The security community is racing to respond to a newly disclosed, high-severity vulnerability in React that could allow remote attackers to execute arbitrary code without authentication....
Cloud security teams are reporting a rapid surge in exploitation attempts targeting React2Shell, a newly disclosed critical vulnerability affecting React applications. The flaw, tracked as CVE-2025-55182,...
Cybersecurity officials in the United States and Canada are raising urgent alarms over a far-reaching cyber-espionage operation attributed to China-backed threat actors. Newly released analyses reveal...
Leaked training videos suggest that Intellexa retained the ability to remotely access the systems of customers who had used its Predator spyware, raising questions about human...
Google has released its December 2025 Android security update, confirming that two of the vulnerabilities patched this month were actively exploited in limited, targeted attacks. The...
India’s Department of Telecommunications (DoT) has introduced strict new rules requiring popular messaging platforms to operate only when linked to an active, KYC-verified SIM card. The...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added CVE-2021-26829, a medium-severity vulnerability in ScadaBR, to its Known Exploited Vulnerabilities (KEV) catalog after a recent...
Facial recognition technology is increasingly embedded in daily life, from public surveillance to access control in private buildings. Yet despite its growing use, trust in the...
Gainsight is downplaying the severity of a recent security breach that affected its customer management platform and potentially extended to connected Salesforce environments. The company has...
Crisis24 has permanently decommissioned OnSolve CodeRED, its voluntary emergency notification platform, following a ransomware attack that compromised the system earlier this month. The outage affected dozens...