A China-linked cyber espionage group has been observed exploiting a previously unknown vulnerability in Sitecore software to infiltrate critical infrastructure organizations across North America, according to...
Cybersecurity researchers have uncovered a targeted espionage campaign aimed at U.S. government and policy-focused organizations, using politically charged content tied to U.S.–Venezuela relations to deliver a...
CERT Polska, Poland’s computer emergency response team, has disclosed a series of coordinated cyberattacks targeting more than 30 wind and photovoltaic (PV) farms, a large combined...
Ivanti has released urgent security updates addressing two critical zero-day vulnerabilities in its Endpoint Manager Mobile (EPMM) platform, which have already been exploited in the wild....
Fortinet has confirmed ongoing exploitation of a FortiCloud single sign-on (SSO) authentication bypass affecting fully patched FortiGate firewalls. The issue follows reports of attackers successfully bypassing...
Cybersecurity researchers have uncovered a sophisticated phishing campaign leveraging LinkedIn private messages to deliver remote access trojan (RAT) malware through a technique known as DLL sideloading....
Zoom and GitLab have issued urgent security updates to address multiple vulnerabilities that could allow remote code execution (RCE), denial-of-service (DoS) attacks, and two-factor authentication (2FA)...
A sophisticated Linux malware framework, VoidLink, has been identified as one of the first major malware projects largely developed with the assistance of artificial intelligence (AI)....
Security researchers have disclosed three vulnerabilities in mcp-server-git, the official Git Model Context Protocol (MCP) server maintained by Anthropic, that could allow attackers to read, overwrite,...
Google Threat Intelligence Group (GTIG) has uncovered three new malware families developed by the Russian-linked hacking group COLDRIVER, signaling an accelerated “operations tempo” since May 2025....