Click Studios, the developer of the Passwordstate enterprise password manager, has issued an urgent warning to its...
RCE
Citrix has released emergency patches for a critical remote code execution vulnerability, tracked as CVE-2025-7775, affecting its...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical vulnerability in the Git distributed...
Internet intelligence firm GreyNoise has identified a significant and coordinated surge in scanning activity directed at Microsoft...
A new class of attack, exploiting the image preprocessing pipelines of multimodal AI systems, has been demonstrated...
A critical vulnerability in Docker Desktop for Windows and macOS, designated CVE-2025-9074, has been patched after it...
Apple has released emergency security updates to address a zero-day vulnerability actively exploited in what the company...
A newly disclosed class of vulnerabilities in browser extensions for major password managers exposes tens of millions...
A significant increase in brute-force attacks targeting Fortinet SSL VPNs has raised concerns about potential zero-day vulnerabilities....
The Pennsylvania Attorney General’s Office (AGO) has confirmed a cyberattack that disrupted critical systems, including email services,...
Microsoft has confirmed the removal of PowerShell 2.0 from Windows 11 and Windows Server systems starting August...
Microsoft has released cumulative updates KB5063878 and KB5063875 for Windows 11 versions 24H2 and 23H2, addressing 107...
Microsoft’s August 2025 Patch Tuesday addresses 107 security vulnerabilities, including one actively exploited zero-day in Windows Kerberos....
Google has patched a critical vulnerability that allowed attackers to remotely compromise Gemini AI agents through malicious...
A critical WinRAR vulnerability, tracked as CVE-2025-8088, was actively exploited as a zero-day in phishing campaigns to...
Administrators and security teams are urged to patch CrushFTP servers immediately following active exploitation of a critical...
Arch Linux has removed three compromised packages from its Arch User Repository (AUR) after discovering they contained...
A new malware strain named LameHug has been discovered using large language models (LLMs) to dynamically generate...
Proof-of-concept (PoC) exploits for a critical SQL injection (SQLi) vulnerability in Fortinet FortiWeb have been publicly released,...
The developers of Gravity Forms, a widely used WordPress plugin with over 1 million active installations, have...