The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
Cybersecurity researchers have disclosed details of two security vulnerabilities impacting Supermicro Baseboard Management Controller (BMC) firmware that could…
Modern CPUs are fast''blindingly fast''partly because they don't always wait around for instructions. Instead, they guess which calculations, memory fetches, o…
The security landscape now moves at a pace no patch cycle can match. Attackers aren’t waiting for quarterly updates or monthly fixes—they adapt within hours, b…
Fortra has disclosed details of a critical security flaw in GoAnywhere Managed File Transfer (MFT) software that could result in the execution of arbitrary com…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday released details of two sets of malware that were discovered in an unnamed organiz…
Cybersecurity researchers have discovered a new malware loader codenamed CountLoader that has been put to use by Russian ransomware gangs to deliver post-explo…
Apple on Monday backported fixes for a recently patched security flaw that has been actively exploited in the wild.The vulnerability in question is CVE-2025-43…
A team of academics from ETH Zürich and Google has discovered a new variant of a RowHammer attack targeting Double Data Rate 5 (DDR5) memory chips from South K…
In a world where threats are persistent, the modern CISO’s real job isn't just to secure technology—it's to preserve institutional trust and ensure business co…
Cisco recently addressed multiple vulnerabilities in IOS XR, one of which could allow image signature…Cisco Patched Multiple IOS XR Vulnerabilities on Latest H…
Microsoft has released the scheduled Patch Tuesday updates for September 2025, addressing 81 security vulnerabilities…Microsoft Fixed 2 Zero-Days Amid 80+ Patc…
Chinese-speaking users are the target of a search engine optimization (SEO) poisoning campaign that uses fake software sites to distribute malware."The attacke…
Heads up, WhatsApp users. A serious zero-day vulnerability existed in WhatsApp that was already exploited…WhatsApp Addressed An Actively Exploited Zero-Day Vul…
Cybersecurity researchers have discovered a new ransomware strain dubbed HybridPetya that resembles the notorious Petya/NotPetya malware, while also incorporat…
A security weakness has been disclosed in the artificial intelligence (AI)-powered code editor Cursor that could trigger code execution when a maliciously craf…
If you're running Linux systems, you know that Linux kernel security is a constant, evolving challenge. New attack surfaces emerge, and keeping up with hardeni…
Threat actors affiliated with the Akira ransomware group have continued to target SonicWall devices for initial access.Cybersecurity firm Rapid7 said it observ…
For Linux admins and security professionals, containers are often the backbone of modern infrastructure. They're lightweight, portable, and isolate application…
For Linux admins and security professionals, containers are often the backbone of modern infrastructure. They're lightweight, portable, and isolate application…
Federal Civilian Executive Branch (FCEB) agencies are being advised to update their Sitecore instances by September 25, 2025, following the discovery of a secu…
A critical security vulnerability impacting SAP S/4HANA, an Enterprise Resource Planning (ERP) software, has come under active exploitation in the wild.The com…
Cybersecurity researchers have flagged a new technique that cybercriminals have adopted to bypass social media platform X's malvertising protections and propag…
It's always unnerving when a system service you rely on day-to-day turns out to be a potential gateway for unauthorized access. That's the story with CVE-2025-…
It's always unnerving when a system service you rely on day-to-day turns out to be a potential gateway for unauthorized access. That's the story with CVE-2025-…