A critical security vulnerability in the Ruby on Rails framework could allow unauthenticated attackers to access sensitive files from application servers by uploading specially crafted image...
Cybersecurity experts have uncovered a new wave of attacks linked to the Cl0p ransomware group, with threat actors exploiting critical vulnerabilities in internet-facing PTC Windchill and...
A sophisticated online advertising campaign is using a new malware delivery method that allows victims’ own web browsers to assemble malicious Windows files, making traditional detection...
July 26, 2026 — Cybersecurity experts are warning developers and organizations to take immediate action after attackers began exploiting a critical remote code execution (RCE) vulnerability...
July 26, 2026 — Cybersecurity researchers have uncovered a sophisticated malvertising campaign called SourTrade that tricks users into downloading malware by making their own web browsers...
Cybersecurity researchers have uncovered new details about DevMan, a ransomware-as-a-service (RaaS) operation that has developed a sophisticated online management platform, allowing affiliates to create ransomware payloads,...
Cybersecurity researchers have uncovered an advanced phishing campaign linked to the North Korean threat group BlueNoroff, revealing a sophisticated attack platform that impersonates Zoom and Microsoft...
Cybersecurity researchers have disclosed a serious security flaw dubbed Certighost that allows low-privileged Active Directory (AD) users to impersonate a Domain Controller and potentially gain complete...
A critical security vulnerability in OpenAI’s ChatGPT Workspace Agents could have allowed attackers to deploy malicious AI agents inside an organization’s workspace using nothing more than...
Security researchers have disclosed two critical vulnerabilities in Microsoft Bing Images that allowed specially crafted SVG (Scalable Vector Graphics) files to execute system-level commands on Microsoft’s...