More than 46,000 internet-facing Grafana instances remain unpatched against a high-severity vulnerability (CVE-2025-4123) that chains an open...
vulnerability
Trend Micro has released urgent security updates addressing multiple critical-severity vulnerabilities in its Apex Central and Endpoint...
GitLab has released security updates addressing multiple high-severity vulnerabilities in its DevSecOps platform, including flaws that could...
Microsoft has addressed critical authentication failures affecting Windows Server domain controllers following the April 2025 security updates....
A newly disclosed Secure Boot vulnerability, tracked as CVE-2025-3052, allows attackers to disable security protections on PCs...
Microsoft’s June 2025 Patch Tuesday has arrived, delivering security updates for 66 vulnerabilities, including one actively exploited...
Drone light shows, once a novelty, have rapidly evolved into a mainstream entertainment alternative to traditional fireworks....
Google has addressed a high-severity vulnerability that allowed attackers to brute-force recovery phone numbers tied to user...
A new variant of the Mirai botnet is actively exploiting a command injection vulnerability (CVE-2024-3721) in TBK...
Two malicious npm packages, disguised as legitimate utilities, have been identified executing destructive actions against developer environments....
Windows Services are a common target for attackers due to their persistence and privileged execution context. Designing...
Germany’s Federal Data Protection Commissioner (BfDI) has imposed a record €45 million ($51.3 million) fine on Vodafone...
Cisco has issued patches for three high-severity vulnerabilities affecting its Identity Services Engine (ISE) and Customer Collaboration...
A recent campaign has been identified where threat actors are distributing malicious code through GitHub repositories, specifically...
Hewlett Packard Enterprise (HPE) has issued an urgent security bulletin warning of eight vulnerabilities in its StoreOnce...
Two malicious RubyGems packages have been discovered masquerading as popular Fastlane CI/CD plugins, designed to intercept and...
Mozilla has introduced a new security mechanism designed to detect and block malicious Firefox extensions that target...
Starting August 1, 2025, Google Chrome will no longer trust TLS certificates issued by Chunghwa Telecom (Taiwan)...
Qualcomm has addressed three critical zero-day vulnerabilities in its Adreno Graphics Processing Unit (GPU) driver that were...
Technical details surrounding CVE-2025-20188, a maximum-severity arbitrary file upload vulnerability affecting Cisco IOS XE Wireless LAN Controller...