A new report from the US Treasury Department offers a cautious sign of progress in the battle against ransomware. According to fresh data from the Financial...
The United States government has announced a reward of up to $10 million for information leading to the identification or location of two key members of...
A new agentic browser attack targeting Perplexity’s Comet browser that’s capable of turning a seemingly innocuous email into a destructive action that wipes a user’s entire Google Drive...
A newly disclosed security flaw in Apache Tika has been rated a maximum-severity threat, prompting urgent calls for users to update affected components. The vulnerability, tracked...
The critical React vulnerability has been exploited in the wild by Chinese and other threat actors. Cloudflare has blamed a Friday outage on mitigations for the...
A debate over actual exploitation is muddying response efforts. Multiple researchers say they’ve observed working proof of concepts while others assert evidence of attacks is lacking....
Researchers have uncovered more than 30 security vulnerabilities across a wide range of AI-powered coding tools and IDE extensions, exposing developers to risks including data exfiltration,...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday formally added a critical security flaw impacting React Server Components (RSC) to its Known Exploited Vulnerabilities (KEV) catalog...
The security community is racing to respond to a newly disclosed, high-severity vulnerability in React that could allow remote attackers to execute arbitrary code without authentication....
Cloud security teams are reporting a rapid surge in exploitation attempts targeting React2Shell, a newly disclosed critical vulnerability affecting React applications. The flaw, tracked as CVE-2025-55182,...