A novel twist in the ongoing ClickFix malware campaigns has security researchers observing the abuse of the...
RCE
ASUS has issued a security advisory concerning a critical authentication bypass vulnerability, tracked as CVE-2025-59367, affecting several...
A significant security threat has been identified within the consumer Internet of Things (IoT) market, specifically targeting...
The DanaBot malware operation has resumed its malicious activities, deploying a new version in active campaigns just...
A critical vulnerability in Gladinet’s Triofox file-sharing platform has been actively exploited by threat actors to bypass...
SAP has released its November 2025 security updates, a critical patch batch addressing 18 new security notes...
A new variant of the FileFix social engineering attack is leveraging cache smuggling to secretly download malicious...
A critical vulnerability in Fortra’s GoAnywhere Managed File Transfer (MFT) software, tracked as CVE-2025-10035, is being actively...
A new hacking competition called Zeroday Cloud has announced a total prize pool of $4.5 million in...
The Redis security team has issued patches for a critical, maximum-severity vulnerability that enables authenticated attackers to...
A significant security vulnerability, tracked as CVE-2025-59489, has been identified within the Unity game engine, posing a...
Security researchers have identified a new zero-day attack campaign targeting Zimbra Collaboration Suite (ZCS) that leverages malicious...
Networking hardware manufacturer DrayTek is confronting a significant security crisis involving multiple vulnerabilities in its Vigor router...
The bug bounty ecosystem is experiencing unprecedented growth, with HackerOne announcing it paid out $81 million in...
A new phishing and malware distribution toolkit called MatrixPDF enables attackers to convert ordinary PDF files into...
Western Digital has released firmware updates to address a critical-severity vulnerability in multiple My Cloud Network Attached...
A critical vulnerability in Fortra’s GoAnywhere Managed File Transfer (MFT) software, tracked as CVE-2025-10035, was actively exploited...
A software supply chain attack targeting the Rust programming language ecosystem has been uncovered, involving malicious packages...
Security researchers have identified new vulnerabilities in Supermicro’s Baseboard Management Controller (BMC) firmware that allow attackers to...
A newly identified vulnerability in multiple versions of OnePlus’s OxygenOS allows any application installed on a device...