Stay Informed

Cybersecurity News

Home / News

Quick searches: Linux Windows Microsoft 365 AWS OVH VMware WordPress Fortinet Citrix VPN

What it means for your servers

The security stories that matter, explained by our team — with the concrete steps to take.

Latest headlines from security outlets

Collected every two hours from specialised publications — each link leads to the original article.

The Hacker News
The Hacker News Vulnerabilities

Click Studios Patches Passwordstate Authentication Bypass Vulnerability in Emergency Access Page

Click Studios, the developer of enterprise-focused password management solution Passwordstate, said it has released security updates to address an authenticati…

The Hacker News
The Hacker News

TamperedChef Malware Disguised as Fake PDF Editors Steals Credentials and Cookies

Cybersecurity researchers have discovered a cybercrime campaign that's using malvertising tricks to direct victims to fraudulent sites to deliver a new informa…

The Hacker News
The Hacker News Breaches & leaks

Webinar: Why Top Teams Are Prioritizing Code-to-Cloud Mapping in Our 2025 AppSec

Picture this: Your team rolls out some new code, thinking everything's fine. But hidden in there is a tiny flaw that explodes into a huge problem once it hits …

The Hacker News
The Hacker News Breaches & leaks

Hidden Vulnerabilities of Project Management Tools & How FluentPro Backup Secures Them

Every day, businesses, teams, and project managers trust platforms like Trello, Asana, etc., to collaborate and manage tasks. But what happens when that trust …

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles

Cybersecurity Best Practices for Email Templates Enhancing Data Security

Template email is more than a design tool in the campaign of consistent communication; it also has a hidden danger.

The Hacker News
The Hacker News Breaches & leaks

Malicious Nx Packages in ‘s1ngularity’ Attack Leaked 2,349 GitHub, Cloud, and AI Credentials

The maintainers of the nx build system have alerted users to a supply chain attack that allowed attackers to publish malicious versions of the popular npm pack…

GitHub

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Breaches & leaks

What Is a Privilege Escalation Vulnerability?

Imagine this scenario: you're managing Linux servers that host critical applications, where uptime is everything and security is non-negotiable. You're diligen…

Linux

The Hacker News
The Hacker News Breaches & leaks

Storm-0501 Exploits Entra ID to Exfiltrate and Delete Azure Data in Hybrid Cloud Attacks

The financially motivated threat actor known as Storm-0501 has been observed refining its tactics to conduct data exfiltration and extortion attacks targeting …

Microsoft 365 Azure

The Hacker News
The Hacker News Breaches & leaks

Someone Created First AI-Powered Ransomware Using OpenAI's gpt-oss:20b Model

Cybersecurity company ESET has disclosed that it discovered an artificial intelligence (AI)-powered ransomware variant codenamed PromptLock.Written in Golang, …

The Hacker News
The Hacker News Breaches & leaks

Someone Created the First AI-Powered Ransomware Using OpenAI's gpt-oss:20b Model

Cybersecurity company ESET has disclosed that it discovered an artificial intelligence (AI)-powered ransomware variant codenamed PromptLock.Written in Golang, …

The Hacker News
The Hacker News Breaches & leaks

Anthropic Disrupts AI-Powered Cyberattacks Automating Theft and Extortion Across Critical Sectors

Anthropic on Wednesday revealed that it disrupted a sophisticated operation that weaponized its artificial intelligence (AI)-powered chatbot Claude to conduct …

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Breaches & leaks

Docker Desktop 4.44.3 Security Update Mitigates Container Escape Risk

Docker containers are supposed to provide a safe boundary''a virtual sandbox separating workloads from the host machine. When that boundary gets breached, we'r…

Linux Docker

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Breaches & leaks

New Docker Vulns Threaten Container Escape, Host Machine Compromise

Containers were never just a convenience''they were a promise. A promise of isolation, security, and the ability to run workloads in confined, controlled envir…

Docker

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles

Enhancing SMB Linux Security with Managed IT Support Solutions

Small and medium-sized businesses (SMBs) can’t afford to take a hit when it comes to security. And many SMBs rely on Linux to keep their servers and other appl…

Linux

The Hacker News
The Hacker News

New Sni5Gect Attack Crashes Phones and Downgrades 5G to 4G without Rogue Base Station

A team of academics has devised a novel attack that can be used to downgrade a 5G connection to a lower generation without relying on a rogue base station (gNB…

The Hacker News
The Hacker News

MixShell Malware Delivered via Contact Forms Targets U.S. Supply Chain Manufacturers

Cybersecurity researchers are calling attention to a sophisticated social engineering campaign that's targeting supply chain-critical manufacturing companies w…

The Hacker News
The Hacker News Breaches & leaks

ShadowCaptcha Exploits WordPress Sites to Spread Ransomware, Info Stealers, and Crypto Miners

A new large-scale campaign has been observed exploiting over 100 compromised WordPress sites to direct site visitors to fake CAPTCHA verification pages that em…

WordPress

The Hacker News
The Hacker News Breaches & leaks

HOOK Android Trojan Adds Ransomware Overlays, Expands to 107 Remote Commands

Cybersecurity researchers have discovered a new variant of an Android banking trojan called HOOK that features ransomware-style overlay screens to display exto…

Android

The Hacker News
The Hacker News

Google to Verify All Android Developers in 4 Countries to Block Malicious Apps

Google has announced plans to begin verifying the identity of all developers who distribute apps on Android, even for those who distribute their software outsi…

Android

The Hacker News
The Hacker News Vulnerabilities

CISA Adds Three Exploited Vulnerabilities to KEV Catalog Affecting Citrix and Git

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added three security flaws impacting Citrix Session Recording and Git to its Known E…

Citrix

The Hacker News
The Hacker News Vulnerabilities

Docker Fixes CVE-2025-9074, Critical Container Escape Vulnerability With CVSS Score 9.3

Docker has released fixes to address a critical security flaw affecting the Docker Desktop app for Windows and macOS that could potentially allow an attacker t…

Windows Docker Apple

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles

Arch Linux Under Fire: DDoS Attack Enters Second Week

If you've tried pulling files from Arch's main site, hit the AUR, or popped into their forums recently, then you've probably noticed things are off. Maybe you …

Linux

The Hacker News
The Hacker News

Why SIEM Rules Fail and How to Fix Them: Insights from 160 Million Attack Simulations

Security Information and Event Management (SIEM) systems act as the primary tools for detecting suspicious activity in enterprise networks, helping organizatio…

The Hacker News
The Hacker News Breaches & leaks

Malicious Go Module Poses as SSH Brute-Force Tool, Steals Credentials via Telegram Bot

Cybersecurity researchers have discovered a malicious Go module that presents itself as a brute-force tool for SSH but actually contains functionality to discr…