Cybersecurity experts are warning of a rapid rise in attacks targeting the newly disclosed React2Shell vulnerability (CVE-2025-55182), with more than 50 organizations already confirmed as victims...
Artificial intelligence is transforming the legal profession, but a new report from the American Bar Association (ABA) highlights significant risks associated with AI-driven disinformation and deepfakes...
Atlassian has released urgent security updates addressing a critical flaw in Apache Tika, along with nearly 30 other third-party vulnerabilities affecting its software portfolio. The updates...
A new agentic browser attack targeting Perplexity’s Comet browser that’s capable of turning a seemingly innocuous email into a destructive action that wipes a user’s entire Google Drive...
Researchers have uncovered more than 30 security vulnerabilities across a wide range of AI-powered coding tools and IDE extensions, exposing developers to risks including data exfiltration,...
Leaked training videos suggest that Intellexa retained the ability to remotely access the systems of customers who had used its Predator spyware, raising questions about human...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added CVE-2021-26829, a medium-severity vulnerability in ScadaBR, to its Known Exploited Vulnerabilities (KEV) catalog after a recent...
Gainsight is downplaying the severity of a recent security breach that affected its customer management platform and potentially extended to connected Salesforce environments. The company has...
Crisis24 has permanently decommissioned OnSolve CodeRED, its voluntary emergency notification platform, following a ransomware attack that compromised the system earlier this month. The outage affected dozens...
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning regarding cybercriminals using commercial spyware to compromise mobile messaging applications. The alert, released Monday, urges...