A tool used by whisteblowers and the media to securely send information has patched two vulnerabilities that could have impacted the anonymous nature of the file-sharing system. OnionShare...
Web admins are urged to protect against a high-impact path traversal vulnerability in the latest version of Apache Server that is being exploited in the wild. As previously reported by The...
Safari, the default browser for Apple devices, will soon employ a much-needed security feature to better protect against script-injection attacks. According to a thread on the bug-tracking platform for...
UPDATED The expiration of Let’s Encrypt’s root certificate last week threw up a number of problems, though not perhaps in the areas predicted ahead of the event....
Tigran Gambaryan and Matthew Price, both former special agents for the Internal Revenue Service — Criminal Investigations (IRS-CI) Cyber Crimes Unit, have joined cryptocurrency organization Binance...
Cryptocurrency exchange Coinbase has admitted that a fault in its implementation of SMS-based authentication led to the compromise of at least 6,000 users accounts. In a letter (PDF)...
Salt Security released new API threat research from Salt Labs detailing Elastic Injection attacks. The research highlights a widespread API vulnerability that results from the misimplementation of...
Your organization risks compliance and disaster protection shortcomings unless your data management practices catch up with the evolution of information sharing. In just the first year...
While investigating a misconfiguration flaw in Apache Airflow, researchers discovered many exposed instances over the web leaking sensitive information, including credentials, from well-known tech companies. Apache Airflow is a...
The United Kingdom has revealed plans to invest £5 billion in bolstering national cybersecurity that includes creating a “Cyber Force” unit to perform retaliatory attacks. Fighting...