted Data Center products.

Zhang Yu was charged alongside Xu Zewei, who was extradited from Italy to the US in April 2026.

Critical and high-severity vulnerabilities could allow attackers to bypass authentication, execute arbitrary code, and elevate their privileges.

The cybersecurity startup will invest in product innovation, agentic research, and employee base expansion.

SEC Consult has published technical details on vulnerabilities mentioned in a complaint filed by several US states.

Zohar Pinhasi was paying ransoms to obtain decryption keys and then charging victims substantially more for remediation.

The figure is far higher than the counts that surfaced in earlier filings and patient notifications.

Attackers are creating new accounts and deleting existing ones and passwords to prevent legitimate access.

Southern Company is notifying customers that their utility account information was accessed by hackers.

The individual was detained in May and has been extradited to Germany to face hacking charges.

Hadrian offers an agentic offensive security platform that allows defenders to operate at the same speed as attackers.

Security awareness training Security awareness training

All enterprises conduct security awareness training for their employees. But whether this has tangible benefits is debatable.

Atlassian Atlassian

Threat actors have started targeting CVE-2026-21589, a critical vulnerability in Atlassian’s self-hosted Data Center products.

TP-Link vulnerabilities TP-Link vulnerabilities

SEC Consult has published technical details on vulnerabilities mentioned in a complaint filed by several US states.

Top Cybersecurity Headlines

Attackers are creating new accounts and deleting existing ones and passwords to prevent legitimate access.

Southern Company is notifying customers that their utility account information was accessed by hackers.

Hackers compromised a third-party communication platform and sent rogue notifications to ASOS users.

SecurityWeek Industry Experts

More Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Learn how to address potential risks and not restrict AI adoption in your organization. See what a centralized AI gateway is and how it works in practice.

Register

Join as we decipher the world of zero trust and share war stories on securing an organization by eliminating implicit trust and continuously validating every stage of a digital interaction.

Register

Upcoming Cybersecurity Events

ICS Cybersecurity Conference 2026

SecurityWeek’s ICS Cybersecurity Conference celebrates its 25th anniversary in Nashville. Join the largest and longest-running event series focused on industrial cybersecurity.
[October 6-8, 2026 | In-Person]

Learn More

SecurityWeek’s 2026 Zero Trust Summit will deep-dive into the world of digital identity management and the role of zero-trust principles and associated technologies
[October 14, 2026 | Virtual]

Read More
CISO Forum Virtual Summit 2026

The 2026 Virtual CISO Forum brings together CISOs, senior cybersecurity executives, practitioners, industry experts, and other security leaders to share practical experience and examine the issues shaping enterprise cybersecurity strategy.
[November 11, 2026]

Read More

SecurityWeek’s CodeSecCon 2026 will bring together developers and cybersecurity professionals to revolutionize the way applications are built, secured, and maintained.
[Originally August 19, 2026]

Learn More

Vulnerabilities

Cybercrime

Sybase, Inc. (NYSE:SY), today announced support for iPad and Android devices with the latest release of, Afaria, their mobile device management and security solution for the enterprise."The popularity of highly functional smart mobile devices, such as iPhone, Android and now the iPad, is significantly impacting enterprise mobility support requirements as these devices increasingly cross over from consumers into the corporate setting," said Jack Gold, president and principal analyst of J. Gold Associates, LLC.

Suppose a friend wants you to meet her cousin Bill at a black tie affair. You don’t have a photo of Bill to help you find him among the five hundred or so people in attendance—you only have your cousin’s description of Bill.

Sunbelt Software today announced the availability of Sunbelt CWSandbox 3.0, an upgraded version of their automated dynamic malware analysis tool. CWSandbox leverages unique behavior analysis technology for the identification of malicious threats like PDF exploits, fake media players and other socially engineered attacks against enterprise or government networks.

PhoneGuard, a provider of mobile security services, today announced availability of its anti-virus software for Android smartphones. Partnering with China based NetQin Technology, PhoneGuard provides a defense against threats including viruses, spyware and malware that target mobile devices.

Anti-virus products scan for malware in two ways. They look for sequences of bits that are found in programs that are known to be “evil” (but which are not commonly found in “good” programs). And they run programs in sandboxes and look for known malicious actions. The first approach only catches known malware instances, while the second can also catch variants of these. Still, many malware agents slip through the cracks undetected...

Event image poster

The leading global conference series for Operations, Control Systems and IT/OT Security professionals to connect on SCADA, DCS PLC and field controller cybersecurity.

Learn More

Application Security

Application Security

Roughly 200,000 of the credentials were exposed after GitHub enabled push protections by default.

Cloud Security

Artificial Intelligence

Microsoft fixed vulnerabilities across Azure and AI-branded products, with privilege escalation flaws accounting for the majority.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.