A critical security vulnerability affecting Drupal Core is now being actively exploited across the internet, prompting the U.S. Cybersecurity and Infrastructure Security Agency (CISA) to add...
A newly disclosed critical vulnerability affecting the LiteSpeed User-End cPanel Plugin is being actively exploited by attackers, according to security warnings released by LiteSpeed Technologies. Tracked...
Drupal has released urgent security updates to address a highly critical vulnerability that could allow attackers to execute malicious code, escalate privileges, or access sensitive information...
GitHub has confirmed that a recent breach of its internal repositories was caused by a compromised employee device infected through a malicious version of the popular...
Microsoft has dismantled a large-scale malware-signing-as-a-service (MSaaS) operation allegedly used to distribute ransomware and other malicious software under the guise of legitimate applications. The disruption, carried...
Microsoft has released two new open-source tools—RAMPART and Clarity—aimed at improving how developers design, test, and secure AI agents throughout the development lifecycle. The announcement marks...
Cybersecurity Desk: A fast-moving software supply chain attack campaign known as “Mini Shai-Hulud” has compromised multiple widely used npm packages in the @antv ecosystem, raising fresh...
Cybersecurity Desk: A new software supply chain attack has been uncovered targeting widely used GitHub Actions workflows, where attackers reportedly manipulated repository tags to redirect them...
A newly demonstrated Windows zero-day vulnerability, dubbed MiniPlasma, has raised serious security concerns after being shown to grant attackers SYSTEM-level privileges even on fully patched machines....
A newly published cybersecurity analysis has shed light on a sophisticated malware framework known as Fast16, which researchers say was designed to manipulate nuclear weapons simulation...