Cybersecurity researchers have uncovered a new software supply chain attack targeting Ruby developers, with three malicious packages uploaded to the RubyGems repository as part of a...
Open-source artificial intelligence platform Hugging Face has disclosed a cybersecurity incident in which an autonomous AI agent system was used to compromise parts of its internal...
A Russia-linked cyber threat group has been using fake CAPTCHA verification pages to trick Ukrainian users into installing malware, according to a security alert from the...
A critical vulnerability in the popular NGINX web server could allow remote attackers to crash servers and potentially execute malicious code under certain conditions, according to...
Cybersecurity researchers have uncovered a coordinated malware campaign targeting developers and AI users through the JetBrains ecosystem and Google Chrome extensions, exposing sensitive AI API keys...
Cybersecurity analysts are warning that organizations continue to leave critical systems exposed to the internet, creating an expanding attack surface that attackers can exploit within hours...
Microsoft has confirmed the existence of a newly disclosed security vulnerability affecting Microsoft Defender and announced that a fix is currently under development. The flaw, known...
Cybersecurity researchers have uncovered a sophisticated malware campaign that combines fake online reviews, AI-generated promotional content, manipulated reputation systems, and thousands of fraudulent websites to distribute...
As organizations continue investing heavily in cybersecurity tools, a new challenge is emerging across the industry: determining which security findings actually pose a meaningful threat. Experts...
Cybersecurity researchers have detailed a real-world intrusion in which a relatively inexperienced threat actor maintained long-term access to a victim’s network by deploying legitimate remote-access tools...