Cisco announced it will not release security updates to address a critical security vulnerability affecting some of its Small Business routers. Cisco is urging customers that...
The flagship Pwn2Own live hacking event has broken new ground on two fronts after total payouts surpassed $1 million and the competition’s first-ever solo female contestant...
A recently resolved vulnerability in GravCMS created a means for unauthenticated attackers to hijack admin functions on vulnerable content management systems, among other potential exploits. The...
Gigaset smartphone users are being urged to temporarily suspend using their devices following the discovery of widespread malware deployment. Earlier this month, German tech blogger Günter Born reported that users...
Emissary, an open source, peer-to-peer (P2P) workflow engine developed by the US National Security Agency (NSA), contains vulnerabilities that attackers could chain to take over Emissary...
UPDATED A macOS vulnerability enabled attackers to execute malicious HTML within TXT files that, if opened by victims, could leak their IP address and, worse still, give...
The Pentagon’s Cyber Crime Center and bug bounty vendor HackerOne have launched the Defense Industrial Base Vulnerability Disclosure Program (DIB-VDP), an effort to share vulnerability data and boost...
Threat actors are targeting mission-critical SAP applications unsecured against already patched vulnerabilities, exposing the networks of commercial and government organizations to attacks. Over 400,000 orgs worldwide...
The Defense Cyber Crime Center launched a pilot with “a few dozen” companies participating. A Defense Department unit kicked off a pilot program to allow hackers...
A joint advisory warns admins of the likelihood of APT groups exploiting three vulnerabilities in the Fortinet FortiOS. Editor’s Note: This story was updated on April...